TRUST & INFORMATION · UPDATED 29 AUGUST 2026
Privacy on hoteltrincomalee.com
The storefront uses the approved cookieless WebTrack tag and delegates guest credentials, reservation payments and other trust-sensitive identity actions to SriLankaX.
Analytics
The supplied Connection Kit identifies the included WebTrack tag as cookieless. No additional tracker is added by this repository. Reservation-button interaction should not be used to collect payment or identity data.
Guest authentication
Guest credentials are entered on the SriLankaX platform through the official auth widget, never into a local email/password form. The browser stores returned guest tokens in sessionStorage so they are first-party session state rather than a persistent cross-session credential.
Guest account requests
Account API calls are sent through a same-origin server route that forwards the guest bearer token only to explicitly allowlisted SriLankaX account paths and methods. Responses are marked private and no-store.
Enquiries
A hotel enquiry can include contact name, email or phone, message and listing context. It is submitted to the documented public SriLankaX leads endpoint; it is contact capture, not a payment or login flow.
Need a correction or clarification?
Use the corrections route for data issues or contact the storefront operator for help.