Data security
This is a courtesy translation. In case of any discrepancy, the Polish version of this document prevails. A description of the technical and organisational measures protecting data in the service. This document describes the actual state of affairs, without overstatement.
Gültig ab 25.08.2026
Where the data is held
The servers belong to Hetzner Online GmbH and are located in the Falkenstein data centre in Germany, within the European Economic Area. Data does not leave that area.
Each property has a separate data space. Every database query is filtered by property identifier at the data access layer — there is no way for one property's query to return another's data.
Connection and passwords
All communication takes place over an encrypted HTTPS connection with an automatically renewed certificate.
Passwords are stored only as hashes computed with the bcrypt algorithm. Reading a password from the database is not possible — including for us.
Access within a property depends on the role: owner, front desk, kitchen, housekeeping and maintenance each see only what their work requires. Amounts and settlements are available to the owner alone.
Who has access
Administrative access to the server and the database is held by one person — the owner of the service. We do not use subcontractors to maintain the infrastructure.
The account overview in the supervision panel covers billing data and counts: the number of rooms, bookings and users. It does not cover booking contents, guest data or meal plans.
Backups
A backup of the database and configuration is made daily and kept for 30 days.
Every backup is verified immediately after creation — we check the size and completeness of the dump. A backup that could not be restored is rejected and reported as an error.
Backups are copied to a second server, separate from the production one. Both servers belong to the same provider and are in the same location, which means that a failure of the entire data centre would affect both at once.
Backups are compressed but not encrypted. They are protected solely by restricted access to the servers.
Export and deletion of data
The complete data of a property can be downloaded from the panel at any time in a machine-readable format. This requires no contact with us and no permission from our side.
An account is deleted 7 days after the request. The decision can be withdrawn during that time. After that period the data is irreversibly removed from the database.
Deleted data remains in backups until they expire, that is for no longer than 30 days.
Payments
We do not store card numbers or banking credentials. Payment takes place entirely on the operator's side: Montonio for payments in Polish zloty, Stripe for payments in euro.
Only the payment result returns to the service, signed with the operator's key and verified on our side.
What we do not do
We do not sell or share data with third parties.
We do not use analytics tools that profile users. Visit statistics are collected without cookies and without identifying individuals.
We do not hold ISO 27001 certification or a formal security audit. The description above is our own statement.