Privacy policy
Last updated: 10 July 2026
We collect only what a booking needs to work. This is the full list — no fine print.
Who is responsible
The data controller is [ЗАГРАДИ]. For anything about your data, write to vasil.brezovski@gmail.com.
We operate under the Law on Personal Data Protection of the Republic of North Macedonia (aligned with the GDPR).
What we collect and why
When you book:
- Name and phone number — so the venue knows who is coming and can reach you if something changes.
- Email (optional) — for a confirmation and a cancellation link.
- Booking details (venue, date, time) — to make the service work.
- IP address, temporarily — only to protect against abuse (rate-limiting rapid repeated requests).
Who sees your data
The venue you book sees your name, phone and the slot — it needs that to receive you. Other venues and other users do not see your data.
Technical processors: Supabase (database, Frankfurt, EU), Vercel (hosting) and Brevo (email and SMS confirmations, EU). We do not sell or share data for marketing.
Analytics is cookie-free and does not identify you personally.
How long we keep it
Booking data is kept for as long as the venue's records need it. Anti-abuse IP logs are deleted automatically after a short period.
Your rights
You have the right to request access, correction or deletion of your data. Write to vasil.brezovski@gmail.com and we will act within 30 days. You also have the right to complain to the Personal Data Protection Agency.
Security
Data access is restricted at the database level (row-level security), all traffic is encrypted (HTTPS), and a venue only sees its own bookings.