Encrypted transfer
Data moves between browser and service over HTTPS/TLS.
Security and privacy
Public check-in is separated from the host account, data transfer is encrypted and sensitive access is used only for required operations.
This page describes verifiable technical principles. It does not replace contractual or privacy documentation.

Fewer security slogans, more clear answers about what happens to data.
Data moves between browser and service over HTTPS/TLS.
Credentials are encrypted at rest and decrypted server-side only for the operation that needs them.
Guests cannot access the host account or other reservations.
Binding processing terms and contacts belong in the privacy documentation.
Security relies on concrete technical and operational controls.
Public check-in is separate from the authenticated app.
Access is used server-side only for an operation the host starts or configures.
Details are in the Privacy Policy and Terms of Service.
For security documentation needed in your own review, send us a specific request.
No. Public check-in is separated from the signed-in application.
Access is used server-side for an operation started or configured by the accommodation provider. Detailed documentation is available on request.
In the Privacy Policy and Terms of Service. The security page supplements those documents; it does not replace them.
Tell us what you are assessing. We will answer specifically.
Try for free