Skip to main content

Privacy Policy

Last updated: July 30, 2026

At hotelchatbook (operated by UNOZERO), we are committed to protecting your privacy. This policy describes how we collect, use, and share your personal information.

1. Roles and Data Responsibility

For purposes of data protection laws (including GDPR and equivalent laws in Latin America), hotelchatbook (operated by UNOZERO) acts as a "Data Processor" with respect to guest information (end users on WhatsApp and other messaging channels), and the accommodation (our client) acts as the "Data Controller". Any request to delete a guest's data must be handled by the corresponding accommodation.

2. What Data We Collect

We distinguish between two categories of data: • B2B Data (From the accommodation): Company name, corporate emails, billing data (processed via Stripe; we do not store full card numbers), and API integrations (PMS tokens). • B2C Data (From guests): Phone numbers (via Meta/WhatsApp), profile names, and conversation content (chat logs).

3. Use of Information and Artificial Intelligence Training

hotelchatbook is an AI-first platform. We process chat logs to provide the automation service, including to: • Provide, maintain, and improve our services • Process transactions and send related notifications • Respond to your comments, questions, and requests • Send technical information, updates, and security alerts Critical AI clause: Conversational data undergoes a strict de-identification process (removal of PII such as names, phone numbers, or credit card numbers entered by mistake). Once anonymized, we use this aggregated data for the training, fine-tuning, and improvement of our "Hotel Brain System" and underlying models.

4. Data Subprocessors (Third Parties)

To operate, we share data in encrypted form with critical subprocessors: • Meta Platforms, Inc. (WhatsApp Business API infrastructure). • OpenAI / Anthropic (for natural language processing. Our agreements with these providers expressly prohibit them from using our clients' data to train their own public foundation models). • Stripe (payment gateway). We do not collect, process, or store your full credit card data on our servers; this sensitive information is handled directly and securely by Stripe, which complies with strict PCI regulations. • AWS / Google Cloud (hosting and databases). We do not sell, rent, or share your personal information with third parties for marketing purposes without your explicit consent. We may also share information to comply with legal obligations or to protect the rights and safety of hotelchatbook and our users.

5. Processing of Guest Data (End Users)

When a guest interacts with hotelchatbook through an accommodation's messaging channels, hotelchatbook acts solely as a technological "Data Processor," with the accommodation (our client) being the legal "Data Controller" of such data. • Notice and Consent: When starting a conversation directly from hotelchatbook's Web application, the guest receives an initial automated notice from hotelchatbook. For other communication channels, the responsibility for this notice and consent lies with the hotel or third-party service. By continuing to interact with the bot after this notice, the guest implicitly accepts the processing of their data in accordance with this Privacy Policy, as well as the accommodation's own Privacy Policy. It is the sole responsibility of the accommodation to have its own privacy policy and to obtain any additional consent required by its local regulations.

6. Data Retention

We retain your personal information while your account is active or as necessary to provide our services. To ensure transparency and align with our operational policies: • Chat Histories and Guest Data: Personal data of guests collected during conversations belongs exclusively to the accommodation. Upon cancellation or termination of service (when a hotel leaves hotelchatbook), guest interaction data and chat histories are retained for a maximum period of 30 calendar days, solely and exclusively to allow the hotel to export its information. After this period, hotelchatbook will proceed with the irreversible deletion or anonymization of all guest personal data, guaranteeing their absolute privacy and releasing us from any third-party data retention. • Legal and Billing Records: We may retain certain operational information (such as transaction records and account details) for longer periods if required by law, for tax and accounting purposes, or to resolve disputes and enforce our agreements.

7. Data Security

We implement technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. We use SSL/TLS encryption for all communications and store data on secure servers.

8. Your Rights

You have the right to: • Access your personal data • Correct inaccurate data • Request deletion of your data • Object to processing of your data • Request portability of your data To exercise these rights, contact us at privacidad@hotelchatbook.com

9. Cookies

We use cookies and similar technologies to: • Keep your session active • Remember your preferences • Analyze service usage • Improve user experience You can configure your browser to reject cookies, although this may affect service functionality. You can also manage your preferences at any time from our Cookie Settings Panel (link in the footer). See our Cookie Policy for details.

10. Integration with Third-Party Platforms (Meta and Google)

• Use of Meta Channels: Since hotelchatbook may operate through external messaging platforms such as WhatsApp, Instagram, and Facebook Messenger, the collection, transmission, and processing of messages is also subject to the Terms of Service and Privacy Policies of Meta Platforms, Inc. By using our service through these channels, both the accommodation and the guest agree to be bound by such third-party policies. • Use of Google APIs: hotelchatbook uses Google APIs for features such as calendar management and availability. hotelchatbook's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. This means: • We only access Google data necessary to provide the requested service. • We do not use Google data to serve advertisements. • We do not sell or transfer Google data to third parties, except as necessary to provide the service. • We do not allow humans to read your Google data unless you have given us explicit permission, it is necessary for security purposes, or we are required to do so by law.

11. Changes to This Policy

We may update this privacy policy periodically. We will notify you of significant changes by posting the new policy on this page and, when appropriate, sending you a notification.

12. Contact

If you have questions about this privacy policy, you can contact us at: • Email: ceo@unozero.ai • Address: 9000A NW 106th ST, Miami, Florida.