Privacy Policy
Effective 15 June 2026
1. Overview
This policy explains how Ospite handles personal data for two groups: the hotels that subscribe to Ospite, and the guests who message those hotels. Hotels are the controllers of their guests’ data; Ospite processes it on their behalf to provide the service.
2. Data we collect
- Hotel account data: name, email, phone, hotel details, and billing identifiers from our payment processor.
- Guest conversation data: messages exchanged through connected channels, names/phone numbers the guest provides, and booking details.
- Payment data: handled by Stripe. We store payment status and identifiers, not full card numbers.
- Technical data: logs and basic usage metrics needed to run and secure the service.
3. How we use data
We use data to operate the AI assistant, route and answer guest messages, generate checkout links, process subscriptions and payments, provide support, and keep the service secure. We do not sell personal data.
4. Processors we use
We share data only with processors needed to deliver the service, including: Stripe (payments and billing), Meta (WhatsApp and Instagram messaging), Telegram (messaging), our AI model providers (for generating replies), and our hosting provider. Each processes data under their own terms.
5. Retention
We retain conversation and booking data for as long as the hotel’s account is active, and for a reasonable period afterward as required for legal, accounting, and dispute-resolution purposes. Hotels can request deletion of their data.
6. Your rights
Depending on your jurisdiction, you may have rights to access, correct, or delete personal data. Guests should direct such requests to the hotel they messaged; hotels can contact us to action requests we process on their behalf.
7. Contact
For privacy questions or requests, email support@ospite.app.