Privacy

Privacy Policy

This Policy explains how the operator of VELQUISSE uses personal information when you browse the marketplace, manage an account, work with a property organization, submit a request or offer, or take part in a booking and payment workflow.

Last updated 28 September 2026

1. Controller

The controller for the current V1 service is:

ECPro s.r.o.
Klincová 35
821 08 Bratislava
Slovakia
Company ID / IČO: 52246159
VAT ID / IČ DPH: SK2120951734

Privacy questions and rights requests may be sent to support@velquisse.com.

2. Information we process

  • Account and authentication data, such as email address, account identifiers and session information.
  • Profile information and organization membership, roles and operational contact details.
  • Property information, provider contacts, listing content and uploaded property media.
  • Booking information, including dates, party count, prices, currency, references and lifecycle state.
  • Private Request information, including stay preferences, budget range and free-text requirements.
  • Private Offer information, including proposed dates, price, validity, messages and offer history.
  • Payment-workflow information, including deadlines, references, status and reconciliation records.
  • Provider bank destination details needed to enable direct bank transfer.
  • Lifecycle, security and audit records used to operate and protect the marketplace.
  • Ordinary technical information associated with requests, devices, sessions and service reliability.

A booking currently records the number of guests. It does not collect additional guest names, passport data, dates of birth or identity documents. We do not currently collect guest card number, CVV, card expiry, guest bank-account credentials or online-banking credentials.

3. How and why we use information

We use information to authenticate users, provide accounts, operate property organizations and listings, handle Private Requests and Offers, create and administer bookings, present direct-payment instructions, support users, preserve transaction integrity, prevent misuse, maintain records and comply with legal duties.

Depending on the activity and applicable law, processing is based on performing or preparing a contract, our legitimate interests in operating and securing the marketplace, compliance with legal obligations, or consent where consent is the appropriate basis. We do not currently operate a newsletter or marketing-email system, and the application has no analytics or advertising-tracking system.

4. Private Requests and Providers

Relevant Private Request information may be shared with accommodation providers selected or matched by VELQUISSE so they can evaluate the request and prepare an offer. The current provider view is designed to exclude the Guest’s email address, name and profile identifier.

Free-text fields may nevertheless contain whatever a Guest chooses to write. Please avoid including health information, identity-document details, financial credentials or other sensitive personal information unless it is genuinely necessary and an appropriate secure channel has been agreed.

5. Bookings and direct payment

Booking information is used by the applicable Property or Provider to supply the stay and manage payment. In the current model, a Guest sends a bank transfer directly to the Property or Provider. We store provider bank destination information and disclose the relevant destination to the Guest for that booking. We record the workflow state, but do not collect Guest banking credentials or hold the transferred funds.

6. Service providers and other recipients

  • Supabase provides authentication, database and storage services.
  • Resend is used through Supabase Custom SMTP to deliver authentication-related transactional email.
  • Selected accommodation providers receive information needed to evaluate requests and supply bookings.
  • Professional advisers, authorities or other recipients may receive information where reasonably necessary or legally required.

The application does not directly integrate the Resend SDK. Infrastructure locations and transfer mechanisms depend on the services and configurations in use; we do not claim that every processing activity occurs exclusively in the EEA. Where applicable, safeguards required for international transfers are used.

7. Retention

We retain information for as long as reasonably needed for the purpose for which it was collected, including account and service delivery, contractual and transaction records, legal obligations, dispute handling, fraud prevention and security. The application does not currently encode one universal retention period. Information may later be deleted or anonymized where appropriate and lawful.

8. Your rights

Subject to applicable law, you may have rights to access, correct or delete personal information; restrict or object to certain processing; receive portable information; withdraw consent where processing relies on it; and complain to a data-protection authority. These rights can have legal exceptions, including where records must be kept for transactions, claims or legal duties.

The service does not currently provide self-service export or account deletion. Contact support@velquisse.com so we can assess and respond to your request.

9. Security and sessions

We use authenticated sessions, access controls, tenant isolation, restricted access to transaction and bank information, and private or signed media access where appropriate. No technical system is absolutely secure, so please protect your account and contact us if you suspect misuse. Necessary session cookies are described in our Cookie Policy.

10. Children and changes

The marketplace is intended for adults who can enter binding contracts and is not directed to children. We may update this Policy as the service, providers or legal requirements change. The date above identifies the current version.