Dublin Zoo Ticket Portal

Privacy Policy

Dublin Zoo Privacy Policy

Background

Dublin Zoo understands that your privacy is important to you and that you care about how your personal data is used and shared online. We respect and value the privacy of everyone who visits this website (Our Site), accesses our premises and uses our services. We will only collect and use personal data in ways that are described here, and in a manner that is consistent with our obligations and your rights under the GDPR and applicable Data Protection Laws.

Who We Are?

Dublin Zoo is a registered charity and works in partnership with zoos worldwide to make a significant contribution to the conservation of bio-diversity on earth.

You can contact us at:

Dublin Zoo, Phoenix Park, Dublin 8, Ireland.

Email: [email protected]

Our registered charity number is: 20003715

 

What Does This Policy Cover?

Please read this Privacy Policy carefully to understand our practices regarding your personal data and how we will collect, use and store your personal data. This Privacy Policy applies only to your use of Our Site, premises and business. Our Site may contain links to other websites. Please note that we have no control over how your data is collected, stored, or used by other websites and we advise you to check the privacy policies of any such websites before providing any data to them.

What Data Do We Collect?

Information you give us:

As a general policy, no personal information is automatically collected from visitors to Our Site. Depending upon your use of Our Site or services, we may collect some or all of the following personal and non-personal data:

    • name
    • age range
    • address
    • records of your purchases/ bookings with us (if you purchase something)
    • records of your donations and gift (if you donate to us)
    • contact information such as email addresses and telephone numbers
    • financial information such as credit / debit card numbers
    • IP address
    • cookies (see below for further information)
    • dietary/ accessibility/ mobility information (if provided)
    • CCTV footage of those visiting our premises (see below for further information)
    • photographs and images of individuals
    • company name/ address
    • educational institute name/ address
    • job title

We may also collect data where it is appropriate and relevant, for example:

  • for purely business-related reasons, including managing relationships with third party and partner organisations.
  • We will only process sensitive personal data also known as special categories of data (e.g. in relation to your health), with your explicit consent, for reasons of substantial public interests or where necessary for the establishment, exercise or defence of legal claims.

Cookies

Our Site may place and access certain first party Cookies on your computer or device. The cookie consent tool is provided to you on your initial visit to our website where you can confirm your selection. We use Cookies to facilitate and improve your experience of Our Site. We have carefully chosen these Cookies and have taken steps to ensure that your privacy and personal data is protected and respected at all times. Please review our Cookie Policy for further information.

CCTV monitoring

Some areas of Dublin Zoo are equipped with Closed Circuit Television (CCTV). We may

collect your personal data through the operation of the CCTV cameras.

It is in our legitimate interests to use the CCTV as follows:

  • In the detection and prevention of crime
  • To safeguard all those who access our premises and facilities
  • To investigate security, health & safety incidents.

Recorded images are held for up to 30 days and then destroyed. Any CCTV footage identified as relevant to a formally reported incident may be retained for longer. Any CCTV footage identified as relevant to a formally reported incident involving a minor is retained for up to 18 years from the date of the reported incident (where an investigation or claim arising from such a reported incident takes longer than 18 years to be processed, the CCTV footage identified as relevant to that incident may be retained for longer than 18 years).

These records will not be shared with third parties unless there is suspicion of a crime, in which case we may be required to share your information to comply with our legal and regulatory obligations. This may then be shared with An Garda Síochana or other competent authorities.

How Do We Use Your Data?

All personal data is processed and stored securely, for no longer than is necessary in light of the reason(s) for which it was first collected. We will comply with Our obligations and safeguard your rights under the GDPR at all times.

Our use of your personal data will always have a lawful basis as follows:

  • You have provided your consent to us using your personal data for direct marketing (i.e. to receive our newsletter) or to share your data with a third party for purposes of processing donations.
  • It is necessary for our performance of a contract with you (where you have purchased something from Our Site, donated online or other business arrangements)
  • It is necessary for compliance with a legal obligation to which we are subject (for example, to manage health and safety)
  • It is within our legitimate interests for the proper administration of Dublin Zoo, and to manage our operations (for example, for the detection and prevention of crime and safeguarding all those who access our premises and facilities)
  • the processing is necessary for reasons of public interest including in the area of public health

Specifically, we may use your data for the following purposes:

    • Providing and managing your access to Our Site
    • Supplying tickets, gifts, annual passes or options to donate to you (please note that we require your personal data in order to enter into a contract with you)
    • Communication with you via email or another method that you have opted into (At any stage you may choose to opt out of such communications – contact us at [email protected])
    • Arranging events for your organisation/ institution/ company and communicating these details to you
    • Assist government bodies or other competent authorities relating to public health requirements

How and Where Do We Store Your Data?

We keep personal data for as long as there is a need to keep it in connection with the purposes for which it was collected. Data will be deleted in line with our data retention policy.

We are committed to ensuring that there are appropriate technical controls in place to protect your personal data including protection from misuse and unauthorised access. For example, our network is protected and routinely tested.

Do We Share Your Data?

We engage with third parties to supply some services to us. These may be for:

  • payment processing:
  • delivery of goods
  • ticket processing
  • search engine facilities
  • audit, legal and financial management
  • insurance purposes
  • Health & Safety
  • donations

Whilst we allow relevant staff, consultants and/or external third party service providers acting on our behalf to access and use your personal data for the activities we have described in this policy (e.g. to provide services or products to you, to process payments), we only permit them to use it to deliver the relevant information, goods or services. Where we have engaged the services of a third-party processor, we have reviewed their privacy policies and security arrangements and conducted any necessary risk assessments. We also enter into a Data Processing Agreement to ensure that third parties are as committed to the security of your personal data as we are.

Some of your data may be stored in or outside of the European Economic Area (“the EEA”). If we do store data outside the EEA, we will take all reasonable steps to ensure that your data is treated as safely and securely as it would be in Ireland.

We may compile statistics about the use of Our Site including data on traffic, usage patterns, user numbers, sales, and other information. All such data will be anonymised and will not include any personally identifying data, or any anonymised data that can be combined with other data and used to identify you.

In certain circumstances, we may be legally required to share certain data held by us, which may include your personal data, for example, where we are involved in legal proceedings, to comply with legal requirements, public interests or public health grounds, a court order, or a governmental authority.

Your Rights

As a data subject, you have the following rights under the GDPR, which this Policy and Our use of personal data have been designed to uphold:

Right to be informed:

This privacy notice explains how we collect, use and store your personal data

Right to access:

You have the right to find out if we are holding personal data on you. To exercise this right, you can make a “Subject Access Request” by contacting us as above

Right to rectification:

You have the right to have inaccurate personal data changed or removed. It is important to us that the information that we hold about you is accurate and up to date. Please let us know if any of your details have changed.

Right to erasure (the right to be forgotten):

You have the right to ask for your personal data to be erased from our records. However, this right is not absolute, and we can refuse this request, if this is the case, we will explain our reasons for our decision.

Right to restrict processing:

You have the right to ask us to restrict the processing of your data. This is an alternative to erasure and usually a temporary measure to limit the way we use your data whilst another data related matter is being resolved.

Right to data portability:

This right allows you to obtain and reuse the data that we hold on you in a machine-readable format for transmission to another data controller.

Right to object:

You have the right to object to us processing your personal data in some circumstances where we process data based on a legitimate interest or in the public interest.

Rights with respect to automated decision making and profiling.

We do not process your data in this way.

All requests, if valid, will usually be processed within a month. If we need longer to process your request, we will inform you at the earliest opportunity and in any case within one month from receiving your request. Please contact us at: [email protected] on any of these rights.

Further information on your data privacy rights is available on the website of the Data Protection Commission www.dataprotection.ie.

Changes to Our Privacy Policy

We may change this Privacy Policy from time to time. We recommend that you check this page regularly to keep up-to-date.

DigiTickets Privacy Policy

Policy Owner

This policy is owned and distributed by IT and Compliance manager of Digital Ticketing Systems Limited

Who we are

In this Privacy Policy, references to "we", "us", and "our"" are to Digital Ticketing Systems Limited (Company number 07044584). References to "our Website" or "the Website" are to *.digitickets.co.uk.

Digital Ticketing Systems Limited is the data controller responsible for the personal information collected through this Website.

Information We Collect

We may collect and process the following categories of personal information:

Information You Provide Directly

When you contact us, make a purchase, register for services, or complete forms on our Website, we may collect information such as:

  • Name
  • Postal address
  • Email address
  • Telephone number
  • Purchase and booking information
  • Any other information voluntarily provided by you

Payment Information

Payments made through our Website are processed by authorised payment service providers. We do not store your full credit or debit card details on our systems.

Our payment providers may process payment information and carry out fraud prevention and verification checks. Where international transfers are required, appropriate safeguards will be applied in accordance with applicable data protection laws.

Digital Ticketing Systems is PCI DSS v4.0.1 compliant and are annually assessed/certified.

Website Usage Information

When you visit our Website, we may automatically collect:

  • IP address
  • Browser type and version
  • Device information
  • Screen resolution
  • Operating system
  • Referral source
  • Pages visited and actions taken on the Website
  • Date and time of access

Marketing Preferences

If you choose to receive marketing communications, we will record your preferences and any interactions with our emails, including whether emails are opened or links are clicked.

Cookies and Similar Technologies

We use cookies and similar technologies to operate our Website, remember your preferences, analyse usage, and improve user experience. Further information is provided in our Cookie Policy below.

How We Use Your Information

We process personal information for the following purposes:

  • To provide products and services you request
  • To process transactions and fulfil orders
  • To provide customer support and after-sales services
  • To manage bookings and accounts
  • To improve our Website, products, and services
  • To ensure Website security and prevent fraud
  • To comply with legal and regulatory obligations
  • To send marketing communications where we have your consent or another lawful basis to do so

Lawful Basis for Processing

Under UK GDPR, we rely on one or more of the following lawful bases:

  • Performance of a contract: to provide goods or services you have requested.
  • Legal obligation: where processing is necessary to comply with legal requirements.
  • Legitimate interests: to manage and improve our business, Website security, and customer experience.
  • Consent: where required, including for certain cookies and marketing communications.

Where we rely on consent, you may withdraw it at any time.

Sharing Your Information

We may share your personal information with:

  • Payment processors
  • Hosting and IT service providers
  • Delivery and fulfilment partners
  • Marketing and communications providers
  • Analytics and Website performance providers
  • Professional advisers and auditors
  • Regulatory authorities, law enforcement agencies, or courts where required by law

All third-party service providers are required to process personal information only on our instructions and in accordance with applicable data protection laws.

We do not sell personal information to third parties.

International Transfers

Where personal information is transferred outside the United Kingdom, we will ensure appropriate safeguards are in place, such as:

  • Transfers to countries deemed to provide an adequate level of protection; or
  • Approved contractual safeguards, such as the UK International Data Transfer Agreement (IDTA) or equivalent mechanisms.

Data Retention

We retain personal information only for as long as necessary to fulfil the purposes for which it was collected, including satisfying legal, accounting, regulatory, and reporting requirements.

Retention periods vary depending on the type of information and the purpose for which it is processed.

Cookie Policy

What Are Cookies?

Cookies are small text files stored on your device when you visit a website. They help websites function properly, remember preferences, improve performance, and provide analytics information.

How We Use Cookies

We use the following categories of cookies:

Strictly Necessary Cookies

These cookies are essential for the operation of the Website and cannot be disabled through our cookie management tools.

Cookie

Purpose

Duration

PHPSESSID

Maintains user session and shopping basket functionality

Session / 24 minutes

dtAnalyticsConsent

Records cookie consent preferences

1 year

Analytics Cookies

These cookies help us understand how visitors interact with the Website so that we can improve performance and usability.

These cookies are only placed with your consent.

Google Analytics

Examples include:

  • _ga
  • _ga<container-id>
  • _gid
  • _gat_<tracker-name>

Used to collect aggregated statistical information about Website usage.

Google Privacy Information:

https://support.google.com/analytics/answer/6004245

Microsoft Clarity

Examples include:

  • _clck
  • _clsk
  • CLID
  • ANONCHK
  • MR
  • MUID
  • SM

Used to analyse user interactions and improve Website usability.

Microsoft Clarity Information:

Performance Monitoring Cookies

Performance monitoring tools help us identify technical issues and improve Website reliability.

Examples may include cookies used by services such as New Relic.

Managing Cookies

When you first visit our Website, you will be presented with a cookie banner allowing you to:

  • Accept all cookies
  • Reject non-essential cookies
  • Choose your cookie preferences

You may change your preferences at any time through our cookie settings tool.

You can also manage cookies through your browser settings. Disabling certain cookies may affect Website functionality.

Your Data Protection Rights

Under UK GDPR, you may have the right to:

  • Access your personal information
  • Correct inaccurate information
  • Request deletion of your information
  • Restrict processing
  • Object to processing
  • Request portability of your data
  • Withdraw consent where processing is based on consent
  • Lodge a complaint with the Information Commissioner's Office (ICO)

For more information about your rights, visit:

https://ico.org.uk/

Automated Decision-Making

We do not generally make decisions producing legal or similarly significant effects using solely automated processing.

Where automated tools are used for fraud prevention, security monitoring, or service administration, appropriate safeguards will be applied in accordance with applicable data protection legislation.

Childrens Data

Our Website is not intended to knowingly collect personal information from children unless necessary to provide services requested by a parent, guardian, school, attraction, venue, or authorised organisation.

Where we process children's personal information, we take additional care to ensure appropriate protections are in place.

Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact:

Digital Ticketing Systems (t/a DigiTickets)

Sentio House, Pynes Hill, Exeter, Devon, EX2 5AZ

www.digitickets.co.uk/compliance-request

If you have concerns about how we use your personal information, you may submit a privacy complaint to us using the contact details above.

We will acknowledge your complaint and investigate it in accordance with applicable data protection legislation. We aim to respond without undue delay and within the timescales required by law.

If you remain dissatisfied with our response, you have the right to complain to the Information Commissioner's Office (ICO).

Other Websites

This Privacy Policy applies only to this Website. Links to third-party websites are provided for convenience only. We are not responsible for the privacy practices of those websites, and we encourage you to review their privacy policies before providing any personal information.

Last Updated: 5 August 2026

Proudly partnered with :