
Privacy Policy
This website works without cookies, without advertising networks and without analytics services. There is no embedded third-party content, and even the fonts are served from our own server. So the only data processed is what you send us yourself — plus what is technically necessary.
1. Controller
The controller for data processing on this website is:
- Controller
- Funny Divers Diving Center, Sayed Korayem Street, 84511 Hurghada, Egypt — represented by: Ahmed Mahmoud Ali, Nasser Maher Hamada
- info@funnydivers.com
- Phone
- +20 122 419 3164
We have not appointed a data protection officer; in our assessment we are not required to do so.
2. Booking enquiry
When you submit the booking form we process the details you enter: your name, your email address and/or WhatsApp number, the courses and trips you select, your preferred dates, the number of people, whether you want equipment or hotel pick-up including the pick-up location, your preferred payment method and your notes.
We also store technical accompanying data: your IP address, your browser identification, the language of the page and the time. We need these in order to trace and contain misuse of the form.
Purpose and legal basis: handling your enquiry and preparing the contract, Art. 6(1)(b) GDPR. For the technical accompanying data we rely on our legitimate interest in a working form that is free of abuse, Art. 6(1)(f) GDPR.
Recipients: your enquiry is sent as an email to our team and stored in our database. You receive a confirmation at the email address you provided. The data does not leave our server and our mail delivery.
Retention: we keep booking enquiries for as long as we need them to look after your stay and answer follow-up questions, and at most until commercial and tax retention periods expire. Enquiries that do not turn into a booking are deleted after twelve months at the latest.
Passport photo and customer record: No photo is transmitted through this form. When you come to our base we create a customer record: name, telephone number, nationality, a passport photo and internal notes on your dives. We need the photo in order to identify you reliably on the jetty and on the boat; on a later visit it does not have to be taken again. The images are stored outside the publicly accessible area of our server, cannot be retrieved via any web address, and are served to our staff only after they have signed in. The legal basis is Art. 6(1)(b) GDPR. We keep your passport photo for as long as you remain on file with us as a guest, and delete it on request at any time. We do not additionally record identity or passport details, certification levels or diving medical statements.
Payment data: No payment is taken on this website. In the form you merely choose how you would like to pay; payment itself is made on site. We therefore do not collect card, bank or other payment details through this website.
3. Who gets to see your booking data
Your details stay with us. Within the business they are seen only by the people who actually need them for your stay:
- Our office in Hurghada — enquiries, bookings and the customer record. Access is limited to personal accounts with graduated permissions.
- Guides and instructors — name, booked course or trip, date and experience level, so that groups can be arranged.
- Hotel transfer drivers — only if you ask to be picked up, and only your name, hotel, pick-up time and number of people. We usually pass this daily list to the driver as a message via WhatsApp; WhatsApp processes the transmitted details under its own terms. Your e-mail address, your remarks and your passport photo are never part of that list.
Beyond this we disclose data only where we are legally obliged to — for instance in the reports required of diving operations and boats. We do not sell your data and do not pass it on for advertising purposes.
4. Contact form
Through the contact form we process your name, your email address and/or WhatsApp number and your message, likewise together with IP address, browser identification, language and time.
Purpose and legal basis: answering your message, Art. 6(1)(b) or (f) GDPR. Retention: until your enquiry has been fully dealt with, at most twelve months — unless statutory retention obligations require otherwise.
5. Spam protection
Both forms are protected by a simple arithmetic task that our own server sets and checks. No external service such as reCAPTCHA is used, so no data is transferred to third parties. In addition we limit the number of submissions per IP address within ten minutes. The legal basis is our legitimate interest in fending off automated bulk enquiries, Art. 6(1)(f) GDPR.
6. Server logs
When you visit this website our web server automatically collects the data your browser transmits: the address requested, date and time, the amount of data transferred, the referring page, browser type and operating system, and the IP address. We need these logs for the technical operation and security of the website. The legal basis is Art. 6(1)(f) GDPR. This data is not merged with any other data.
7. Counting contact clicks
We count how often the WhatsApp buttons on the website are clicked, so we can see which pages actually lead to a conversation. Only the page visited, the language, the type of button and the time are stored.
No IP address, no identifier and no other characteristic that could be traced back to you is stored. The count is therefore anonymous and allows no conclusions about individual visitors. The legal basis is Art. 6(1)(f) GDPR.
8. Analytics, advertising and tracking services
We use no analytics or advertising services. In particular we do not use Google Analytics, Google Tag Manager, the Meta pixel or any advertising network. There is also no content embedded from third-party servers: maps and social networks are included purely as ordinary links, and we serve the fonts from our own server. Your visit therefore does not create a profile and is not tracked across websites.
The only measurement that takes place is the anonymous counting of contact clicks described in the preceding section.
9. Storage on your device
This website sets no cookies. It does use your browser's local storage for three things that make your visit more convenient:
fd_lang— the language you chose, so you do not have to choose again on every visit.fd-cart-…— the courses and trips you selected on the booking page, so your selection is still there when you come back.fd_reduce_motion— your setting for whether motion and animation should be reduced.
This information stays on your device only and is not transmitted to us. You can delete it at any time through your browser settings. As it serves solely the function you requested, no consent is required for it.
10. External links and social networks
We link to WhatsApp, Google Maps, Facebook, Instagram and TikTok. These are ordinary links, not embedded content — no data is transferred unless you click the link. Once you click it, the privacy terms of the respective provider apply. We have no influence over these.
If you write to us on WhatsApp, WhatsApp processes your message and your phone number under its own terms. If you would rather avoid that, email reaches us just as well.
11. Hosting
This website is hosted by Hostinger International Ltd, 61 Lordou Vironos Street, 6023 Larnaca, Cyprus. Hostinger processes the data on our behalf; a data processing agreement (Data Processing Addendum) under Art. 28 GDPR is in place.
12. Your rights
You have the right at any time to
- access the data stored about you (Art. 15 GDPR),
- rectification of inaccurate data (Art. 16 GDPR),
- erasure (Art. 17 GDPR),
- restriction of processing (Art. 18 GDPR),
- data portability (Art. 20 GDPR),
- object to processing we base on a legitimate interest (Art. 21 GDPR).
An email to info@funnydivers.com is enough. You may also lodge a complaint with a data protection supervisory authority, in particular in the EU member state where you are staying (Art. 77 GDPR).
13. Transfer outside the EU
Our diving centre is based in Hurghada, Egypt. There is no adequacy decision by the European Commission for Egypt. Where your data reaches us there, this happens in order to perform the contract with you or to take steps at your request prior to entering into a contract (Art. 49(1)(b) GDPR).
What this means in practice: the server on which this website and the booking database run is located in Germany (Hostinger data centre, Frankfurt am Main). Your enquiry, however, is read and handled by our team in Hurghada — at that point at the latest the data reaches Egypt. There is no adequacy decision for Egypt under Art. 45 GDPR. We therefore cannot assure you of a level of protection essentially equivalent to that of the Union; in particular, you do not have the same remedies against access by Egyptian authorities as you would within the Union.
We base the transfer on Art. 49(1)(b) GDPR: it is necessary for the performance of the contract with you, because without your details in Hurghada there is no course place, no place on the boat and no pick-up. We transfer only what is needed for your stay.
Technically the transmission is encrypted throughout (HTTPS), and access to the booking database is limited to personal accounts with graduated permissions.
Last updated: September 2026
