HostBook Privacy Policy

AVEDIA / HostBook · Updated 4 October 2026

HostBook manages hospitality properties and bookings. Your sign-in account uses Firebase Authentication. Business records are cached on your device; when cloud sync is enabled, records and attachments are also stored in Google Cloud Firestore under your account.

What is stored, and where

HostBook stores properties, bookings, customers, contact details, inquiries, payment and deposit records, notes, property photos and attached documents. A local cache supports offline use. In cloud-sync builds, these records and attachments are uploaded to your account in Google Cloud Firestore. Attachments are stored as manifest and chunk documents; Firebase Cloud Storage is not used. Sharing an invoice or catalogue sends the selected information to the destination you choose.

Your HostBook account

Firebase Authentication handles email/password and Google sign-in accounts, account identifiers, email verification and sign-in information. Passwords are submitted to Firebase Authentication and are never included in booking records. Cloud-sync records are associated with your signed-in account. Signing out does not delete your account or its cloud records.

Account cloud sync

This build enables account cloud sync when Firebase configuration is available. Business records and photo/document attachments sync to Google Cloud Firestore under the signed-in account. Security rules restrict account records to their authenticated, verified owner. Offline edits are queued and uploaded after connectivity returns. Cached records and internal migration safety snapshots remain on the device. Cloud sync does not make records public. Firebase Cloud Storage is not used.

The optional fingerprint lock

You can turn on a fingerprint lock so HostBook asks for your fingerprint when it opens. Your fingerprint is checked by Android itself — HostBook never sees, stores or backs it up. This is a convenience lock, not encryption: it does not protect your data from someone with your unlocked device or its files. If your device can no longer check fingerprints, the app opens normally, so you are never locked out of your own data.

Deleting your data

Settings provides Reset This Device when cloud sync is enabled. It clears local HostBook records, settings, internal safety snapshots and app-private exports. It does not delete your Firebase account or cloud records; cloud records can return when you sign in again. With cloud sync disabled, Delete All Data clears device-local data. Files you saved or shared outside the app remain in their destinations.

Account and cloud-data deletion

Settings › Request account & cloud-data deletion opens an email draft to sandeeppatel9099@gmail.com. Send the email to initiate your request; opening the draft does not submit it or delete data. Include your account email. Support must verify account ownership and remove associated Firebase Authentication account, cloud records and attachments. Local reset and sign-out are not account deletion. Cancel subscriptions separately in Google Play. Reset This Device clears local copies only.

Advertising (free plan)

The free plan is ad-supported, but ads only start once you have 5 properties or 10 bookings — until then HostBook does not contact any ad service. Ads are supplied by Google AdMob: a small banner on most screens (a larger one on some long pages), and occasionally a full-screen ad after you save a new booking or property, never more than a few times a day. You can also choose to watch an optional video for 30 minutes without ads. AdMob is provided by Google and may collect device and advertising identifiers to serve and measure ads, under Google's own privacy policy. Where required, you are shown a consent choice before the first ad, and you can reopen it at any time from Settings › Privacy Options. Pro removes ads entirely.

Purchases (Pro)

Pro subscriptions are processed by Google Play, with RevenueCat used to check whether your subscription is active. We never see or store your payment details. RevenueCat receives an anonymous identifier and your purchase status so the app can tell whether to show ads.

When the app uses the internet

Network services include Firebase Authentication for sign-in and, when enabled, Google Cloud Firestore for business-record and attachment sync. AdMob handles consent and advertising; RevenueCat and Google Play handle subscription status. Optional exchange-rate and holiday requests use currency/country codes. Offline cached records remain available; first-time account setup and cloud operations require connectivity.

How long data is kept

Local records remain until removed or the app storage is cleared. Cloud records remain independently of a device reset or uninstall. Sync deletion uses tombstone markers so deleted records are not restored by stale devices. Account-deletion fulfilment must remove associated cloud records and attachments. Internal migration safety snapshots are device-local, limited to the five most recent, and removed by the local reset action. Files shared outside HostBook are controlled by their recipients.

Children

HostBook is a tool for running a hospitality business and is not directed at children.

Contact

Contact sandeeppatel9099@gmail.com for HostBook support, privacy questions and account/cloud-data deletion requests. Include your account email; never send passwords or OTPs.

Request account and cloud-data deletion