Bookero

Privacy Policy

Last updated: 6 June 2026

Data Controller

The owner and operator of Bookero and the controller of personal data under Article 4(7) GDPR is Bookero (at Fundacja Rozwoju Przedsiębiorczości „Twój StartUp”), NIP: 5213641211, registered at 00-503 Warsaw, ul. Żurawia 6/12, lok. 766, Poland, entered in the register kept by the District Court for the Capital City of Warsaw in Warsaw under KRS 0000442857. Bookero is available at https://bookero.es.

Purpose of this policy

This Privacy Policy explains how Bookero processes data of business users, staff members, customers making online bookings and visitors of public booking pages.

Definitions

Bookero is an online booking application for service businesses. User means a business or person using Bookero. Customer means a person booking a service through a public booking page. Personal data, cookies, processing and profiling have the meanings given by GDPR.

Data we collect

We may process account data, contact data, company and billing data, staff, location, service, price and availability data, booking details, customer contact details, communication history, technical logs, device and browser data, IP address, cookies and other information provided while using Bookero.

Booking data

Bookero processes customer booking data such as name, email, phone, selected service, appointment date and time, location, assigned staff member, notes, booking status and change history where needed to provide the service.

Purposes and legal bases

We process data to provide Bookero, manage accounts, publish booking pages, manage appointments, calendars, staff and notifications, perform contracts, comply with legal, tax and accounting duties, keep the service secure, improve the application, handle complaints, defend claims and conduct lawful marketing.

Detailed processing purposes

Data may be used to perform contractual rights and obligations, handle complaints, keep internal records, personalise profiles and settings, improve the service, conduct analytics, statistics, research and development, ensure compliance with terms and law, send periodic service messages, inform users about new features and offers, secure Bookero and fulfil tax and reporting duties.

Retention

Data is kept for the duration of the service and afterwards for periods required by law or necessary for accounting, tax, complaint handling, archiving and legal claims. Data processed on consent is kept until consent is withdrawn unless another legal basis applies.

Security

We use organisational and technical safeguards including access control, account authentication, confidential passwords, SSL encryption, software updates, backups, limited administrative access and incident response procedures.

Cookies

We use cookies and similar technologies to operate Bookero, maintain sessions, remember preferences, analyse traffic, measure performance and improve the product. Browser settings may be changed, but disabling cookies can limit functionality.

Analytics, marketing and profiling

Technical and activity data may be used for analytics, statistics, product development, security, abuse prevention and lawful marketing. If advertising or analytics tools such as Google Ads, Meta/Facebook Ads or similar systems are used, cookies and similar technologies may help measure campaigns, enable remarketing and adjust content to interests. Profiling may include analysing service use, visited pages, preferences, behaviour, location or movement to improve service quality and communication, without automated decisions producing legal effects unless permitted by law.

Recipients

We do not sell personal data. Data may be shared with hosting, email, SMS and notification providers, analytics tools, payment providers, calendar integrations, accounting systems, customer support, IT service providers, legal and accounting advisers and public authorities where required by law. If online payments are available in Bookero, transaction data may be shared with a payment provider, including Stripe, for payment processing, security, fraud prevention, sanctions screening and AML obligations.

International transfers

If data is transferred outside the EEA, we use safeguards required by GDPR, including standard contractual clauses or other lawful transfer mechanisms.

External links and integrations

Bookero may include links or integrations with external services. Their own privacy rules apply after using those services.

Your rights

You may request access, copy, rectification, update, erasure of incomplete, outdated, incorrect, unlawfully collected or unnecessary data, restriction, portability, objection, withdrawal of consent and lodge a complaint with a supervisory authority. Deleting an account does not always mean immediate deletion of all data if further retention is required by law or needed to defend claims.

Objection to processing

An objection to direct marketing stops processing for that purpose. In other cases, the objection should describe the specific situation of the data subject; processing will stop unless overriding legitimate grounds exist or the data is needed to establish, pursue or defend claims.

Accuracy of data

Bookero may not verify all data entered by the User. The User is responsible for the accuracy of business, service, staff, availability and customer-facing information. Incorrect or incomplete data may be reported to the Controller for correction.

Contact

Privacy requests may be sent to info@bookero.es. This policy applies from 6 June 2026 and may be updated when law, technology or Bookero changes.

Explore Bookero