Privacy Policy
Last updated: 29 September 2026 · COLBRYAN NIG LTD
For the COLBRYAN website and COLBRYAN Hotel Operations web and Android applications.
Request account or data deletion1. Who this policy covers
COLBRYAN Technologies is a brand of COLBRYAN NIG LTD, Nnewi, Anambra State, Nigeria. This policy covers our website, business enquiries and COLBRYAN Hotel Operations on the web and Android. Hotels manage their own staff accounts and operational records. For information entered on a hotel's behalf, that hotel determines the business purposes of processing; COLBRYAN provides the platform. We also handle account administration, service security and billing information for our own service operations.
2. Information handled by the service
Depending on the features used, we handle names, staff IDs, email addresses, telephone numbers, roles, facility assignments and account status; guest names, contact details, stay dates, room assignments and booking notes; stock, supplier, sales, charges and payment records; messages, documents and other content users submit; and audit records of operational changes. Sign-in requires authentication information. Technical records may include IP addresses, browser or device information, session identifiers, error details and service usage. Website enquiries contain the information you choose to send us.
3. Why we use information
We use information to authenticate users, apply hotel and role permissions, provide bookings and daily operations, maintain audit trails, process subscriptions, answer enquiries, support users, investigate errors and misuse, and meet applicable obligations. Hotels are responsible for ensuring they are entitled to enter guest and staff information and for providing appropriate notices to those people.
4. Payments
Where Paystack is used, payment details are submitted through Paystack's payment service. COLBRYAN handles payment references, transaction status, amounts, subscription information and relevant authorization metadata returned by the provider to verify payments and manage billing. Do not send card PINs, passwords or full card details through support messages or the AI assistant. Payment providers also handle information under their own privacy notices.
5. AI assistant
The assistant can answer from current operational information. When external AI processing is enabled, your question and selected operational context may be sent to OpenAI to produce an answer. The application limits the context and filters certain identifiers, but information you type into a question may still be transmitted. Do not include passwords, payment credentials or unnecessary personal information. We record usage and diagnostic metadata, which may include the requesting user and hotel, provider, model, token usage and outcome. AI answers may be inaccurate and should be checked before business decisions are made.
6. Access and service providers
Authorized staff can access information according to their assigned hotel and role. Service providers supporting hosting, databases, communications, payments and enabled AI features may process information to deliver those functions. Information may also be disclosed when required by law or to investigate security incidents and protect rights. We do not sell personal information. The hotel app does not use personal information for advertising. Providers may process information in countries other than yours; relevant arrangements and applicable data-protection requirements govern those activities.
7. Security and device storage
We use HTTPS connections, authentication, role-based permissions and hotel-scoped access controls to protect information. These controls reduce risk but cannot guarantee that unauthorized access will never occur. Websites and applications may use cookies, session information and local device storage for sign-in and application functions. Signing out or uninstalling the app does not delete hotel records held on the service.
8. Retention
Retention depends on the record, the hotel's service arrangements and applicable legal, accounting, dispute-resolution and security requirements. Account deactivation and hotel suspension do not automatically erase operational or audit records. There is currently no single published automatic deletion period covering every record type, including AI usage metadata. Contact us for the retention arrangements applicable to your account. When a deletion request is assessed, we will explain any records that must be retained and the applicable reasons; copies in backups may remain until the relevant backup cycle expires.
9. Account and data-deletion requests
To request access, correction, export or deletion of information associated with COLBRYAN Hotel Operations, contact hello@colbryan.com with the subject 'COLBRYAN Hotel Operations — Privacy request'. Include your hotel name, staff ID or account email, and what you want us to do. Do not send your password. We may need to verify your identity and coordinate with your hotel administrator. Hotel-managed staff should also contact their administrator; guests should contact the hotel holding their booking. We assess requests under applicable requirements and explain any records retained for legal, accounting, security or audit purposes. Disabling access is different from deleting information, and deleting the app does not cancel a subscription.
10. Children and policy updates
COLBRYAN Hotel Operations is intended for authorized business users. Hotels may hold information about guests, including children, where relevant to their operations and lawful responsibilities. We may update this policy as our services or practices change. The date above identifies the latest revision. Contact us using the details below if you have questions or concerns about this policy.
Contact us
COLBRYAN NIG LTD · Nnewi, Anambra State, Nigeria
Privacy requests: hello@colbryan.com
Product support: support@colbryan.com