2. What we collect
We only collect what we need to run the product:
·
Account info — name, email address, hotel name, and role (owner, manager, front desk, housekeeping, maintenance). Provided when you sign up or are added as staff by an admin.
·
Authentication credentials — passwords are never stored by us. They are handled by our authentication provider. Staff PINs are stored as a salted SHA‑256 hash.
·
Operational data you create — rooms, reservations, guest profiles, housekeeping tasks, maintenance work orders, cash counts, store sales, schedule entries, and time‑tracking entries.
·
Billing data — subscription status, plan, room count, invoice history, and the email used for billing receipts. Card numbers and CVV go directly to our payment processor; we never see or store them.
·
Location data — when a non‑admin staff member opens the app, the device reports a single coordinate so we can confirm they are at the hotel before allowing them to perform on‑site actions (clock in, mark a room clean). We store the most recent location and the time it was checked, never a movement trail. Admins and users with remote access are exempt and never share location.
·
Push tokens — if you opt in to notifications, we store the Expo push token for your signed‑in devices so we can deliver schedule and assignment alerts.
·
Audit logs — every meaningful action (creating a reservation, refunding a payment, changing a role) is recorded for security and accountability.