Booky Privacy Policy

Effective date: September 7, 2026
Last updated: September 7, 2026

Delete your account and data →

1. Who we are and what Booky is

Booky is a mobile app for managing rental properties. It is published by Parallel Vision Software Solutions ("we", "us"). The app is available on Android and iOS under the application ID com.pv.bookyByPV. There is no web version of Booky.

In Booky, a property owner adds a property and invites team members, each with a role: owner, investor, investor manager, secretary, or agent. The team books dates on a shared calendar. Bookings stay pending until an owner or manager approves them. Expenses are logged per property, with receipt photos.

This policy explains what the app collects, why, where it is stored, and how to get it deleted. It is not legal advice.

2. Information we collect

Information you provide about yourself

When you create an account we collect:

  • Your email address and password. The password is handled by Firebase Authentication — the app never stores it.
  • Your first name, middle name and last name.
  • The display alias your team mates see.
  • The date your account was created.

When you add a property we collect what you type into it:

  • Property description and location.
  • Contract amount, monthly rent, down payment, security deposit, and month start and end dates.
  • Property photos and a rates image.

When you log an expense we collect its name, category, amount, date, and receipt photos.

We also store which users belong to which property and the role each one holds.

Information about other people that you enter

Booking records contain personal information about your clients, not about you. When you create a booking you enter the client's name, city address and contact number, along with the booking date range, guest count, room count, contract price, downpayment amount, downpayment proof photos, and the alias of the team member who created the booking.

Those clients are your contacts, not ours. We process their details on your behalf, only to run the app for you — we do not use them for our own purposes. You are responsible for having a lawful basis to enter another person's information into Booky, and for telling them how their information is handled. Do not enter details you are not entitled to record.

Photos and files

Property photos, rates images, downpayment proof photos and receipt photos are uploaded to Firebase Cloud Storage. They stay attached to the property, booking or expense you added them to.

Information collected automatically by Google's SDKs

Booky bundles the Firebase Analytics, Crashlytics, Cloud Messaging and Cloud Functions SDKs. Through these, Google may collect app usage data, device data, and crash diagnostics. We do not run our own analytics, and we do not include any advertising SDK.

3. How we use the information

  • To create and sign you into your account.
  • To show your properties, bookings, expenses and team members, and to keep them in sync across the team.
  • To route bookings for approval by an owner or manager.
  • To send notifications about booking changes.
  • To store the photos you upload and show them back to your team.
  • To diagnose crashes and fix problems in the app.

4. Device permissions and why we ask

  • Camera — to take photos of properties, downpayment proof and receipts.
  • Photos and media — to let you pick existing photos from your device to upload.
  • Notifications — to tell you when a booking changes.
  • Internet — required for the app to reach Firebase.
  • Biometric or device unlock — optional, to lock the app locally. Your biometric data never leaves your device. We never receive it, transmit it, or store it.

Booky does not request location permission and does not collect your precise device location. You can revoke any permission in your device settings; the features that depend on it will stop working.

5. How data is stored and who can see it

Booky runs on Google Firebase — Authentication, Cloud Firestore and Cloud Storage. Your data is stored on Google's servers, not on our own infrastructure. Google processes it on our instructions as our service provider.

Inside the app, what you can see is scoped by the role you hold on each property. Team members see the properties they have been invited to; owners and managers can additionally approve bookings. People who are not on a property's team do not see that property's data through the app.

6. Data sharing and disclosure

We do not sell or rent personal data. We do not share it with advertisers or data brokers.

We share data only:

  • With Google, as the provider hosting the app's backend. See Google's Privacy Policy and the Firebase Data Processing Terms.
  • With the other members of a property's team, which is the point of the shared calendar.
  • Where the law requires it, such as a valid legal order.

7. Data retention

We keep your account data for as long as your account exists. Property, booking and expense records stay until you or your team delete them, or until the account is deleted.

When you ask us to delete your account, we delete it within 30 days (see below). Copies may remain in Google's routine backups for [TODO: backup retention window] after that, after which they are overwritten.

8. Your rights

Whoever and wherever you are, you can ask us to give you a copy of your data, correct it, delete it, export it, or withdraw consent you previously gave. Email hello@parallelvisionsolutions.com and we will respond within 30 days.

Philippines

We handle personal information under the Data Privacy Act of 2012 (RA 10173). You have the rights to be informed, to access, to object, to erasure or blocking, to damages, to data portability, and to correct your information. You may also complain to the National Privacy Commission.

EU and EEA users (GDPR)

Parallel Vision Software Solutions is the controller for the data described here. Our legal bases:

  • Contract — account, property, booking and expense data, which we need to provide the app you signed up for.
  • Consent — camera, photo library and notification access, which you grant on your device and can revoke at any time.
  • Legitimate interests — crash diagnostics and app usage data, to keep the app working.

You have the rights of access, rectification, erasure, restriction, portability and objection, and you may lodge a complaint with your local supervisory authority. If you enter your clients' details into Booky, you are the controller of that information and we act as your processor.

California users (CCPA/CPRA)

You have the right to know what personal information we collect and how we use it, the right to have it deleted, the right to correct it, and the right to opt out of its sale or sharing. We do not sell or share personal information, so there is nothing to opt out of. We will not discriminate against you for exercising any of these rights.

9. Account and data deletion

To delete your Booky account and the data attached to it:

  1. Email hello@parallelvisionsolutions.com from the email address registered to your account.
  2. Use the subject line "Delete my Booky account".
  3. We reply to confirm the request and verify that you own the account.
  4. We delete the account and its data within 30 days of that confirmation.

What is deleted: your Firebase Authentication login, your user record, your team memberships, and the properties, bookings, expenses and uploaded images that belong to your account.

What may remain: records that other team members still need. If you created a booking or an expense on a property owned by someone else, that record belongs to the property and stays with its team, though your alias is removed from it. Ask the property owner if you want those records deleted too.

Deletion is permanent. We cannot restore an account once it has been deleted.

10. Children's privacy

Booky is not directed to children under 13, and we do not knowingly collect data from them. If you believe a child has created an account, email us and we will delete it.

11. Security

Traffic between the app and Firebase travels over HTTPS. Access to stored data is restricted by Firebase security rules, which check who is signed in and what role they hold on a property. Passwords are handled by Firebase Authentication and are never stored by the app.

No system is perfectly secure. We cannot guarantee that data will never be accessed without authorisation, and you share your account credentials at your own risk.

12. International data transfers

Firebase stores data on Google's servers, which may be located outside your country, including in the United States. Google's transfer safeguards are described in the Firebase Data Processing Terms.

13. Changes to this policy

We may update this policy. When we do, we change the "last updated" date at the top of this page. If a change materially affects how we handle your data, we will give notice in the app before it takes effect.

14. Contact us

Parallel Vision Software Solutions
Email: hello@parallelvisionsolutions.com
Postal address: [TODO: registered postal address]
Data Protection Officer: [TODO: DPO name and email, or delete this line]

This policy is governed by the laws of the Republic of the Philippines.