ReservMe

Privacy Policy

Effective 27 September 2026

This notice explains what personal data ReservMe handles, why, and the choices you have. It is written for both venue owners who use ReservMe and the customers who book with them.

Who we are, and the two roles we play

ReservMe provides booking software to venues — courts, studios, rooms, restaurants and tours. How we handle personal data depends on whose data it is.

When a venue owner signs up and runs their venue on ReservMe, we are the controller of that owner's account information. When a customer books a slot at a venue, the venue decides why and how that booking data is used — the venue is the controller, and ReservMe is only the processor acting on the venue's instructions.

What we collect

From a customer making a booking: your name, email address, an optional mobile number, and the details of the booking itself (which space, when, the amount). Customers do not create an account and we never ask a customer for a password.

From a venue owner or staff member: name, email address, a hashed password, and the venue details you enter (spaces, prices, opening hours, policies).

Automatically, for security and reliability: your IP address and basic request information, used for rate limiting and abuse prevention, kept only briefly.

From the ReservMe mobile app, if it crashes or hits an error: a technical report (the app version, device model and operating system, and what the app was doing). Reports are scrubbed of booking links and email addresses before they leave the phone.

What we do not collect

We do not use advertising or analytics cookies or SDKs, and we do not track you across other websites or apps. The only cookie we set is an essential one that keeps a signed-in venue owner logged in — customers booking a slot are not given any tracking cookie.

In the current pay-at-venue model we do not take card payments, so we do not collect or store card numbers. When online payments are introduced they will be handled by a licensed payment provider (such as PayMongo or Xendit); we will update this notice before that happens.

How we use it

To take and confirm bookings, send confirmation and reminder emails, and show a venue its schedule. Confirmation and reminder emails are sent through our email provider (Brevo) on the venue's behalf.

To keep the service secure and working — preventing a single source from flooding a venue's calendar, and diagnosing errors.

We do not sell personal data, and we do not use a venue's customer list for our own marketing.

Who we share it with

The venue you booked with, so it can honour your reservation. That is the whole point of the booking.

A small number of service providers who process data only to run ReservMe for us: our email provider (Brevo), our hosting provider (Render), our database provider (Neon), our error-reporting provider for the mobile app (Sentry), and — once online payments are enabled — the payment provider you choose. Each acts under contract and only on our instructions.

We may disclose information if required by law, or to protect the rights and safety of people and venues.

How long we keep it

Booking and customer records are kept for as long as the venue uses ReservMe, so the venue has its history, and are deleted (or returned) when the venue leaves. Security data such as IP-based rate-limit counters is discarded within hours.

A venue can export its customers and booking history at any time, and can ask us to delete records on its behalf.

In the mobile app, a customer's bookings are also saved on their own phone so they can find them again. That copy never leaves the phone except to fetch the booking's latest status, and is erased by Account → Delete all my data or by uninstalling the app. Crash reports are kept for up to 90 days.

Deleting your account

Venue owners and staff can delete their account in the ReservMe app: More → Your account → Delete your account. See /delete-account for the steps and what is kept.

Customers do not have an account. To have a booking record removed, ask the venue, which controls it; to clear the bookings saved in the app, use Account → Delete all my data.

Your rights

Under the Data Privacy Act you may ask to access, correct, delete, or object to the processing of your personal data, and to receive a copy of it. For booking data, the venue is the controller — contact the venue, and we will help the venue act on your request. For a venue owner's own account data, contact us directly.

You also have the right to complain to the National Privacy Commission (NPC) if you believe your data has been mishandled.

How we protect it

Data is stored in a managed database, access is limited to what each part of the system needs, passwords are hashed, and connections are encrypted in transit. No system is perfectly secure, but we design to fail safe — for example, the booking engine refuses to double-book at the database level rather than relying on a check that could be raced.

If a personal-data breach occurs that is likely to cause serious harm, we will notify the affected controllers and, where required, the National Privacy Commission and affected individuals, in line with the Data Privacy Act.

Contact

Questions about this notice, or a request about your data, can be sent to keytechnologiespro@gmail.com. That address also reaches our Data Protection Officer.