Privacy Policy
Effective Date: December 1, 2025
This Privacy Policy describes how vayada ("we," "us," or "our"), a transparent marketplace connecting hotels and travel creators (influencers), collects, uses, processes, and shares the personal information of our users ("Hotel" or "Creator") through our platform and related services (collectively, the "Services").
By accessing or using our Services, you agree to the terms of this Privacy Policy.
1. Data Controller
The Controller (Verantwortlicher) for data processing on our online offering, within the meaning of the General Data Protection Regulation, is:
vayada UG (haftungsbeschränkt)
Speditionstr. 15A
40221 Düsseldorf
Germany
Represented by: Managing Director: Timo Christian Schreyer
Contact: E-Mail: t.schreyer@vayada.com
For full legal details, please refer to our Imprint.
2. Information We Collect
We collect information that identifies, relates to, describes, or is capable of being associated with you ("Personal Data").
A. Information You Provide Directly
This information is collected when you create a profile, use our Services, or communicate with us.
| Data Category | Examples of Data Collected | Purpose |
|---|---|---|
| Account/Profile Data | Name, email address, password, company name (for Hotels), professional title, physical address, and phone number. | To create and manage your user account and profile. |
| Creator Profile Data | Social media handles, follower count, audience demographics, niche/content categories, portfolio, content samples, and collaboration rate information. | To showcase your profile to potential Hotel partners. |
| Hotel Profile Data | Property details, unique features, location, brand guidelines, and collaboration preferences. | To showcase the property and collaboration opportunities to Creators. |
| Verification Data | Information required to confirm the identity and legitimacy of the Hotel or Creator (may include business documents or official IDs, solely for verification purposes). | To maintain a "Verified Community" and ensure quality and trust. |
| Communication Data | Messages, collaboration requests, and contact details exchanged between a Hotel and a Creator via the platform. | To facilitate direct connection and coordination. |
B. Information Collected Automatically
When you access our Services, we automatically collect certain data about your device and activity.
| Data Category | Examples of Data Collected | Purpose |
|---|---|---|
| Usage Data | IP address, browser type, operating system, pages viewed, time spent on pages, and referring URLs. | To improve platform functionality and troubleshoot errors. |
| Tracking Data (Cookies) | Data collected via cookies, web beacons, and similar tracking technologies. | To remember your preferences, provide personalized experiences, and analyze traffic. |
| Performance Data | Metrics related to collaborations, such as link clicks, booking conversions, engagement rates, and other data used to "Track Real Impact." | To provide measurable results to Hotels and build a reputation for Creators. |
3. How We Use Your Information
We use your personal data for the following purposes:
- To Operate the Marketplace: To provide and maintain the Services, including managing accounts and profiles, and processing user verification.
- To Facilitate Connections: To allow Hotels to browse and filter Creators, and Creators to discover opportunities and apply for campaigns.
- For Direct Collaboration: To share contact information (name, email, etc.) between the Hotel and Creator only after a collaboration request has been mutually accepted, allowing them to coordinate directly.
- To Measure and Report: To track and analyze collaboration performance and provide reports to both parties.
- To Communicate: To send service-related, administrative, or account-specific notifications, and, where permitted, marketing communications about vayada features.
- For Security and Compliance: To prevent fraud, enforce our Terms, comply with legal obligations, and protect the rights and safety of vayada and its users.
4. How We Share and Disclose Your Information
We share your information in the following ways:
A. Sharing Between Users (Core Service Function)
The key function of vayada is to enable direct connection. Therefore, certain Personal Data is shared between users:
- Public Profile Information: Your vayada profile information (Hotel property details or Creator portfolio/metrics) is visible to the opposing user type on the platform.
- Contact Information: Once a Hotel and Creator have mutually accepted a collaboration request, we will share their direct contact details (Name, Email, Phone Number) to enable direct coordination.
B. Sharing with Service Providers
We employ third-party companies and individuals to facilitate our Services ("Service Providers"), such as cloud hosting, payment processing, data analytics, and email delivery. These providers have access to your Personal Data only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.
C. Legal and Compliance
We may disclose your information if required to do so by law or in the good faith belief that such action is necessary to comply with a legal obligation, protect and defend the rights or property of vayada, prevent fraud, or protect the personal safety of users or the public.
5. Your Privacy Rights and Choices
Depending on your location, you may have the following rights regarding your Personal Data:
- Access: You have the right to request a copy of the Personal Data we hold about you.
- Correction: You have the right to request that we correct any inaccurate Personal Data.
- Deletion: You have the right to request that we delete your Personal Data, subject to certain exceptions (e.g., legal compliance).
- Opt-Out: You can opt-out of receiving promotional or marketing emails from us by following the unsubscribe link in those emails. You may not opt-out of service-related communications (e.g., account verification, security alerts).
To exercise any of these rights, please contact us using the information in Section 7.
6. Data Security
We implement reasonable security measures designed to protect the Personal Data we collect from unauthorized access, use, alteration, or destruction. Please note, however, that no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Data, we cannot guarantee its absolute security.
7. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at:
8. Contact Form and Communication
A. Data Processing via Contact Form
We provide an online form on our site to allow you to contact us electronically. When you submit an inquiry, we process the data you provide. The specific fields collected include:
- Required Data: Your Name, Email Address, the User Category ("I am a..."), and your Message.
- Optional Data: Your Phone Number, Company Name, and Country.
B. Purpose and Legal Basis
We process this data solely for the purpose of answering your inquiry and the related technical administration.
Legal Basis: Processing of this data is based on Article 6(1) lit. b of the GDPR (General Data Protection Regulation), as the processing is necessary for the performance of a contract or in order to take steps at your request prior to entering into a contract (e.g., establishing a new user account or collaboration agreement).
C. Internal Handling and International Transfer
Your inquiry is received by our Customer Service department. We do not transfer your inquiries or any associated personal data to third countries or organizations outside the European Union (EU).
D. Data Retention and Deletion
We delete the data relating to your contact inquiry promptly after the inquiry has been fully handled and resolved.
However, statutory retention periods may prevent immediate deletion. This is particularly true if your inquiry is related to a contract, warranty, or guarantee claim. In such cases, we store your inquiry data only for the purpose of fulfilling legal retention obligations (e.g., commercial and tax law retention periods, typically up to ten years, as per Article 6(1) lit. c of the GDPR). We will delete your data at the latest when these statutory retention periods expire, without requiring a specific request from you.