ZurückIndietroBack
DE|IT|EN

Condizioni d'uso

Aggiornamento: luglio 2026 · Valido per gli operatori su guestflow.info

1. Ambito di applicazione

Le presenti condizioni d'uso si applicano all'utilizzo della piattaforma Stayla da parte di operatori di hotel, host di appartamenti e altri operatori di strutture ricettive (di seguito «operatori»). Non si applicano agli ospiti che utilizzano la chat pubblica.

2. Descrizione del servizio

Stayla mette a disposizione un servizio di concierge basato sull'intelligenza artificiale per strutture ricettive. Gli operatori possono tramite il pannello di controllo:

3. Abbonamento e pagamento

Stayla offre abbonamenti mensili disdettabili in diversi piani (Vacation Rental Basic, Vacation Rental Pro, Hotel Starter, Hotel Pro). Il listino prezzi aggiornato è consultabile sul sito. I nuovi operatori ricevono un periodo di prova gratuito di 14 giorni; per avviare la prova è richiesta una carta di credito, ma durante il periodo di prova non viene addebitato alcun importo. Al termine della prova, il piano scelto viene attivato automaticamente salvo disdetta.

La fatturazione avviene mensilmente tramite Stripe. Ogni azienda/struttura ha un proprio abbonamento. Un operatore può gestire più aziende con un unico account.

4. Obblighi dell'operatore

Gli operatori si impegnano a:

5. Limitazione di responsabilità

Stayla non è responsabile per:

Stayla assume la responsabilità per la corretta erogazione tecnica del servizio e per i danni causati da negligenza grave o dolo.

6. Recesso

Gli operatori possono disdire il proprio abbonamento in qualsiasi momento tramite il portale clienti Stripe. Dopo la disdetta, i dati rimangono accessibili fino alla fine del periodo di fatturazione. In caso di eliminazione dell'account, tutti i dati vengono cancellati entro 30 giorni.

7. Modifiche alle condizioni

Stayla si riserva il diritto di modificare le presenti condizioni d'uso con un preavviso di 30 giorni. Gli operatori saranno informati via e-mail. Il continuo utilizzo dopo la scadenza del termine equivale all'accettazione.

8. Diritto applicabile

Si applica il diritto svizzero. Foro competente: St. Gallen, Svizzera.

Accordo sul trattamento dei dati ai sensi dell'art. 28 GDPR

Accordo sul trattamento dei dati (DPA)

Tra Stayla (Responsabile del trattamento) e l'Operatore (Titolare del trattamento)

DPA § 1 — Oggetto e durata

Il presente accordo sul trattamento dei dati (DPA) disciplina il trattamento dei dati personali da parte di Stayla per conto dell'Operatore ai sensi dell'art. 28 GDPR. È valido per la durata del contratto di utilizzo.

DPA § 2 — Natura del trattamento e categorie di interessati

Stayla tratta per conto dell'Operatore i seguenti dati:

  • Interessati: Ospiti della struttura ricettiva
  • Categorie di dati: Messaggi chat degli ospiti, profilo ospite (tipo di viaggio), lingua degli ospiti, ID sessione (UUID anonimo)
  • Categorie di dati delle funzioni self-service opzionali: Con la registrazione all'animazione bambini attivata: numero di camera, nome, età, periodo di assistenza, indicazioni su allergie e note del bambino (dati sanitari); con le preferenze pasto attivate: nome dell'ospite, numero di camera, richiesta di modifica e data del pasto
  • Finalità: Erogazione del servizio di concierge IA per gli ospiti dell'Operatore

DPA § 3 — Istruzioni vincolanti

Stayla tratta i dati personali esclusivamente su istruzione documentata dell'Operatore. Le presenti condizioni d'uso e la conseguente prestazione del servizio costituiscono l'istruzione documentata.

DPA § 4 — Riservatezza

Stayla garantisce che le persone autorizzate al trattamento siano vincolate dalla riservatezza.

DPA § 5 — Sicurezza del trattamento

Stayla implementa le seguenti misure tecniche e organizzative (MTO):

  • Crittografia in transito (HTTPS/TLS) e a riposo (crittografia database Supabase)
  • Row Level Security (RLS) su tutte le tabelle del database — nessun accesso cross-tenant
  • Pseudonimizzazione: gli ospiti sono identificati da UUID di sessione anonimi
  • Controlli degli accessi: il pannello di controllo è accessibile solo agli operatori autenticati
  • Minimizzazione dei dati: i campi sensibili (WiFi, codici di accesso) vengono elaborati solo lato server

DPA § 6 — Sub-responsabili del trattamento

Stayla si avvale dei seguenti sub-responsabili del trattamento. L'Operatore concede con la presente la propria autorizzazione generale al ricorso a questi fornitori:

  • Supabase Inc. — Hosting del database (UE/SEE)
  • Vercel Inc. — Hosting web e Edge Rendering (USA, SCC)
  • Anthropic PBC — API Claude IA (USA, SCC)
  • Stripe Inc. — Elaborazione dei pagamenti (UE)
  • Upstash Inc. — Redis per rate-limiting (UE)

Stayla informa l'Operatore delle modifiche previste ai sub-responsabili del trattamento con un preavviso di 14 giorni.

DPA § 7 — Supporto sui diritti degli interessati

Stayla supporta l'Operatore nell'adempimento delle richieste degli interessati (accesso, cancellazione, portabilità) nei limiti del tecnicamente possibile e ragionevole.

DPA § 8 — Cancellazione dopo la fine del contratto

Dopo la conclusione del contratto di utilizzo, Stayla cancella tutti i dati personali trattati per conto dell'Operatore entro 30 giorni, salvo obblighi di conservazione legale.

DPA § 9 — Documentazione e audit

Stayla mette a disposizione dell'Operatore su richiesta tutte le informazioni necessarie per dimostrare l'adempimento degli obblighi di cui all'art. 28 GDPR.

Registrandosi su Stayla, l'utente accetta le presenti condizioni d'uso e l'accordo sul trattamento dei dati. Ultimo aggiornamento: luglio 2026.

Informativa sulla privacy · Note legali

Terms of Service

Last updated: July 2026 · Applies to operators on guestflow.info

1. Scope

These terms of service apply to the use of the Stayla platform by hotel operators, apartment hosts, and other accommodation providers (hereinafter "operators"). They do not apply to guests using the public chat.

2. Service description

Stayla provides an AI-powered concierge service for accommodation businesses. Through the operator dashboard you can:

3. Subscription and payment

Stayla offers monthly rolling subscriptions across several plans (Vacation Rental Basic, Vacation Rental Pro, Hotel Starter, Hotel Pro). Current pricing is available on the website. New operators receive a 14-day free trial; a credit card is required to start the trial, but no amount is charged during the trial period. After the trial, the selected plan is activated automatically unless cancelled.

Billing is processed monthly via Stripe. Each property has its own subscription. One operator account can manage multiple properties.

4. Operator obligations

Operators agree to:

5. Limitation of liability

Stayla is not liable for:

Stayla is liable for the proper technical delivery of the service and for damages caused by gross negligence or wilful misconduct.

6. Cancellation

Operators may cancel their subscription at any time via the Stripe customer portal. After cancellation, data remains accessible until the end of the billing period. On account deletion, all data is erased within 30 days.

7. Changes to these terms

Stayla reserves the right to amend these terms with 30 days' notice. Operators will be informed by email. Continued use after the notice period constitutes acceptance.

8. Governing law

Swiss law applies. Place of jurisdiction: St. Gallen, Switzerland.

Data Processing Agreement under Art. 28 GDPR

Data Processing Agreement (DPA)

Between Stayla (Processor) and the Operator (Controller)

DPA § 1 — Subject matter and duration

This Data Processing Agreement (DPA) governs the processing of personal data by Stayla on behalf of the Operator under Art. 28 GDPR. It is valid for the duration of the service contract.

DPA § 2 — Nature of processing and categories of data subjects

Stayla processes the following data on behalf of the Operator:

  • Data subjects: Guests of the accommodation
  • Data categories: Guest chat messages, guest profile (travel type), guest language, session ID (anonymous UUID)
  • Data categories of optional self-service features: Where child animation registration is enabled: room number, child's name, age, care period, allergy details and notes (health data); where meal adjustments are enabled: guest name, room number, adjustment request, and meal date
  • Purpose: Providing the AI concierge service to the Operator's guests

DPA § 3 — Processing on instructions

Stayla processes personal data only on documented instructions from the Operator. These terms of service and the resulting service delivery constitute the documented instructions.

DPA § 4 — Confidentiality

Stayla ensures that persons authorised to process data are bound by confidentiality.

DPA § 5 — Security of processing

Stayla implements the following technical and organisational measures (TOMs):

  • Encryption in transit (HTTPS/TLS) and at rest (Supabase database encryption)
  • Row Level Security (RLS) on all database tables — no cross-tenant data access
  • Pseudonymisation: guests are identified by anonymous session UUIDs
  • Access controls: dashboard accessible only to authenticated operators
  • Data minimisation: sensitive fields (WiFi, access codes) processed server-side only

DPA § 6 — Sub-processors

Stayla uses the following sub-processors. The Operator authorises engagement of these providers:

  • Supabase Inc. — Database hosting (EU/EEA)
  • Vercel Inc. — Web hosting and Edge Rendering (USA, SCCs)
  • Anthropic PBC — Claude AI API (USA, SCCs)
  • Stripe Inc. — Payment processing (EU entity)
  • Upstash Inc. — Redis rate-limiting (EU)

Stayla will notify the Operator of changes to sub-processors with 14 days' notice.

DPA § 7 — Assistance with data subject rights

Stayla assists the Operator in fulfilling data subject requests (access, erasure, portability) to the extent technically feasible and reasonable.

DPA § 8 — Deletion after contract end

After termination of the service contract, Stayla deletes all personal data processed on behalf of the Operator within 30 days, unless a legal retention obligation applies.

DPA § 9 — Documentation and audits

Stayla makes available to the Operator all information necessary to demonstrate compliance with the obligations under Art. 28 GDPR.

By registering on Stayla, you accept these terms of service and the data processing agreement. Last updated: July 2026.

Privacy Policy · Legal Notice

Nutzungsbedingungen

Stand: Juli 2026 · Gültig für Hotel-Betreiber auf guestflow.info

1. Geltungsbereich

Diese Nutzungsbedingungen gelten für die Nutzung der Plattform Stayla durch Hotel-Betreiber, Apartment-Hosts und sonstige Betreiber von Beherbergungsbetrieben (nachfolgend "Betreiber"). Für Gäste, die den öffentlichen Chat nutzen, gelten diese Bedingungen nicht.

2. Leistungsbeschreibung

Stayla stellt einen KI-gestützten Concierge-Dienst für Beherbergungsbetriebe bereit. Betreiber können über das Dashboard:

3. Abonnement und Zahlung

Stayla bietet monatlich kündbare Abonnements in verschiedenen Plänen (Vacation Rental Basic, Vacation Rental Pro, Hotel Starter, Hotel Pro). Die aktuelle Preisübersicht ist auf der Website einsehbar. Neu registrierte Betreiber erhalten eine 14-tägige kostenlose Testphase; für den Start ist eine Kreditkarte erforderlich, während der Testphase erfolgt jedoch keine Abbuchung. Nach der Testphase wird der gewählte Plan automatisch aktiviert, sofern nicht gekündigt wird.

Die Abrechnung erfolgt monatlich über Stripe. Jedes Unternehmen/jede Unterkunft hat ein eigenes Abonnement. Ein Betreiber kann mehrere Unternehmen unter einem Account verwalten.

4. Pflichten des Betreibers

Betreiber verpflichten sich:

5. Haftungsausschluss

Stayla ist nicht verantwortlich für:

Stayla übernimmt die Haftung für die ordnungsgemäße technische Bereitstellung des Dienstes sowie für Schäden, die durch grobe Fahrlässigkeit oder Vorsatz entstehen.

6. Kündigung

Betreiber können ihr Abonnement jederzeit über das Stripe-Kundenportal kündigen. Nach Kündigung bleiben die Daten bis zum Ende des Abrechnungszeitraums zugänglich. Bei Account-Löschung werden alle Daten innerhalb von 30 Tagen gelöscht.

7. Änderungen der Nutzungsbedingungen

Stayla behält sich das Recht vor, diese Nutzungsbedingungen mit einer Frist von 30 Tagen zu ändern. Betreiber werden per E-Mail informiert. Die weitere Nutzung nach Ablauf der Frist gilt als Zustimmung.

8. Anwendbares Recht

Es gilt Schweizer Recht. Gerichtsstand ist St. Gallen, Schweiz.

Auftragsverarbeitungsvertrag gemäß Art. 28 DSGVO

Auftragsverarbeitungsvertrag (AVV)

Zwischen Stayla (Auftragsverarbeiter) und dem Betreiber (Verantwortlicher)

AVV § 1 — Gegenstand und Dauer

Dieser Auftragsverarbeitungsvertrag (AVV) regelt die Verarbeitung personenbezogener Daten durch Stayla im Auftrag des Betreibers gemäß Art. 28 DSGVO. Er gilt für die Dauer des Nutzungsvertrags.

AVV § 2 — Art der Verarbeitung und Kategorien der betroffenen Personen

Stayla verarbeitet im Auftrag des Betreibers folgende Daten:

  • Betroffene Personen: Gäste des Beherbergungsbetriebs
  • Datenkategorien: Chat-Nachrichten der Gäste, Gastprofil (Reiseart), Gästesprache, Session-ID (anonyme UUID)
  • Datenkategorien optionaler Selbstservice-Funktionen: Bei aktivierter Kinderanimations-Anmeldung: Zimmernummer, Name, Alter, Betreuungszeitraum, Allergieangaben und Hinweise des Kindes (Gesundheitsdaten); bei aktivierter Essensanpassung: Gastname, Zimmernummer, Anpassungswunsch und Datum der Mahlzeit
  • Zweck: Bereitstellung des KI-Concierge-Dienstes für die Gäste des Betreibers

AVV § 3 — Weisungsbindung

Stayla verarbeitet personenbezogene Daten ausschließlich auf dokumentierte Weisung des Betreibers. Diese Nutzungsbedingungen und die daraus resultierende Dienstleistungserbringung gelten als dokumentierte Weisung.

AVV § 4 — Vertraulichkeit

Stayla stellt sicher, dass die zur Verarbeitung befugten Personen zur Vertraulichkeit verpflichtet sind.

AVV § 5 — Sicherheit der Verarbeitung

Stayla implementiert folgende technische und organisatorische Maßnahmen (TOMs):

  • Verschlüsselung in Transit (HTTPS/TLS) und at Rest (Supabase-Datenbankverschlüsselung)
  • Row Level Security (RLS) auf allen Datenbanktabellen — kein Cross-Tenant-Datenzugriff
  • Pseudonymisierung: Gäste werden durch anonyme Session-UUIDs identifiziert
  • Zugriffskontrollen: Dashboard nur für authentifizierte Betreiber zugänglich
  • Datensparsamkeit: Sensitive Felder (WiFi, Zugangscodes) nur serverseitig verarbeitet

AVV § 6 — Unterauftragsverarbeiter

Stayla setzt folgende Unterauftragsverarbeiter ein. Der Betreiber erteilt hiermit seine allgemeine Genehmigung zur Hinzuziehung dieser Dienstleister:

  • Supabase Inc. — Datenbankhosting (EU/EWR)
  • Vercel Inc. — Webhosting und Edge-Rendering (USA, SCCs)
  • Anthropic PBC — Claude KI-API (USA, SCCs)
  • Stripe Inc. — Zahlungsabwicklung (EU-Niederlassung)
  • Upstash Inc. — Redis für Rate-Limiting (EU)

Stayla informiert den Betreiber über beabsichtigte Änderungen an Unterauftragsverarbeitern mit einer Frist von 14 Tagen.

AVV § 7 — Unterstützung bei Betroffenenrechten

Stayla unterstützt den Betreiber bei der Erfüllung von Anfragen betroffener Personen (Auskunft, Löschung, Datenübertragbarkeit) im Rahmen des technisch Möglichen und Zumutbaren.

AVV § 8 — Löschung nach Vertragsende

Nach Beendigung des Nutzungsvertrags löscht Stayla alle im Auftrag verarbeiteten personenbezogenen Daten innerhalb von 30 Tagen, sofern keine gesetzliche Aufbewahrungspflicht besteht.

AVV § 9 — Nachweispflicht und Audits

Stayla stellt dem Betreiber auf Anfrage alle erforderlichen Informationen zum Nachweis der Erfüllung der Pflichten aus Art. 28 DSGVO zur Verfügung.

Durch die Registrierung auf Stayla akzeptieren Sie diese Nutzungsbedingungen und den Auftragsverarbeitungsvertrag. Letzte Aktualisierung: Juli 2026.

Datenschutzerklärung · Impressum