TRUST & INFORMATION · UPDATED 29 AUGUST 2026

Privacy on hoteltrincomalee.com

The storefront uses the approved cookieless WebTrack tag and delegates guest credentials, reservation payments and other trust-sensitive identity actions to SriLankaX.

Analytics

The supplied Connection Kit identifies the included WebTrack tag as cookieless. No additional tracker is added by this repository. Reservation-button interaction should not be used to collect payment or identity data.

Guest authentication

Guest credentials are entered on the SriLankaX platform through the official auth widget, never into a local email/password form. The browser stores returned guest tokens in sessionStorage so they are first-party session state rather than a persistent cross-session credential.

Guest account requests

Account API calls are sent through a same-origin server route that forwards the guest bearer token only to explicitly allowlisted SriLankaX account paths and methods. Responses are marked private and no-store.

Enquiries

A hotel enquiry can include contact name, email or phone, message and listing context. It is submitted to the documented public SriLankaX leads endpoint; it is contact capture, not a payment or login flow.

Need a correction or clarification?

Use the corrections route for data issues or contact the storefront operator for help.