Table of Contents

  1. Scope & Acceptance
  2. Data Controller
  3. Definitions
  4. Information We Collect
  5. How We Use Information
  6. Legal Bases for Processing
  7. Sharing & Disclosure
  8. Third-Party Services
  9. Mobile App Permissions
  10. Data Storage & Security
  11. Data Retention
  12. International Data Transfers
  13. Your Rights
  14. Children's Privacy
  15. Cookies & Tracking
  16. Changes to this Policy
  17. Grievance Officer
  18. Contact Us

01.Scope & Acceptance

This Privacy Policy ("Policy") governs the collection, use, storage, and disclosure of information by SyncStays ("SyncStays," "we," "us," or "our") in connection with the SyncStays hotel management platform โ€” including the website available at www.syncstays.com, the web-based dashboard, the SyncStays mobile application distributed via the Google Play Store, and all related services (collectively, the "Services").

By accessing or using the Services, you acknowledge that you have read, understood, and agree to be bound by this Policy. If you do not agree with any part of this Policy, please discontinue use of the Services.

02.Data Controller

For the purposes of applicable data protection laws โ€” including the Digital Personal Data Protection Act, 2023 (India) and, where applicable, the EU General Data Protection Regulation (GDPR) โ€” SyncStays acts as the Data Controller for personal data collected directly through its website and mobile application from hotel operators (account holders).

Where a hotel operator uses SyncStays to record information about its own guests, employees, or vendors, the hotel operator acts as the Data Controller for such information, and SyncStays acts as a Data Processor processing that information on the hotel operator's behalf and instructions.

03.Definitions

04.Information We Collect

A. Information You Provide

B. Information Collected Automatically

C. Information from Third Parties

Note: SyncStays does not knowingly collect biometric identifiers, financial-account credentials, health information, or any "sensitive personal data" beyond what is strictly necessary for the Account Holder's lawful operation of a hotel business.

05.How We Use Information

We process Personal Data for the following purposes:

We do not sell Personal Data, and we do not use Guest information for advertising or marketing purposes.

07.Sharing & Disclosure

SyncStays shares Personal Data only as described below:

We do not sell, rent, or trade Personal Data to third parties for monetary or other valuable consideration.

08.Third-Party Services

The Services rely on the following third-party processors. Each provider's processing of your data is governed by its own privacy policy:

We periodically review our sub-processors to ensure they maintain adequate security and privacy practices.

09.Mobile App Permissions

The SyncStays mobile application may request the following device permissions. Each is requested only for the functionality described, and may be revoked at any time through your device settings:

The application does not collect contacts, SMS messages, call logs, precise location, microphone audio, or device-wide advertising identifiers.

10.Data Storage & Security

Personal Data is stored on Google Cloud infrastructure with the following safeguards:

No system can be guaranteed to be 100% secure. While we apply commercially reasonable safeguards, we cannot warrant absolute security of information transmitted to or stored on the Services.

11.Data Retention

We retain Personal Data only for as long as is necessary to fulfil the purposes set out in this Policy, including any legal, accounting, or reporting requirements:

Upon termination of an account, Account Holders may request export and deletion of their data by contacting us as set out in Section 18.

12.International Data Transfers

SyncStays primarily processes data on infrastructure located in regions selected for performance and compliance. Because our service providers (notably Google Cloud) operate globally, your Personal Data may be transferred to, stored in, or processed in countries other than your country of residence. Where such transfers occur, we ensure that appropriate safeguards โ€” such as Standard Contractual Clauses or equivalent legal mechanisms โ€” are in place to protect your data.

13.Your Rights

Subject to applicable law, you may have the following rights in respect of your Personal Data:

If you are a Guest whose data has been recorded by a hotel using SyncStays, please direct your request to that hotel in the first instance. We will reasonably assist the hotel in fulfilling your request.

Account Holders and Authorised Users may exercise these rights by contacting us at the address in Section 18. We will respond within the timelines required by applicable law.

14.Children's Privacy

The Services are intended for use by hotel businesses and their authorised staff, and are not directed to children. We do not knowingly collect Personal Data directly from individuals under the age of 18. If we become aware that we have inadvertently collected such data without verifiable parental consent, we will take steps to delete it promptly.

15.Cookies & Tracking

Our website and dashboard use a minimal set of essential cookies and browser storage (including localStorage) to maintain authenticated sessions, remember user preferences such as theme selection, and improve usability. We do not use cross-site advertising cookies or third-party analytics that profile individual users for marketing purposes.

You may disable cookies through your browser settings; however, doing so may impair the functionality of the Services.

16.Changes to this Policy

We may update this Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. Material changes will be notified through the Services or by other reasonable means at least seven (7) days before they take effect. The "Last Updated" date at the top of this page indicates when the Policy was most recently revised. Continued use of the Services after the effective date constitutes acceptance of the revised Policy.

17.Grievance Officer

In accordance with the Information Technology Act, 2000 and the rules made thereunder, and the Digital Personal Data Protection Act, 2023, the name and contact details of the Grievance Officer are provided below. Any concern, complaint, or request relating to the processing of your Personal Data may be addressed to:

Grievance Officer โ€” SyncStays

We will acknowledge your complaint within 48 hours and endeavour to resolve it within the statutory timeframe.

WhatsApp / Phone

18.Contact Us

If you have any questions about this Privacy Policy, our data-handling practices, or wish to exercise any of the rights described above, please contact us using the details below. We welcome your feedback and aim to respond to all enquiries in a timely manner.

SyncStays โ€” Privacy Enquiries

For general support, account, or data-related questions.

WhatsApp
Jurisdiction
India

This Privacy Policy constitutes an electronic record under the Information Technology Act, 2000 and the rules thereunder, and does not require any physical or digital signature.