Privacy Policy
Last updated: January 2026
HotelRebook ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our hotel price tracking service.
Information We Collect
We collect information you provide directly and data generated through your use of our service:
- Account information: Email address and name (via Google OAuth or magic link authentication)
- Booking details: Hotel name, location, check-in/out dates, room type, guest count, and booked price
- Preferences: Alert thresholds, timezone, and language settings
- Usage data: Pages visited, features used, and interaction with alerts
How We Collect Information
We collect information through the following methods:
- Google OAuth: When you sign in with Google, we receive your email and name
- Magic link: When you sign in via email, we collect your email address
- Email forwarding: When you forward hotel confirmation emails to our tracking address, we parse booking details
- Manual entry: When you manually add reservations through our dashboard
Legal Basis for Processing
We process your personal data based on:
- Consent: When you create an account and agree to our Terms of Service
- Contract performance: To provide the price tracking service you requested
- Legitimate interests: To improve our service and communicate important updates
Data Retention
We retain your data for as long as your account is active:
- Active accounts: Data is retained until you request deletion
- After deletion request: Data is permanently removed within 30 days
- Historical reservations: Kept for your records but not actively monitored after checkout
Third-Party Services (Subprocessors)
We use the following trusted services to operate HotelRebook:
- Supabase: Database hosting and authentication (PostgreSQL, Auth)
- Vercel: Website hosting and serverless functions
- Resend: Transactional email delivery
- Google Hotels: Price comparison data source
Security Practices
We implement industry-standard security measures:
- Encryption: All data is encrypted in transit (TLS 1.3) and at rest
- Access control: Strict access controls limit who can access your data
- Monitoring: We monitor for security incidents and unauthorized access
- No payment data: We never collect or store payment information
Your Rights
You have the following rights regarding your personal data:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Delete your account and all associated data
- Portability: Export your data in a machine-readable format
- Objection: Object to certain processing activities
To exercise these rights, visit your account settings or contact us at privacy@hotelrebook.com.
Children's Privacy
HotelRebook is not intended for users under 16 years of age. We do not knowingly collect personal information from children.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by email or through a notice on our website.
Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us: