Legal
App Privacy Policy
This policy explains how the Simplified Management application handles personal data for the hotels that use it, and for their guests and staff.
Last updated: 19 August 2026
This policy covers the Simplified Management application at app.simplifiedmanagement.in(the "Platform"). Personal data collected through this website — including the demo request form — is covered by our separate website Privacy Policy.
1. Who we are
The Platform is operated by Simplified Management Private Limited, a private limited company registered in Pune, Maharashtra, India.
Registered office: 805, 8th Floor, SkyVista, Viman Nagar, Pune, Maharashtra 411014, India
CIN: U62099PN2026PTC254686
GSTIN: 24AAHCB0758N1ZG
Contact: privacy@simplifiedmanagement.in
2. What the Platform does
Simplified Management is a hotel operations platform. It provides reservation management, housekeeping and daily staff routing, task management, laundry and inventory tracking, damage and late-checkout logging, guest check-in records, invoicing including GST invoices, and reporting.
3. Our role under the DPDP Act 2023
Where we act as a Data Processor.For personal data belonging to our customers' guests and staff — reservation records, guest identity documents, housekeeping assignments, invoices — our customer (the hotel or property operator) is the Data Fiduciary. They decide what data is collected and why. We process it only on their documented instructions. If you are a guest of a property that uses Simplified Management and you want your data accessed, corrected, or erased, your request goes to that property. We will support them in answering it, but we cannot act on it independently.
Where we act as a Data Fiduciary.For our direct relationship with our customers — account holders' names and email addresses, login and audit records, billing data, support correspondence — we determine the purpose ourselves and are responsible for it directly.
4. Personal data we process
On behalf of our customers (processor role)
| Category | Examples | Source |
|---|---|---|
| Guest reservation data | Name, stay dates, room, rate, revenue, booking channel, reservation status | Synced from the customer's PMS |
| Guest identity documents | Identity documents uploaded during check-in, where the customer's process requires them | Uploaded by guest or by customer staff |
| Foreign national records | Data required for Form C reporting to the FRRO | Customer check-in process |
| Guest financial data | Invoice line items, GST details, payment status, refunds | Generated in the Platform |
| Customer staff data | Staff names, work email addresses, assigned role, property assignments, daily routing, task assignment and completion records | Entered by the customer |
As a Data Fiduciary (our own customers)
| Category | Examples |
|---|---|
| Account data | Name, work email address, assigned role, account status |
| Authentication and audit | Login timestamps, actions taken in the Platform |
| Billing data | Subscription tier, invoices, payment records |
| Support data | Correspondence with our support team |
We do not sell personal data. We do not use guest personal data to advertise to guests. We do not use one customer's data for the benefit of another.
5. Purposes
We process personal data to operate the Platform for our customers: syncing and displaying reservations, assigning and tracking housekeeping work, generating invoices and GST documentation, producing reports, maintaining security and audit records, providing support, and meeting our own legal obligations.
6. Retention
We delete personal data when its retention period expires, unless a longer period is required by law or by an active legal proceeding.
| Data | Retention |
|---|---|
| Guest identity documents | 12 months after checkout, then permanently deleted |
| Foreign national / Form C records | 12 months after submission to the authorities |
| Booking and reservation records | 6 years |
| Invoices, GST records, payment records | 72 months (6 years), as required under GST law |
| Customer staff records | Duration of the staff member's engagement, plus 3 years |
| Account, authentication and audit data | Duration of the customer relationship, plus 12 months |
Customers may instruct us to delete their data earlier, subject to the statutory minimums above. On termination, customer data is deleted within 90 days unless a longer period is agreed in writing.
7. Where data is stored
All personal data processed by the Platform is stored on infrastructure located in India. We do not transfer personal data outside India.
8. Sub-processors
We use a limited number of third-party service providers to operate the Platform. Each is bound by contract to process personal data only on our instructions and to maintain appropriate security.
| Sub-processor | Purpose | Country |
|---|---|---|
| Supabase | Database, authentication, and file storage for the Platform | India |
| MSG91 | WhatsApp messaging — booking confirmations, check-in links, guest welcome messages | India |
| The customer's own PMS provider (eZee Technosys or iPMS247, depending on property) | Source of reservation data synced into the Platform | India |
| MakeMyTrip / Goibibo | Booking and cancellation sync, where the customer has this channel active | India |
9. Security
We maintain administrative, technical, and physical safeguards appropriate to the sensitivity of the data, including role-based access control, encryption of data in transit, access logging, and restricted internal access on a need-to-know basis.
No system is perfectly secure. In the event of a personal data breach we will notify the Data Protection Board of India and affected Data Fiduciaries without undue delay, as required under the DPDP Act 2023.
10. Your rights
If we are the Data Fiduciary for your data (our direct customers), you may request access to your personal data, correction of inaccurate data, erasure, and nomination of another person to exercise your rights in the event of death or incapacity. You may also withdraw consent where processing is based on consent.
If you are a guest of a property that uses the Platform, direct your request to that property. They are the Data Fiduciary.
Requests to us go to privacy@simplifiedmanagement.in.
11. Grievance Officer
In accordance with the DPDP Act 2023 and the Information Technology Rules, our Grievance Officer is:
Anil Kale, Product Development Manager
Phone: +91 96656 66254
Email: grievance@simplifiedmanagement.in
Address: 805, 8th Floor, SkyVista, Viman Nagar, Pune, Maharashtra 411014, India
We will acknowledge grievances within 48 hours and resolve them within 30 days.
12. Children's data
The Platform is a business tool and is not directed at children. We do not knowingly process the personal data of anyone under 18 as an account holder. Guest records may include minors travelling with adults; such data is processed on the instructions of our customer and is subject to the same retention and security controls.
13. Changes
We will post any material change to this policy on this page and update the "Last updated" date. Customers will be notified in advance of changes that materially affect how we process their data.
Contact us
Simplified Management Private Limited
Viman Nagar, Pune, Maharashtra, India
privacy@simplifiedmanagement.in
