Last updated: 13 August 2026
This Privacy Policy explains how SaiStay Shirdi ("we", "us", "our") collects, uses, stores and protects information when you use our website and booking services. This policy is provided for general informational purposes; please have it reviewed by a qualified legal professional before relying on it for compliance purposes.
Identity documents are stored outside our public website directory, encrypted at rest, and are never publicly accessible. Access is restricted to authorized administrative staff who require it for booking verification, and every access is logged. Identity documents are never included in email, SMS, WhatsApp messages, booking confirmations, or any customer-facing page.
Your information is accessible only to authorized staff members based on their role (for example, booking managers handle stay and payment details; verification staff handle identity documents). Property/hotel identity, contact and location details are visible only to authorized administrators and are shared with you only after your booking is confirmed.
We use third-party services to operate our platform, including a payment gateway (for processing advance payments) and, where configured, WhatsApp/SMS providers (for sending booking-related messages). These providers process your information solely to deliver their respective service to us and are bound by their own privacy and security practices.
We retain booking and customer information for as long as necessary to fulfil the purposes described in this policy and to meet legal, accounting, or reporting requirements. Identity documents may be retained for a limited period after your stay for verification and dispute-resolution purposes, after which they may be securely deleted upon request or as per our internal retention schedule.
You may request access to, correction of, or deletion of your personal information (subject to our legal and legitimate business retention needs) by contacting us at help@saistayshirdi.example.
We apply administrative and technical safeguards including encrypted storage of identity documents, role-based access control, audit logging of sensitive data access, secure password storage, and CSRF/session protections. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
We may update this Privacy Policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
For privacy-related questions, please reach out via our Contact page.