Legal · Privacy · Trust

Privacy Policy

Revenda Hospitality is a high-tech travel platform and property management system trusted by travellers, property owners, and management companies worldwide. This policy explains — in plain language — what we collect, why we collect it, how we protect it, and the rights you hold.

Effective 2026-01-01 Last updated 2026-01-01 GDPR · CCPA · PIPEDA · POPIA Version 2.0
Encryption
TLS 1.3 · AES-256
Identity
2FA · SSO available
Payments
PCI-DSS Level 1
Compliance
GDPR · CCPA ready
01

Overview & Our Promise

At Revenda Hospitality ("Revenda", "we", "us", "our"), privacy is not a compliance checkbox — it is the foundation of the trust travellers, property owners, and management companies place in us every day. We operate two tightly integrated platforms:

The OTA Platform

A global booking marketplace for travellers to discover, compare, and reserve hotels, resorts, villas, lodges, camps, and experiences — with fiat or crypto.

The PMS Platform

A full property management system for hotels, resorts, and management companies — covering reservations, front desk, housekeeping, POS, laundry, and finance.

Smart Hospitality

Optional IoT, voice concierge, robot delivery, digital keys, and AI planning — designed to elevate the guest experience while respecting your data.

Our promise to you: we will never sell your personal data. We do not trade, rent, or monetise personal information. Any sharing we do is strictly limited to what is necessary to deliver the services you requested — and it is described in full transparency below.
02

Scope: Who This Policy Covers

This Privacy Policy applies to every interaction with the Revenda ecosystem, including but not limited to:

  • Guests and travellers who browse, book, or complete a stay through Revenda.
  • Property owners who list and manage their properties on Revenda.
  • Management companies operating multiple properties through the Revenda PMS.
  • Hotel staff and agents using the PMS to serve guests.
  • Partners and vendors who integrate with our APIs, channels, or payment rails.
  • Website visitors who interact with revenda.com and all its subdomains.

It covers our websites, web applications, mobile applications, APIs, and PMS tools. Third-party services we integrate with (for example, a hotel's own booking page or a payment provider's checkout) are governed by their own privacy notices, which we encourage you to review.

03

Data We Collect

We collect data across four broad categories, always with a specific purpose and always proportionate to it.

A. Data you give us directly

Category Examples Why we need it
Identity Full name, date of birth, gender, nationality, ID/passport details (where required by law), profile photo. To create your account, verify identity, and satisfy hotel check-in regulations.
Contact Email address, phone number, mailing address, emergency contact. To confirm bookings, send receipts, and reach you if a stay changes.
Booking Reservation dates, room type, guests, special requests, dietary needs, accessibility requirements. To fulfil your booking and pass essential details to the property.
Payment Card last-4, card brand, billing country, wallet address (crypto), bank details (for payouts to property owners). To process payments and, where applicable, payouts. We never store full card numbers.
Property & PMS Property details, room inventory, rates, staff records, front-desk logs, POS sales, housekeeping notes. To operate the PMS for owners and management companies.

B. Data collected automatically

  • Device & network: IP address, browser type, OS, device identifiers, preferred language.
  • Usage: pages viewed, searches performed, links clicked, time on page, referring URL.
  • Approximate location: derived from IP address, to localise currency, language, and legal notices.
  • Precise location: only if you explicitly grant permission in your browser or mobile app — for example, to show nearby stays.

C. Data from third parties

  • Payment processors (Stripe, PayPal, Coinbase Commerce, crypto networks) provide confirmation of a completed transaction — never your full card data.
  • Identity verification providers may confirm a document you submit matches your identity.
  • Channel partners (for example, another OTA or GDS) may forward booking information when a stay is booked elsewhere and synced to Revenda.
  • Map and location data from OpenStreetMap and similar sources, used to geolocate and describe properties.

D. Data you create inside Revenda

  • Reviews, ratings, photos, and messages exchanged with properties or support.
  • Wishlists, saved searches, trip plans, and preferences.
  • PMS notes, tasks, and operational records created by property staff.
04

How We Use Your Data

Every use of your personal data falls under one of the following purposes. We do not use personal data for anything outside these purposes without your explicit consent.

Fulfil Your Booking

Confirm reservations, pass essential details to the property, and support check-in and check-out.

Process Payments

Charge your chosen method (card, wallet, crypto), issue receipts, and handle refunds or chargebacks.

Customer Support

Answer your questions, resolve disputes, and provide assistance before, during, and after a stay.

Personalisation

Show you destinations, stays, and experiences tailored to your travel style and history.

Safety & Fraud Prevention

Detect fraud, protect against abuse, verify identities, and comply with sanctions and AML rules.

Improve Our Platform

Analyse aggregated, anonymised trends to improve search, pricing, and the PMS experience.

No dark patterns. We do not use your data to manipulate prices you see based on personal traits, nor to build shadow profiles for third-party advertisers.
06

Payments, Payouts & Financial Data

Revenda supports every commonly available payment method — traditional and digital — so guests can pay in whichever way suits them, and property owners can receive funds on their terms.

Payment methods we support

Method Who processes it What we store
Credit / debit card
Visa · Mastercard · Amex · Discover
PCI-DSS Level 1 processor (e.g. Stripe) Card brand, last 4 digits, expiry month/year, billing country. Never the full card number or CVV.
Digital wallets
Apple Pay · Google Pay · PayPal
Respective wallet provider Transaction ID, email, confirmation status.
Bank transfer / SEPA / ACH Your bank + our banking partner Account holder name, IBAN/account reference masked, confirmation reference.
Cryptocurrency
BTC · ETH · USDC · USDT · more
Blockchain + crypto payment gateway (e.g. Coinbase Commerce) Public wallet address, transaction hash, amount, currency, timestamp. See §07 for detail.
Pay at hotel The property, on arrival A reservation hold is placed; card data is captured by the property's own terminal, not by Revenda.
Subscription (SaaS) Our payment processors Plan tier, billing cycle, renewal date, invoice records.

Who charges the guest

Depending on the arrangement configured by the property, Revenda may operate in either of two modes:

Revenda processes on behalf of the property

Revenda acts as a limited payment collection agent. Funds are received by Revenda and settled to the property's payout account on the agreed schedule (or instantly, if the property has opted in — see below).

Property collects directly

The reservation is confirmed through Revenda, but the guest pays the property at check-in or check-out using the property's own terminal. Revenda stores only what is needed to confirm the reservation.

Instant payouts to property owners

Property owners and management companies on Revenda can request immediate payout of a settled reservation where the payment mode and jurisdictional rules allow it. When an owner does so:

  • Payout goes to the bank account or crypto wallet the owner has verified in their PMS profile.
  • We store the destination details (masked), the payout amount, the timestamp, and the payout reference for reconciliation and tax purposes.
  • Instant payouts are subject to fraud, AML, and chargeback-risk checks, and may be delayed or declined where those checks fail.

Refunds & chargebacks

Refunds are returned to the original payment method wherever possible. Where the original method is unavailable (for example, an expired card or a discontinued wallet), we work with the guest to arrange an alternative, in line with the property's cancellation policy and applicable consumer law.

PCI-DSS: Revenda itself does not store, process, or transmit full card numbers. All card handling is delegated to PCI-DSS Level 1 certified processors. Our own systems are PCI-aware and follow all applicable data minimisation rules.
07

Crypto Payments & Wallet Data

Revenda is crypto-native. We accept major cryptocurrencies and stablecoins for both guest bookings and property subscriptions. Because blockchain transactions are public by nature, we are transparent about what we do and do not store.

What we collect

  • Public wallet address you use to send payment (or the refund address you provide).
  • Transaction hash — the on-chain reference.
  • Amount, asset, and timestamp of the transaction.
  • Network confirmations — to verify the payment has settled.

What we do NOT collect

  • We do not ask for, store, or transmit private keys, seed phrases, or wallet passwords.
  • We do not link your wallet address to your real-world identity beyond what is necessary for AML, tax, and refund processing.
  • We do not sell or share wallet addresses with marketing partners.

Blockchain visibility

Blockchain transactions are, by design, public and permanent. Anyone who knows your wallet address can see your on-chain history. Revenda has no ability to delete or alter on-chain records. Where a payment was made with a privacy-focused asset or via a privacy-preserving gateway, that is between you and the asset's ecosystem — we neither encourage nor forbid it.

Refunds in crypto: because of price volatility and network fees, crypto refunds are issued in the same asset and network the payment was received on, at the original received amount. Where that is technically impossible, we may offer a fiat refund or a Revenda travel credit, at the guest's choice.
08

When We Share Data

We share personal data only when necessary, and always under contract that binds the recipient to confidentiality and data-protection standards at least as strong as ours.

Recipient What we share Why
The property you book Guest name, contact details, booking dates, guest count, special requests. So the property can prepare for and host your stay.
Payment processors Amount, currency, transaction reference, billing country. To process your payment, issue a refund, or settle a payout.
Identity verification providers Document type, country of issue, and the image you upload (only where verification is required). To satisfy KYC/AML and hotel check-in laws.
Cloud & infrastructure providers Encrypted data at rest, minimal operational metadata. To host and run the platform under strict data-processing agreements.
Analytics & anti-fraud Anonymised usage data; device and IP fingerprints for fraud scoring. To protect the platform, guests, and property owners.
Legal authorities Only what is strictly required by a valid legal request. To comply with the law, court orders, or AML obligations.
Successor entities In the event of a merger or acquisition, data may transfer to the successor under the same protections. Business continuity.
What we never do: we never sell personal data. We never rent mailing lists. We never share wallet addresses or identity documents with advertising networks.
09

Cookies, SDKs & Tracking

We use a small, curated set of cookies and similar technologies. Our guiding rule: if it isn't needed to run the platform or to serve you better, we don't set it.

Category Purpose Consent
Strictly necessary Session management, CSRF protection, load balancing, security. Without these the site cannot function. Not required (essential).
Functional Remembering your currency, language, and UI preferences. Set only after you choose them.
Analytics Aggregated, anonymised statistics on how our site is used. Consent required where law demands.
Personalisation Tailoring destination, stay, and experience recommendations. Consent required.
Marketing Measuring the effectiveness of campaigns. We do not use third-party ad networks. Consent required.

You can control cookies through your browser settings and, where offered, through the Revenda cookie banner. Disabling essential cookies may break the platform.

10

AI, Algorithms & Personalisation

Revenda uses artificial intelligence and algorithmic ranking to power search, recommendations, dynamic pricing signals, and the AI Trip Planner. We are transparent about how this works.

  • What AI does: rank search results, suggest destinations, predict demand, provide smart-pricing insights to property owners, and generate personalised itineraries on request.
  • What AI does not do: make automated decisions that produce legal effects or significantly affect you without human review. We do not use AI to discriminate on protected characteristics.
  • Data used: your interaction history on Revenda (searches, clicks, bookings), aggregated trends, and — where you opt in — stated travel preferences. We do not feed your identity documents or payment data to AI models.
  • Human oversight: you may contact us at any time to request human review of a decision you believe was made solely by automated means.
Guest-facing AI features (voice concierge, robot delivery, smart-room controls) only access the minimum data needed to serve you during an active stay, and only while you have them enabled.
11

Security & Encryption

We take security seriously enough to invest in it continuously. Our program is built on recognised international standards (ISO 27001 principles, NIST CSF, OWASP ASVS).

In Transit

TLS 1.3 with modern cipher suites. HSTS enforced. Certificate pinning on mobile.

At Rest

AES-256 encryption on databases and object storage. Field-level encryption for sensitive fields.

Access Control

Role-based access, least privilege, mandatory MFA for staff, and quarterly access reviews.

Monitoring

24/7 logging, anomaly detection, WAF, and rate limiting across all public endpoints.

No system is perfect. If you discover a vulnerability, please report it responsibly to security@revenda.com. We operate a coordinated-disclosure policy and will acknowledge valid reports within 72 hours.

12

Data Retention

We keep data only as long as needed to serve the purpose for which it was collected, or as long as law requires.

Data type Retention period
Guest account dataWhile active, plus 24 months after last activity, then deleted or anonymised.
Booking & payment records7 years (tax and accounting obligations).
Property & PMS operational records7 years for financial records; shorter for routine operational data.
Crypto transaction references7 years (AML/tax). Note: the blockchain record itself is permanent and outside our control.
Support tickets3 years after resolution.
Marketing consentsUntil withdrawn, plus 3 years as proof of consent.
Security & access logs12 months (up to 24 where legally required).
13

International Transfers

Revenda operates globally. Your data may be processed in countries outside your own, including jurisdictions that may not provide the same level of legal protection.

When we transfer personal data across borders we rely on one or more of:

  • Standard Contractual Clauses (SCCs) approved by the European Commission.
  • Adequacy decisions where applicable (for example, EU–UK, EU–Switzerland).
  • Transfer Impact Assessments to confirm the receiving jurisdiction offers comparable protection.
  • Additional technical measures — including end-to-end encryption of the most sensitive fields.

You may request a copy of the applicable safeguards by contacting our Data Protection Officer.

14

Your Rights

Depending on where you live, you may have some or all of the following rights. We honour them regardless of jurisdiction as a matter of principle.

Right of Access

Obtain a copy of the personal data we hold about you.

Right to Rectification

Correct inaccurate or incomplete data.

Right to Erasure

Request deletion where there is no overriding legal basis to retain.

Right to Restrict

Limit processing while a dispute or correction is resolved.

Right to Portability

Receive your data in a structured, machine-readable format.

Right to Object

Object to processing based on legitimate interests or for direct marketing.

Rights on Automated Decisions

Request human review of decisions made solely by automated means.

Right to Complain

Lodge a complaint with us or with your local supervisory authority.

To exercise any right, email privacy@revenda.com. We respond within 30 days (or sooner where required). You will never be charged for exercising a right, and you will not receive worse service as a result.

California residents (CCPA/CPRA)

California residents have the right to know what personal information is collected, to request deletion, to correct, to opt out of "sale" or "sharing" (Revenda does neither), and to be free from discrimination for exercising these rights. Authorised agents may submit requests on your behalf.

15

Children & Minors

Revenda is not directed to children under the age of 16 (or under 13 where a jurisdiction's laws permit). We do not knowingly collect personal data from children. Minors may stay at a property when accompanied by a parent or legal guardian; the booking itself must be made by an adult.

If you believe a minor has provided us with personal data, contact privacy@revenda.com and we will delete it promptly.

16

For Property Owners & Managers

If you list a property on Revenda or use the PMS, you are also a data controller in your own right for the guest data you receive and process through your property operations. This section summarises your obligations and what Revenda does on your behalf.

What Revenda does on your behalf

  • Collects and passes to you the guest data necessary to fulfil a booking.
  • Processes payments on your behalf where you have enabled Revenda collection.
  • Operates the PMS infrastructure, encryption, and security controls you rely on.
  • Logs access, exports, and configuration changes for audit purposes.

What you must do

  • Publish a privacy notice to your guests explaining your own use of their data.
  • Use guest data only for the purposes of the stay and legitimate post-stay communication (with the guest's consent where required).
  • Secure any PMS credentials you hold, enable MFA for your staff, and revoke access when staff leave.
  • Report suspected data breaches involving guest data to Revenda within 24 hours so we can support your own regulatory obligations.
  • Comply with local hotel laws (guest registration, ID requirements, tax reporting).

Instant payout consent

If you opt in to instant payouts, you agree that Revenda may transfer settled funds to the verified account or wallet on file as soon as the reservation settles. You are responsible for the accuracy of those details and for any tax consequences of receiving funds on an accelerated schedule.

17

Sub-Processors & Vendors

We use a small, carefully selected group of sub-processors. Each is bound by a data-processing agreement and evaluated for security and privacy maturity before we work with them, and reviewed annually.

Category Purpose Typical examples
Cloud infrastructureHosting, storage, computeCloud providers with EU/US regions
Payment processingCard, wallet, crypto paymentsStripe, PayPal, Coinbase Commerce
Email & notificationsTransactional emails, push notificationsSMTP providers, FCM
Mapping & geodataMaps, geocoding, POI dataOpenStreetMap, Nominatim, Overpass API
Fraud & securityRisk scoring, bot mitigationIndustry-standard providers
SupportHelp desk and chatReputable support platforms

A current, named list is available on request to dpo@revenda.com.

18

Data Breach Response

We maintain a documented incident-response plan that follows NIST SP 800-61 principles. In the event of a personal-data breach:

  1. Contain: isolate affected systems immediately.
  2. Assess: determine the scope, nature, and risk to individuals.
  3. Notify regulators: within 72 hours of awareness, where required (e.g. GDPR Art. 33).
  4. Notify individuals: without undue delay where the breach poses a high risk to their rights and freedoms.
  5. Notify affected property owners: so they can meet their own obligations.
  6. Post-mortem: documented root-cause analysis and remediation, shared with regulators on request.
Reporting a vulnerability or suspected breach: email security@revenda.com with as much detail as you can share. We will acknowledge receipt within 72 hours.
19

Changes to This Policy

We may update this Privacy Policy to reflect changes in our services, technology, or the law. When we do:

  • We update the Last updated date at the top.
  • For material changes we notify you by email and/or by a prominent banner in the platform.
  • Where required by law, we obtain fresh consent.
  • Prior versions are archived and available on request.

Continued use of Revenda after an update means you accept the revised policy, unless a change specifically requires your active consent.

20

Contact & Complaints

We want to hear from you — whether you're exercising a right, raising a concern, reporting a bug, or just asking a question.

Reach the right team

Choose the channel that matches your request and we will route it to the right specialist within one business day.

If you're not satisfied

You have the right to lodge a complaint with your local data-protection authority at any time. We would, however, appreciate the chance to resolve your concern first — write to our DPO and we will do our best.

Revenda Hospitality · Arusha, Tanzania · Data Protection Officer: dpo@revenda.com