Privacy Policy
Version 2 · in force since 3 October 2026
What changed
We removed the statements about Stripe's test mode and sample listings: payments are now real, and photos are no longer loaded from Unsplash. Everything else is unchanged.
This policy explains what personal data we process when you use our website and apps (the "platform"), why, and what rights you have. It covers renters, hosts and visitors.
The short version
- We collect what we need to run bookings: your account, your bookings and payments, your messages and reviews, and — if you host — your host and venue details.
- Card details go straight to Stripe. We never see your full card number.
- Hosts see what they need for a booking; your phone number only from confirmation until 14 days after the booking.
- Until a booking is confirmed, contact details in messages are hidden automatically.
- We use no analytics, advertising or tracking tools. Maps on the website load only if you allow them. The storage on your device is listed in the Cookie Policy.
- Our database is in the EU (Frankfurt). You can delete your account yourself at any time.
1. Who is responsible
The controller is COGITO CODE S.R.L., Aleea Tândală 18-20, Sector 3, București 031882, Romania, CUI 48481995 ("we", "us"). Contact for privacy questions: contact@cogitocode.ro.
We have not appointed a data protection officer: the GDPR does not require one for our processing. For privacy questions use the contact above.
2. What we process, why, and on what legal basis
Legal bases refer to Art. 6(1) GDPR: (a) consent, (b) contract, (c) legal obligation, (f) legitimate interests.
- Account. Name and email address from Google or Apple when you sign in (if you hide your email address with Apple, a forwarding address), and your profile picture if you sign in with Google; your language; if you add one, your phone number and whether it is verified (we send the code by SMS). Basis: (b). Hosts must verify their phone; for renters the "phone verified" badge builds trust with hosts, basis (f).
- Bookings. Room, date and time, number of people, activity, your message to the host, price, cancellation policy, status, cancellation reason. Basis: (b); keeping accounting records, (c).
- Payments. Handled by Stripe. We store Stripe's reference numbers, amounts, statuses, and the card brand and last four digits. If you agreed to post-session charges at checkout, we also keep the Stripe customer and saved payment-method identifiers for that booking (never card numbers), to charge approved post-session claims on it. The saved card is detached once no post-session charge can still be filed or is still open for that booking — the filing window is over and every claim on it is settled, closed or refunded — and when you delete your account, as soon as nothing is open. The customer reference stays with the booking record. Basis: (b), (c).
- Access and arrival. When you open your door code, we log the time, to protect the host's premises and settle disputes. Problem reports you send (type and note). Basis: (b), (f).
- Messages. Texts, photos and PDFs you send. Until a booking is confirmed, a program hides phone numbers, email addresses and links. We store the hidden original separately; the other person never sees it. Each hiding and each report is logged, without message content. A report includes the reported message and the last 20 messages as the reporter saw them. Basis: (b); safety and keeping payments on the platform, (f).
- Reviews and reliability. Ratings, texts and replies. Reviews of rooms are public. Hosts who have a booking or request from you see hosts' reviews of you and your record: whether you are new to the platform, your completed bookings, no-shows and cancellations (and how many of them came less than 24 hours before the start), the average of hosts' ratings, and whether you meet the criteria for instant booking (no no-show in the last 6 months and an average of at least 3.0 from hosts). Basis: (f), trust in the marketplace.
- Notifications. Emails and in-app notices about your bookings, messages and account, and your notification settings. Basis: (b); optional reminders and message emails, (f), and you can switch them off.
- Hosts. Host details (legal name, display name, whether you host as a business or as a private individual — shown on your listings — country, VAT ID); tax reporting details (tax identification number, registration number, address, date of birth for individuals); venue address and map position; access details (door code, Wi-Fi, arrival steps, contact phone), shown to the renter of a confirmed booking at release time; payout status from Stripe. Basis: (b); DAC7 tax reporting, (c) — what we report is in the Host Terms, section 1.
- Legal records. Which version of the terms and of this policy you accepted or acknowledged, in which language, the text's fingerprint, the time and the channel (web or app) — no IP address. Your marketing choices per channel (email, SMS, app notifications); we don't send marketing yet. Your cookie choice. Basis: proof of agreements, (f); marketing, (a), which you can withdraw at any time under Account → Legal & privacy; cookie records, (c).
- Technical data. Our hosting and database providers process IP addresses and browser details in their logs to deliver and protect the service. Basis: (f).
What you have to give us. For an account we need the name and email address from your Google or Apple sign-in. To book, we need the booking details and a card payment through Stripe. To host, we need a verified phone number and your host details; before your first payout we ask for the tax details the law requires (DAC7). Without them you can't use that part of the platform. Everything else — your phone number as a renter, a message to the host, reviews, marketing choices — is up to you.
Confirming that you have read this policy is not a consent, and no processing relies on it.
We don't make decisions about you based solely on automated processing that have legal or similarly significant effects. The automatic hiding of contact details decides nothing about you.
3. Who receives data
- Other users, as described above: hosts see renter details for their bookings, renters see the host's listing and, at release time, the access details and the host's contact phone. Published room reviews are public.
- Service providers working for us:
- Supabase — database, sign-in and file storage; EU (Frankfurt, Germany).
- Vercel — hosting of the website.
- Stripe — payments. For fraud prevention, verifying hosts and its legal duties, Stripe acts as a controller in its own right.
- Resend — sending our emails; EU.
- Twilio (Twilio Verify) — SMS codes that verify your phone number.
- Sign-in providers: Google and Apple, when you choose to sign in with them. They act under their own privacy policies.
- Direct requests from your device: on the website, maps load their tiles from OpenFreeMap once you allow maps ("Preferences" in the cookie settings; basis (a)); these services receive your IP address. When your email program loads the fonts in our emails, Google Fonts receives your IP address.
- Authorities, where the law requires it, for example the tax authority for DAC7 reports.
We don't sell your data.
4. Transfers outside the EU
Some providers, or their subcontractors, process data outside the European Economic Area, for example in the United States. We rely on the EU-US Data Privacy Framework where the provider is certified and on the Commission's standard contractual clauses otherwise. The providers that may transfer data outside the EEA are: Vercel, Stripe, Twilio, Resend, Supabase's sub-processors, Google and Apple.
5. How long we keep data
- Your account as long as you have it.
- When you delete your account, we remove your profile, your notifications and settings, your blocks, your acceptances and your marketing choices. Your open requests are withdrawn and your upcoming bookings cancelled. Past bookings and payments stay without your name, because the host and our accounts need them. Your messages stay readable for the other person, marked as coming from a deleted user; your published reviews stay without your name. Reports and moderation logs stay without a link to you. Your cookie records stay without a link to you.
- If you host, deleting your account deletes your host profile, unless other renters have bookings with it; then it is closed and unlinked from you, and its listings are taken offline.
- Your phone number is visible to a host from confirmation until 14 days after the booking.
- Your cookie choice is valid for 12 months; then we ask again. Cookie records are unlinked on deletion and then identify no one (a random ID, no IP).
- Bookings, payments and invoices: for the periods Romanian accounting and tax law sets: generally 5 years for supporting documents and 10 years for accounting registers, from the end of the year concerned.
- Proof of acceptances and marketing choices is deleted with your account.
- Hidden originals of message parts are kept as long as the message they belong to; door-code view logs as long as the booking record they belong to. Files in messages stay with the conversation for the other person.
- The saved card for post-session charges is detached (removed) once no post-session charge can still be filed or is still open for that booking — the filing window is over and every claim on it is settled, closed or refunded — and when you delete your account, as soon as nothing is open. The Stripe customer reference stays with the booking record.
- Server logs are kept by our providers for short periods they set (at most 30 days).
6. Your rights
You have the right to access your data, to have it corrected or erased, to restrict its processing, to receive it in a portable format, and to object to processing based on legitimate interests. Where we rely on your consent, you can withdraw it at any time; this doesn't affect what we did before.
You can change your details and settings, and delete your account, yourself: on the website under Account, in the app under Profile. For everything else, write to contact@cogitocode.ro. We may ask you to confirm who you are. We reply within one month, free of charge.
You can also complain to a data protection authority. In Romania this is ANSPDCP (Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal), dataprotection.ro. You can also turn to the authority where you live or work.
7. Security
Our database is in the EU, and access to every record is limited to the people allowed to see it. Card data never reaches our servers. Door codes are shown only to the renter of a confirmed booking, only from release time, and each view is logged.
8. Age
The platform is not meant for people under 18.
9. Changes
Every version of this policy has a number and a date, and earlier versions stay readable on this page. If we change it, we tell you on the platform and show you what changed.