Legal
Privacy policy
Effective July 23, 2026
Information we collect
We collect account and contact details, booking and inquiry content, property and host information, transaction references, service logs, approximate device and network information, consent records, and messages. Stripe receives payment-card data directly; ZemiStay stores transaction identifiers and payment status, not complete card numbers.
How we use information
We use information to provide and secure bookings, verify users and hosts, process payments, communicate about stays, prevent fraud and inventory abuse, support users, retain required business records, and improve the service. Marketing requires an appropriate lawful basis and includes an opt-out where required.
Who receives information
Booking information is shared with the relevant host and authorized team. Providers may process limited data for hosting, database, authentication, payment, email, maps, calendar import, monitoring, and support. We do not sell personal information. Information may be disclosed when required by law or necessary to protect people and rights.
International processing and retention
ZemiStay and its providers may process information outside your country, including the United States. Booking, payment, tax, consent, and dispute records are retained as legally and operationally required; other data is removed or de-identified when no longer needed.
Your choices and rights
Depending on applicable law, you may request access, correction, deletion, restriction, portability, or withdrawal of consent. Some records must remain for contracts, fraud prevention, tax, or legal claims. Contact privacy@zemistay.com so we can verify and handle a request.
Security, children, and changes
We use access controls, encryption in transit, restricted payment handling, and monitoring, but no system is risk-free. The service is not directed to children under 18 as booking customers. Material policy changes will be dated here and communicated where required.