
Condizioni d'uso
Aggiornamento: luglio 2026 · Valido per gli operatori su Stayla
1. Ambito di applicazione
Le presenti condizioni d'uso si applicano all'utilizzo della piattaforma Stayla da parte di operatori di hotel, host di appartamenti e altri operatori di strutture ricettive (di seguito «operatori»). Non si applicano agli ospiti che utilizzano la chat pubblica.
2. Descrizione del servizio
Stayla mette a disposizione un servizio di concierge basato sull'intelligenza artificiale per strutture ricettive. Gli operatori possono tramite il pannello di controllo:
- Gestire una base di conoscenza per la propria struttura
- Mettere a disposizione degli ospiti un concierge IA (accessibile tramite QR code e URL pubblico)
- Visualizzare e analizzare le conversazioni
- Gestire il proprio abbonamento e i dati di pagamento
3. Abbonamento e pagamento
Stayla offre abbonamenti mensili disdettabili in diversi piani (Vacation Rental Basic, Vacation Rental Pro, Hotel Starter, Hotel Pro). Il listino prezzi aggiornato è consultabile sul sito. I nuovi operatori ricevono un periodo di prova gratuito di 14 giorni; per avviare la prova è richiesta una carta di credito, ma durante il periodo di prova non viene addebitato alcun importo. Al termine della prova, il piano scelto viene attivato automaticamente salvo disdetta.
La fatturazione avviene mensilmente tramite Stripe. Ogni azienda/struttura ha un proprio abbonamento. Un operatore può gestire più aziende con un unico account.
4. Obblighi dell'operatore
Gli operatori si impegnano a:
- Inserire nella base di conoscenza solo informazioni corrette e aggiornate
- Non utilizzare Stayla per scopi non consentiti
- Non condividere le credenziali di accesso al pannello di controllo con terzi
- Informare tempestivamente Stayla di eventuali modifiche che incidono sull'accuratezza della base di conoscenza
- Accettare indirettamente le condizioni d'uso di Anthropic (fornitore dell'IA)
5. Limitazione di responsabilità
Stayla non è responsabile per:
- La correttezza delle risposte generate dall'IA, nella misura in cui si basano su una base di conoscenza incompleta o errata
- Danni causati da interruzioni dei servizi dei fornitori di infrastrutture (Supabase, Vercel, Anthropic)
- Abuso del servizio chat da parte degli ospiti dell'operatore
- Danni indiretti o mancato guadagno
Stayla assume la responsabilità per la corretta erogazione tecnica del servizio e per i danni causati da negligenza grave o dolo.
6. Recesso
Gli operatori possono disdire il proprio abbonamento in qualsiasi momento tramite il portale clienti Stripe. Dopo la disdetta, i dati rimangono accessibili fino alla fine del periodo di fatturazione. In caso di eliminazione dell'account, tutti i dati vengono cancellati entro 30 giorni.
7. Modifiche alle condizioni
Stayla si riserva il diritto di modificare le presenti condizioni d'uso con un preavviso di 30 giorni. Gli operatori saranno informati via e-mail. Il continuo utilizzo dopo la scadenza del termine equivale all'accettazione.
8. Diritto applicabile
Si applica il diritto svizzero. Foro competente: St. Gallen, Svizzera.
Accordo sul trattamento dei dati ai sensi dell'art. 28 GDPR
Accordo sul trattamento dei dati (DPA)
Tra Stayla (Responsabile del trattamento) e l'Operatore (Titolare del trattamento)
DPA § 1 — Oggetto e durata
Il presente accordo sul trattamento dei dati (DPA) disciplina il trattamento dei dati personali da parte di Stayla per conto dell'Operatore ai sensi dell'art. 28 GDPR. È valido per la durata del contratto di utilizzo.
DPA § 2 — Natura del trattamento e categorie di interessati
Stayla tratta per conto dell'Operatore i seguenti dati:
- Interessati: Ospiti della struttura ricettiva
- Categorie di dati: Messaggi chat degli ospiti, profilo ospite (tipo di viaggio), lingua degli ospiti, ID sessione (UUID anonimo)
- Categorie di dati delle funzioni self-service opzionali: Con la registrazione all'animazione bambini attivata: numero di camera, nome, età, periodo di assistenza, indicazioni su allergie e note del bambino (dati sanitari); con le preferenze pasto attivate: nome dell'ospite, numero di camera, richiesta di modifica e data del pasto
- Finalità: Erogazione del servizio di concierge IA per gli ospiti dell'Operatore
DPA § 3 — Istruzioni vincolanti
Stayla tratta i dati personali esclusivamente su istruzione documentata dell'Operatore. Le presenti condizioni d'uso e la conseguente prestazione del servizio costituiscono l'istruzione documentata.
DPA § 4 — Riservatezza
Stayla garantisce che le persone autorizzate al trattamento siano vincolate dalla riservatezza.
DPA § 5 — Sicurezza del trattamento
Stayla implementa le seguenti misure tecniche e organizzative (MTO):
- Crittografia in transito (HTTPS/TLS) e a riposo (crittografia database Supabase)
- Row Level Security (RLS) su tutte le tabelle del database — nessun accesso cross-tenant
- Pseudonimizzazione: gli ospiti sono identificati da UUID di sessione anonimi
- Controlli degli accessi: il pannello di controllo è accessibile solo agli operatori autenticati
- Minimizzazione dei dati: i campi sensibili (accesso WiFi, codici di accesso e istruzioni per il self check-in) non vengono restituiti come dati della pagina né tramite un'interfaccia separata accessibile dal browser. Possono comparire solo in una risposta della chat quando l'ospite li richiede in modo diretto e mirato; in caso di tentativo di manipolazione rilevato restano esclusi.
DPA § 6 — Sub-responsabili del trattamento
Stayla si avvale dei seguenti sub-responsabili del trattamento. L'Operatore concede con la presente la propria autorizzazione generale al ricorso a questi fornitori:
- Supabase, Inc. — Hosting del database (regione dati UE/SEE; fornitore USA, SCC nel DPA, non presente nell'elenco DPF)
- Vercel Inc. — Hosting web e Edge Rendering (USA; DPF UE-USA attivo, anche Svizzera e UK, al 2026-08-12; in aggiunta SCC nel DPA)
- Anthropic PBC — API Claude IA (elaborazione multi-regionale; archiviazione standard USA; SCC tramite i Commercial Terms, non presente nell'elenco DPF)
- OpenAI — Embedding transitorio per il recupero FAQ (solo l'ultimo messaggio dell'ospite, max 2.000 caratteri, nessuna cronologia; endpoint globale, elaborazione USA; SCC nel DPA, non presente nell'elenco DPF; nessun addestramento sui dati API)
- Firecrawl — Importazione facoltativa, avviata dall'operatore, del proprio sito web (selezione limitata di pagine, solo contenuto principale) per creare conoscenza e FAQ; nessun dato di chat o degli ospiti da Stayla, benché i contenuti pubblici possano contenere dati personali di terzi (regione, DPA/SCC e conservazione in verifica; non presente nell'elenco DPF)
- Better Stack, Inc. — Error tracking, uptime monitoring e heartbeat dei cron (host di ingest eu-central-1; DPA, subfornitori e trasferimenti da verificare; non presente nell'elenco DPF, SCC UE/UK/Svizzera nel DPA)
- Resend — E-mail transazionali e notifiche operative agli operatori; senza testo dei messaggi degli ospiti nelle e-mail di handoff (USA; DPF UE-USA ed estensione UK attivi, ricertificazione in corso di verifica, al 2026-08-12; nessun DPF Svizzera-USA, dati svizzeri tramite SCC nel DPA)
- Stripe Payments Europe, Limited — Elaborazione dei pagamenti (Irlanda; secondo lo Stripe Services Agreement è la controparte contrattuale per la Svizzera, quindi nessun trasferimento verso Paesi terzi. Stripe Payments UK Ltd è parte aggiuntiva secondo i Service Terms applicabili, coperta dalla decisione di adeguatezza UE del 2025-12-19 e dall'allegato 1 dell'ordinanza svizzera sulla protezione dei dati. Si applica inoltre il DPA Stripe con SCC, al 2026-08-14)
- Upstash, Inc. — Redis per rate-limiting (USA; DPF UE-USA attivo, anche Svizzera e UK, al 2026-08-12; in aggiunta modulo SCC 2 nel DPA)
Stayla informa l'Operatore delle modifiche previste ai sub-responsabili del trattamento con un preavviso di 14 giorni.
DPA § 7 — Supporto sui diritti degli interessati
Stayla supporta l'Operatore nell'adempimento delle richieste degli interessati (accesso, cancellazione, portabilità) nei limiti del tecnicamente possibile e ragionevole.
DPA § 8 — Cancellazione dopo la fine del contratto
Dopo la conclusione del contratto di utilizzo, Stayla cancella tutti i dati personali trattati per conto dell'Operatore entro 30 giorni, salvo obblighi di conservazione legale.
DPA § 9 — Documentazione e audit
Stayla mette a disposizione dell'Operatore su richiesta tutte le informazioni necessarie per dimostrare l'adempimento degli obblighi di cui all'art. 28 GDPR.
Registrandosi su Stayla, l'utente accetta le presenti condizioni d'uso e l'accordo sul trattamento dei dati. Ultimo aggiornamento: luglio 2026.
Informativa sulla privacy · Note legali
Terms of Service
Last updated: July 2026 · Applies to operators using Stayla
1. Scope
These terms of service apply to the use of the Stayla platform by hotel operators, apartment hosts, and other accommodation providers (hereinafter "operators"). They do not apply to guests using the public chat.
2. Service description
Stayla provides an AI-powered concierge service for accommodation businesses. Through the operator dashboard you can:
- Manage a knowledge base for your property
- Provide guests with an AI concierge (accessible via QR code and public URL)
- View and analyse chat conversations
- Manage your subscription and billing details
3. Subscription and payment
Stayla offers monthly rolling subscriptions across several plans (Vacation Rental Basic, Vacation Rental Pro, Hotel Starter, Hotel Pro). Current pricing is available on the website. New operators receive a 14-day free trial; a credit card is required to start the trial, but no amount is charged during the trial period. After the trial, the selected plan is activated automatically unless cancelled.
Billing is processed monthly via Stripe. Each property has its own subscription. One operator account can manage multiple properties.
4. Operator obligations
Operators agree to:
- Enter only accurate and up-to-date information into the knowledge base
- Not use Stayla for unlawful purposes
- Not share dashboard login credentials with third parties
- Promptly notify Stayla of changes that affect the accuracy of the knowledge base
- Indirectly accept the terms of use of Anthropic (the AI provider)
5. Limitation of liability
Stayla is not liable for:
- The accuracy of AI-generated responses where these are based on an incomplete or incorrect knowledge base
- Damages caused by downtime of infrastructure providers (Supabase, Vercel, Anthropic)
- Misuse of the chat service by the operator's guests
- Indirect damages or loss of profits
Stayla is liable for the proper technical delivery of the service and for damages caused by gross negligence or wilful misconduct.
6. Cancellation
Operators may cancel their subscription at any time via the Stripe customer portal. After cancellation, data remains accessible until the end of the billing period. On account deletion, all data is erased within 30 days.
7. Changes to these terms
Stayla reserves the right to amend these terms with 30 days' notice. Operators will be informed by email. Continued use after the notice period constitutes acceptance.
8. Governing law
Swiss law applies. Place of jurisdiction: St. Gallen, Switzerland.
Data Processing Agreement under Art. 28 GDPR
Data Processing Agreement (DPA)
Between Stayla (Processor) and the Operator (Controller)
DPA § 1 — Subject matter and duration
This Data Processing Agreement (DPA) governs the processing of personal data by Stayla on behalf of the Operator under Art. 28 GDPR. It is valid for the duration of the service contract.
DPA § 2 — Nature of processing and categories of data subjects
Stayla processes the following data on behalf of the Operator:
- Data subjects: Guests of the accommodation
- Data categories: Guest chat messages, guest profile (travel type), guest language, session ID (anonymous UUID)
- Data categories of optional self-service features: Where child animation registration is enabled: room number, child's name, age, care period, allergy details and notes (health data); where meal adjustments are enabled: guest name, room number, adjustment request, and meal date
- Purpose: Providing the AI concierge service to the Operator's guests
DPA § 3 — Processing on instructions
Stayla processes personal data only on documented instructions from the Operator. These terms of service and the resulting service delivery constitute the documented instructions.
DPA § 4 — Confidentiality
Stayla ensures that persons authorised to process data are bound by confidentiality.
DPA § 5 — Security of processing
Stayla implements the following technical and organisational measures (TOMs):
- Encryption in transit (HTTPS/TLS) and at rest (Supabase database encryption)
- Row Level Security (RLS) on all database tables — no cross-tenant data access
- Pseudonymisation: guests are identified by anonymous session UUIDs
- Access controls: dashboard accessible only to authenticated operators
- Data minimisation: sensitive fields (WiFi access, access codes, and self-check-in instructions) are not returned as page data or through a separate browser-accessible data interface. They may appear only in a chat reply when a guest asks for them directly and specifically; if a manipulation attempt is detected, they remain withheld.
DPA § 6 — Sub-processors
Stayla uses the following sub-processors. The Operator authorises engagement of these providers:
- Supabase, Inc. — Database hosting (EU/EEA data region; US provider, SCCs in the DPA, not DPF-listed)
- Vercel Inc. — Web hosting and Edge Rendering (US; EU-US DPF active, also Swiss and UK, as of 2026-08-12; plus SCCs in the DPA)
- Anthropic PBC — Claude AI API (multi-region processing; standard US storage; SCCs via the Commercial Terms, not DPF-listed)
- OpenAI — Transient embeddings for FAQ retrieval (latest guest message only, max 2,000 characters, no conversation history; global endpoint, US processing; SCCs in the DPA, not DPF-listed; no training on API data)
- Firecrawl — Optional, operator-initiated import of their own website (limited page selection, main content only) for knowledge and FAQ creation; no Stayla chat/guest data, though public page content may itself contain third-party personal data (region, DPA/SCC, retention, and training under review; not DPF-listed)
- Better Stack, Inc. — Error tracking, uptime monitoring, and cron heartbeats (ingest host eu-central-1; DPA, subprocessors, and transfers under review; not DPF-listed, SCCs EU/UK/Swiss in the DPA)
- Resend — Transactional emails and operational notifications to operators; no guest-message text in handoff emails (US; EU-US DPF and UK Extension active, re-certification under review, as of 2026-08-12; no Swiss-US DPF, Swiss data via SCCs in the DPA)
- Stripe Payments Europe, Limited — Payment processing (Ireland; the contracting entity for Switzerland per the Stripe Services Agreement, so no third-country transfer arises. Stripe Payments UK Ltd is an additional party under the applicable Service Terms, covered by the EU adequacy decision of 2025-12-19 and Annex 1 of the Swiss Data Protection Ordinance. Stripe DPA with SCCs applies in addition, as of 2026-08-14)
- Upstash, Inc. — Redis rate-limiting (US; EU-US DPF active, also Swiss and UK, as of 2026-08-12; plus SCC Module 2 in the DPA)
Stayla will notify the Operator of changes to sub-processors with 14 days' notice.
DPA § 7 — Assistance with data subject rights
Stayla assists the Operator in fulfilling data subject requests (access, erasure, portability) to the extent technically feasible and reasonable.
DPA § 8 — Deletion after contract end
After termination of the service contract, Stayla deletes all personal data processed on behalf of the Operator within 30 days, unless a legal retention obligation applies.
DPA § 9 — Documentation and audits
Stayla makes available to the Operator all information necessary to demonstrate compliance with the obligations under Art. 28 GDPR.
By registering on Stayla, you accept these terms of service and the data processing agreement. Last updated: July 2026.
Privacy Policy · Legal Notice
Nutzungsbedingungen
Stand: Juli 2026 · Gültig für Hotel-Betreiber auf Stayla
1. Geltungsbereich
Diese Nutzungsbedingungen gelten für die Nutzung der Plattform Stayla durch Hotel-Betreiber, Apartment-Hosts und sonstige Betreiber von Beherbergungsbetrieben (nachfolgend "Betreiber"). Für Gäste, die den öffentlichen Chat nutzen, gelten diese Bedingungen nicht.
2. Leistungsbeschreibung
Stayla stellt einen KI-gestützten Concierge-Dienst für Beherbergungsbetriebe bereit. Betreiber können über das Dashboard:
- Eine Wissensbasis für ihre Unterkunft pflegen
- Einen KI-Concierge für ihre Gäste bereitstellen (erreichbar via QR-Code und öffentlicher URL)
- Chat-Verläufe einsehen und auswerten
- Ihr Abonnement und ihre Zahlungsdaten verwalten
3. Abonnement und Zahlung
Stayla bietet monatlich kündbare Abonnements in verschiedenen Plänen (Vacation Rental Basic, Vacation Rental Pro, Hotel Starter, Hotel Pro). Die aktuelle Preisübersicht ist auf der Website einsehbar. Neu registrierte Betreiber erhalten eine 14-tägige kostenlose Testphase; für den Start ist eine Kreditkarte erforderlich, während der Testphase erfolgt jedoch keine Abbuchung. Nach der Testphase wird der gewählte Plan automatisch aktiviert, sofern nicht gekündigt wird.
Die Abrechnung erfolgt monatlich über Stripe. Jedes Unternehmen/jede Unterkunft hat ein eigenes Abonnement. Ein Betreiber kann mehrere Unternehmen unter einem Account verwalten.
4. Pflichten des Betreibers
Betreiber verpflichten sich:
- Nur korrekte und aktuelle Informationen in der Wissensbasis einzutragen
- Stayla nicht für unerlaubte Zwecke zu nutzen
- Zugangsdaten zum Dashboard nicht an Dritte weiterzugeben
- Stayla unverzüglich über Änderungen zu informieren, die die Richtigkeit der Wissensbasis betreffen
- Die Nutzungsbedingungen von Anthropic (AI-Provider) mittelbar zu akzeptieren
5. Haftungsausschluss
Stayla ist nicht verantwortlich für:
- Die Korrektheit von KI-generierten Antworten, soweit diese auf unvollständiger oder falscher Wissensbasis basieren
- Schäden durch Systemausfälle der eingesetzten Infrastrukturdienstleister (Supabase, Vercel, Anthropic)
- Missbrauch des Chat-Dienstes durch Gäste des Betreibers
- Indirekte Schäden oder entgangenen Gewinn
Stayla übernimmt die Haftung für die ordnungsgemäße technische Bereitstellung des Dienstes sowie für Schäden, die durch grobe Fahrlässigkeit oder Vorsatz entstehen.
6. Kündigung
Betreiber können ihr Abonnement jederzeit über das Stripe-Kundenportal kündigen. Nach Kündigung bleiben die Daten bis zum Ende des Abrechnungszeitraums zugänglich. Bei Account-Löschung werden alle Daten innerhalb von 30 Tagen gelöscht.
7. Änderungen der Nutzungsbedingungen
Stayla behält sich das Recht vor, diese Nutzungsbedingungen mit einer Frist von 30 Tagen zu ändern. Betreiber werden per E-Mail informiert. Die weitere Nutzung nach Ablauf der Frist gilt als Zustimmung.
8. Anwendbares Recht
Es gilt Schweizer Recht. Gerichtsstand ist St. Gallen, Schweiz.
Auftragsverarbeitungsvertrag gemäß Art. 28 DSGVO
Auftragsverarbeitungsvertrag (AVV)
Zwischen Stayla (Auftragsverarbeiter) und dem Betreiber (Verantwortlicher)
AVV § 1 — Gegenstand und Dauer
Dieser Auftragsverarbeitungsvertrag (AVV) regelt die Verarbeitung personenbezogener Daten durch Stayla im Auftrag des Betreibers gemäß Art. 28 DSGVO. Er gilt für die Dauer des Nutzungsvertrags.
AVV § 2 — Art der Verarbeitung und Kategorien der betroffenen Personen
Stayla verarbeitet im Auftrag des Betreibers folgende Daten:
- Betroffene Personen: Gäste des Beherbergungsbetriebs
- Datenkategorien: Chat-Nachrichten der Gäste, Gastprofil (Reiseart), Gästesprache, Session-ID (anonyme UUID)
- Datenkategorien optionaler Selbstservice-Funktionen: Bei aktivierter Kinderanimations-Anmeldung: Zimmernummer, Name, Alter, Betreuungszeitraum, Allergieangaben und Hinweise des Kindes (Gesundheitsdaten); bei aktivierter Essensanpassung: Gastname, Zimmernummer, Anpassungswunsch und Datum der Mahlzeit
- Zweck: Bereitstellung des KI-Concierge-Dienstes für die Gäste des Betreibers
AVV § 3 — Weisungsbindung
Stayla verarbeitet personenbezogene Daten ausschließlich auf dokumentierte Weisung des Betreibers. Diese Nutzungsbedingungen und die daraus resultierende Dienstleistungserbringung gelten als dokumentierte Weisung.
AVV § 4 — Vertraulichkeit
Stayla stellt sicher, dass die zur Verarbeitung befugten Personen zur Vertraulichkeit verpflichtet sind.
AVV § 5 — Sicherheit der Verarbeitung
Stayla implementiert folgende technische und organisatorische Maßnahmen (TOMs):
- Verschlüsselung in Transit (HTTPS/TLS) und at Rest (Supabase-Datenbankverschlüsselung)
- Row Level Security (RLS) auf allen Datenbanktabellen — kein Cross-Tenant-Datenzugriff
- Pseudonymisierung: Gäste werden durch anonyme Session-UUIDs identifiziert
- Zugriffskontrollen: Dashboard nur für authentifizierte Betreiber zugänglich
- Datensparsamkeit: Sensitive Felder (WLAN-Zugang, Zugangscodes und Selbst-Check-in-Anweisungen) werden nicht als Seitendaten oder über eine separate browserzugängliche Datenschnittstelle zurückgegeben. Sie können nur auf direkte, gezielte Gastanfrage in einer Chatantwort erscheinen; bei erkanntem Manipulationsversuch bleiben sie zurückgehalten.
AVV § 6 — Unterauftragsverarbeiter
Stayla setzt folgende Unterauftragsverarbeiter ein. Der Betreiber erteilt hiermit seine allgemeine Genehmigung zur Hinzuziehung dieser Dienstleister:
- Supabase, Inc. — Datenbankhosting (EU/EWR-Datenregion; Anbieter USA, SCCs im DPA, nicht DPF-gelistet)
- Vercel Inc. — Webhosting und Edge-Rendering (USA; EU-US-DPF aktiv, auch Schweiz und UK, Stand 2026-08-12; ergänzend SCCs im DPA)
- Anthropic PBC — Claude KI-API (multi-regionale Verarbeitung; Standardspeicherung USA; SCCs über die Commercial Terms, nicht DPF-gelistet)
- OpenAI — Transiente Embeddings für FAQ-Retrieval (nur die letzte Gastnachricht, max. 2.000 Zeichen, kein Gesprächsverlauf; globaler Endpoint, Verarbeitung USA; SCCs im DPA, nicht DPF-gelistet; kein Training auf API-Daten)
- Firecrawl — Optionaler, vom Betreiber ausgelöster Import der eigenen Website (begrenzte Seitenauswahl, nur Hauptinhalt) zur Erstellung von Knowledge und FAQs; keine Chat-/Gastdaten aus Stayla, öffentliche Seiteninhalte können jedoch personenbezogene Angaben Dritter enthalten (Region, DPA/SCC, Löschung und Training in Prüfung; nicht DPF-gelistet)
- Better Stack, Inc. — Error-Tracking, Uptime-Monitoring und Cron-Heartbeats (Ingest-Host eu-central-1; DPA, Subprozessoren und Transfers in Prüfung; nicht DPF-gelistet, SCCs EU/UK/Schweiz im DPA)
- Resend — Transaktions-E-Mails und operative Benachrichtigungen an Betreiber; kein Gastnachrichtentext in Handoff-E-Mails (USA; EU-US-DPF und UK-Erweiterung aktiv, Re-Zertifizierung in Prüfung, Stand 2026-08-12; kein Schweiz-US-DPF, Schweizer Daten über SCCs im DPA)
- Stripe Payments Europe, Limited — Zahlungsabwicklung (Irland; laut Stripe Services Agreement die Vertragspartnerin für die Schweiz, keine Drittlandübermittlung. Stripe Payments UK Ltd ist nach den anwendbaren Service Terms zusätzliche Vertragspartei; dafür tragen der EU-Angemessenheitsbeschluss vom 2025-12-19 und Anhang 1 der Schweizer Datenschutzverordnung. Ergänzend Stripe-DPA mit SCCs, Stand 2026-08-14)
- Upstash, Inc. — Redis für Rate-Limiting (USA; EU-US-DPF aktiv, auch Schweiz und UK, Stand 2026-08-12; ergänzend SCC-Modul 2 im DPA)
Stayla informiert den Betreiber über beabsichtigte Änderungen an Unterauftragsverarbeitern mit einer Frist von 14 Tagen.
AVV § 7 — Unterstützung bei Betroffenenrechten
Stayla unterstützt den Betreiber bei der Erfüllung von Anfragen betroffener Personen (Auskunft, Löschung, Datenübertragbarkeit) im Rahmen des technisch Möglichen und Zumutbaren.
AVV § 8 — Löschung nach Vertragsende
Nach Beendigung des Nutzungsvertrags löscht Stayla alle im Auftrag verarbeiteten personenbezogenen Daten innerhalb von 30 Tagen, sofern keine gesetzliche Aufbewahrungspflicht besteht.
AVV § 9 — Nachweispflicht und Audits
Stayla stellt dem Betreiber auf Anfrage alle erforderlichen Informationen zum Nachweis der Erfüllung der Pflichten aus Art. 28 DSGVO zur Verfügung.
Durch die Registrierung auf Stayla akzeptieren Sie diese Nutzungsbedingungen und den Auftragsverarbeitungsvertrag. Letzte Aktualisierung: Juli 2026.
Datenschutzerklärung · Impressum