Privacy Notice

Last updated: 8 May 2026.

Your privacy is important to us. This Privacy Notice describes how personal data is processed when you create a Bookly account, install or use the Bookly software (including Bookly Cloud services), interact with our customer support, visit www.booking-wp-plugin.com, or visit other websites operated by NOTA-INFO S.R.L. or Booking Technologies, Inc. that link to this Privacy Notice.

Data Controllers

The “Bookly” software (the “Software”) is developed and owned by NOTA-INFO S.R.L., a company registered in the Republic of Moldova, with its registered office at MD-2002, Bulevardul Decebal 6, Chișinău, Moldova (“NOTA-INFO”). NOTA-INFO is the data controller for personal data processed in connection with the operation of the Software, the Bookly Cloud services (including SMS notifications, third-party integrations and other add-ons), product analytics, customer support, and software updates.

BOOKING TECHNOLOGIES, INC., a company registered in the State of Delaware, USA, with its registered office at 131 Continental Dr, Suite 305, Newark, DE 19713, USA (“BOOKING TECHNOLOGIES”), acts as the authorised distributor and seller of record for purchases made through booking-wp-plugin.com pursuant to a Distribution Agreement with NOTA-INFO. BOOKING TECHNOLOGIES is the data controller for the personal data it processes for the purposes of order placement, billing, payment processing, fraud prevention, and statutory compliance in connection with such sales.

For all data protection enquiries — including requests to exercise your rights under applicable data protection law — you can contact us at dataprivacy@bookly.info. We will route your request to the appropriate controller (NOTA-INFO and/or BOOKING TECHNOLOGIES) and respond within the timeframes required by applicable law.

Your Rights

If you reside in the European Union, the European Economic Area, the United Kingdom, or another jurisdiction with comparable data protection laws, you have the following rights, subject to the conditions set out in the applicable law:

  • To be informed about how your personal data is processed.
  • To have your personal data corrected if it is inaccurate, and to have incomplete personal data completed.
  • To object to the processing of your personal data.
  • To restrict the processing of your personal data.
  • To have your personal data erased (“right to be forgotten”).
  • To request access to your personal data and information about how it is processed.
  • To move, copy or transfer your personal data (“data portability”).
  • In relation to automated decision-making, including profiling.

You also have the right to lodge a complaint with the relevant supervisory authority. “Personal data” means information relating to an identified or identifiable natural person.

Types of Personal Data We Collect and Use

When you create an account, purchase a licence or subscription, install the Software, or use Bookly Cloud services, we may collect:

  • Account and contact details: full name, email address, business name, business address, phone number.
  • Billing information: billing name, billing address, country, VAT number where applicable. Card details and bank account information are collected and processed by our payment service providers (see “Payment Processors” below) and are not stored on our servers.
  • Software usage data: technical information about your installation (Bookly version, WordPress version, environment), usage events, error logs.
  • End-user data inside your Bookly installation (booking records, customer contacts, calendars): this data is controlled by you (the WordPress site owner). For Bookly Cloud services we act as a data processor on your behalf.
  • Communication content: emails, support tickets, and other correspondence with our team.

Information About Other People

Through our products and websites, you may submit personal information about other individuals (for example, when sending notifications to your end customers via Bookly Cloud SMS). We process such information solely to provide the requested service and do not use it for any other purpose unless we obtain direct permission from the individual concerned.

Purposes and Legal Grounds

We process your personal data for the following purposes, on the following legal grounds:

  • To create your account, license your software, and provide the services you have purchased — legal ground: performance of contract.
  • To deliver service notifications, security alerts, and material updates to this Privacy Notice — legal ground: performance of contract / legitimate interest.
  • To process payments, prevent fraud, and meet our tax and accounting obligations — legal ground: performance of contract / legal obligation.
  • To provide customer support — legal ground: legitimate interest in providing quality service.
  • To deliver SMS notifications via Bookly Cloud — legal ground: performance of contract.
  • To improve the Software, fix bugs, and analyse aggregated usage — legal ground: legitimate interest.
  • To send marketing communications about our products and apps — legal ground: your consent. You may withdraw your consent at any time via the unsubscribe link in our emails or by contacting dataprivacy@bookly.info.

Payment Processors

We use the following payment service providers, who act as independent data controllers for the payment data they collect:

When you provide payment details to complete a purchase, those details are submitted directly to the relevant payment processor. We receive only limited transactional information necessary to fulfil your order and meet our compliance obligations.

Sub-processors and Third Parties

To operate our products, services and websites, we engage trusted third-party providers who act as sub-processors on our behalf, or as independent controllers where indicated. Our current categories of sub-processors include:

  • Cloud hosting and infrastructure providers (server, storage, backup).
  • Email delivery providers (transactional and marketing email).
  • SMS gateway providers (for Bookly Cloud SMS).
  • Customer support tools (e.g. Zendesk).
  • Analytics and product telemetry providers (e.g. Google Analytics).
  • Marketplaces through which the Software is also sold (e.g. CodeCanyon by Envato), where applicable.
  • Payment service providers (Stripe, PayPal — see “Payment Processors”).
  • Professional advisors: legal counsel, accountants, auditors.

We require sub-processors to apply appropriate technical and organisational measures and to process personal data only in accordance with our instructions and applicable law.

We may also disclose personal data:

  • To fraud prevention agencies, credit reference agencies and debt collection agencies, where necessary;
  • To courts and public authorities, to comply with legal requirements and the administration of justice;
  • In an emergency, to protect vital interests;
  • To any other party where you have given consent or where required by law.

International Transfers

We are a global business and may transfer your personal data outside your country of residence to operate our services. Where such transfers involve personal data of individuals in the European Economic Area, the United Kingdom or Switzerland, we rely on appropriate safeguards under applicable data protection law (such as Standard Contractual Clauses) where required.

Cookies and Similar Technologies

We use cookies, pixel tags, web beacons and similar technologies on our websites to operate the site, remember your preferences, analyse usage and (with your consent where required) measure the effectiveness of advertising. The full list of cookies we deploy is available on our Cookies page: https://www.booking-wp-plugin.com/cookies/

You can manage or withdraw your cookie consent at any time using the cookie controls on our website, or via your browser settings.

Retention of Personal Data

We retain personal data for as long as necessary to provide the services and meet our legal, accounting, tax and reporting obligations:

  • Account data: while your account is active and for a reasonable period after closure for legal and audit purposes.
  • Technical and access logs: typically up to 12 months.
  • Financial and transactional records: in accordance with the retention periods required by applicable law (typically 5–10 years).

When personal data is no longer needed, we securely delete or anonymise it.

Children

Our products are not directed to children under 18, and we do not knowingly collect personal data from individuals under 18. If we learn that we have collected such data, we will take steps to delete it promptly.

Security

We have implemented administrative, technical and physical safeguards designed to protect personal data against unauthorised access, use, modification and disclosure. Access to personal data is granted only to employees and authorised service providers who require it to perform their duties. Where access requires a password, we strongly recommend that you choose a strong password and do not share it with anyone. We will never ask for your password in any unsolicited communication.

Privacy Notice Updates

We may update this Privacy Notice from time to time as we add new products and services, as we improve existing offerings, and as technologies and laws change. Where required by applicable law, we will provide notice of material changes by email or by posting a notice on the websites that link to this Privacy Notice. The “Last updated” date at the top of this page reflects the most recent revision. Any changes become effective when we post the revised Privacy Notice.

Contact

For all data protection enquiries, please contact us at dataprivacy@bookly.info.