Privacy Policy
At BookVelo, your data belongs to you. This policy outlines how our platform collects, uses, and protects your information.
Table of Contents
BookVelo complies with the IT Act, 2000 and DPDP Act, 2023.
1. Introduction
Welcome to BookVelo ("we", "us", or "our"). We are committed to protecting your privacy and ensuring you have full control over your data. This Privacy Policy explains how we handle your Personal Information when you use the BookVelo SaaS platform, mobile apps, and API services.
Note: For the purpose of data laws, BookVelo is the "Data Fiduciary".
By accessing or using BookVelo, you consent to the data practices described in this policy.
2. Data We Collect
We collect different types of information depending on whether you are a Partner (Boat House/Resort Owner) or an End-User (Customer).
A. Information You Provide to BookVelo
- Account Registration: Name, business email, phone number, and password when you sign up for BookVelo.
- Business Profile: Company name, GSTIN, PAN, and Payout Bank Details (handled securely via Razorpay).
- Customer Bookings: When an End-User books a ticket via your BookVelo page, we process their Name, Contact Info, and Booking Preferences.
B. Automated Information
- Device Data: IP address, browser type, and device model to optimize your dashboard experience.
- Usage Logs: We track which features (e.g., POS vs. Online Booking) are used most to improve the BookVelo platform.
3. How We Use Data
BookVelo uses your data for the following specific business purposes:
- Service Delivery: To generate QR-code tickets, manage slot inventory, and sync bookings across your devices.
- Billing & Payouts: To calculate platform fees and ensure you receive your revenue on time.
- Notifications: To send critical alerts (e.g., "Booking Confirmed" or "Server Maintenance") via Email or WhatsApp.
- Security: To detect fraudulent bookings and unauthorized login attempts to your dashboard.
4. Data Sharing & Disclosure
BookVelo does not sell your data. We share data only with essential infrastructure partners required to run the software:
- Payment Gateways: We transmit encrypted transaction data to Razorpay/PhonePe to process payments.
- Cloud Hosting: Your data is stored on secure, encrypted servers provided by DigitalOcean/AWS.
- Messaging Services: We use Twilio/WhatsApp API to deliver OTPs and tickets to your customers.
- Legal Requirements: We may disclose information if required by Indian Law Enforcement or a Court Order.
5. Data Security
Security is at the core of BookVelo. We implement enterprise-grade measures:
- Encryption: All data in transit is encrypted using 256-bit SSL/TLS. Passwords are hashed using bcrypt.
- Access Control: Only authorized personnel can access the database for maintenance purposes.
- Payment Safety: BookVelo never stores credit card numbers or UPI PINs.
6. Data Retention
We retain your personal information only as long as your BookVelo account is active.
- Active Accounts: Data is kept to provide you with historical booking reports.
- Deleted Accounts: If you cancel your subscription, we may retain financial transaction logs for up to 7 years solely to comply with Indian Tax (GST) laws.
8. Grievance Officer
In accordance with the IT Act, 2000, if you have any concerns regarding your data privacy, you may contact our Grievance Officer:
We will acknowledge your grievance within 24 hours and redress it within 15 days.