This policy explains how Rezzervo collects, uses, shares, and protects personal data when you interact with our scheduling platform. It reflects the requirements of Kosovo's Law on Personal Data Protection and, where applicable, the GDPR.
Rezzervo (“we”, “us”, or “our”) operates from Kosovo and provides scheduling and booking solutions to businesses worldwide. We process personal data in line with the Law No. 06/L-082 on Personal Data Protection of the Republic of Kosovo and with the EU General Data Protection Regulation (GDPR) where it applies.
When we refer to “you” in this Privacy Policy, it covers platform administrators, staff members, and end customers who interact with booking pages hosted by Rezzervo. If you use Rezzervo on behalf of a business, that business is usually the data controller for the information it collects via the platform, while Rezzervo acts as its data processor.
We only collect personal data that is necessary to deliver and improve the Service. The categories include:
We rely on several legal grounds recognised under Kosovo law and the GDPR:
Personal data is processed to authenticate users, configure organisations, send notifications, route bookings, facilitate payments, and provide customer support. Aggregated or anonymised information may be used for analytics that help us understand feature adoption or system performance. We never sell personal data.
Data may be stored on servers located in the European Union or other jurisdictions offering adequate protection. When transfers occur outside Kosovo or the European Economic Area, we use GDPR-approved safeguards such as Standard Contractual Clauses, and we assess the legal environment of the destination country.
Personal data is retained only for as long as the business relationship requires, plus any additional period necessary to meet statutory obligations such as tax or financial reporting (typically up to seven years under Kosovo legislation). Customer content may be deleted sooner at your request, unless the law requires us to keep a record.
We apply technical and organisational safeguards such as encryption in transit, role-based access control, multi-factor authentication for administrators, regular penetration testing, and staff security training. Incident response procedures follow the notification timelines set by the Kosovo Information and Privacy Agency and, where applicable, the GDPR.
Under Kosovo data protection rules (and GDPR where applicable) you have the following rights:
Rezzervo is intended for professional users and is not directed at children under 16. If we learn that a child has provided personal data without parental consent, we will delete that information promptly.
We review this Privacy Policy whenever Kosovo legislation changes or when we launch new processing activities. Substantive updates will be announced through the dashboard or by email. Continued use of the Service after updates take effect constitutes acceptance.
To exercise your rights or raise a concern, email privacy@rezzervo.com or contact@rezzervo.com. You may also lodge a complaint with the Kosovo Information and Privacy Agency if you believe we have not handled your data lawfully.