Skip to content

Privacy Policy

Last updated: July 2026.

This Privacy Policy explains how Clavibase ("we", "us", or "our") collects, uses, shares, and protects personal information when you use our website at https://clavibase.com, the Clavibase dashboard, branded booking storefronts, and related services (together, the "Services").

Clavibase is operated under the Clavibase brand. If we publish a registered company name, RC number, or business address, those details will appear here or in a later update of this policy. Privacy questions: hello@clavibase.com.

Who this policy covers

This policy applies to:

  • Platform users: property owners, managers, and team members who create accounts and use the dashboard.
  • Website visitors: people who browse clavibase.com or interact with marketing pages.
  • Guests: people who book or inquire about stays through a Clavibase-powered storefront operated by a property manager.

Roles: account data vs guest data

For information about your own Clavibase account and how you use the platform, Clavibase typically decides how that information is processed.

For guest information that property managers enter or collect through their storefront (names, contact details, stay dates, payment status for a booking, messages, and similar data needed to run a shortlet), the property manager is responsible for telling guests why the data is collected and for obtaining any consents required by law. In that context, Clavibase processes guest data on the manager's instructions to provide the Services. Managers must only upload or collect guest data they are legally entitled to process.

Information we collect

Information you provide

  • Account and profile details such as name, email address, phone number, business or workspace name, and password or authentication credentials.
  • Property and operations data you add to Clavibase, including listings, availability, pricing, house rules, and related media.
  • Booking and guest records you create or that guests submit through your storefront.
  • Billing and payment-related details needed for subscriptions (for example billing email and payment references). Card details are handled by our payment partners; we receive confirmation and metadata, not full card numbers where the processor supports that model.
  • Support messages and other communications you send us.

Information collected automatically

  • Device and usage information such as IP address, browser type, pages viewed, referring URLs, and approximate timing of visits.
  • Cookies and similar technologies used for sign-in sessions, security, preferences, and product analytics (including tools such as PostHog on our marketing site where enabled).

Information from payment partners

When you pay for a Clavibase subscription or when guests pay through integrated checkout (for example via Paystack), we receive payment status, amount, currency, and reference metadata required to run billing, bookings, and payouts.

How we use information

  • Provide, operate, secure, and improve the Services
  • Create and manage accounts, workspaces, and team access
  • Process bookings, guest messaging features, subscription billing, and payouts
  • Send transactional emails and important service notices
  • Respond to support requests and investigate abuse or security issues
  • Understand how the marketing site and product are used so we can improve them
  • Comply with applicable law and enforce our Terms of Service

We do not sell personal information.

How we share information

We share personal information only as needed to run the Services, including with:

  • Service providers (subprocessors) such as hosting and infrastructure providers, email delivery, customer support tooling, analytics providers (for example PostHog), and payment processors (for example Paystack).
  • Workspace teammates you invite, according to the roles and permissions you set.
  • Authorities when we believe disclosure is required by law, regulation, legal process, or to protect rights, safety, or the integrity of the platform.
  • Business transfers if we are involved in a merger, acquisition, financing, or sale of assets, subject to appropriate safeguards.

Property managers may share guest-facing booking information as needed to operate a stay (for example with cleaners or co-hosts). That sharing is controlled by the manager, not by Clavibase's own marketing practices.

Cookies and similar technologies

We use cookies and similar technologies to keep you signed in, protect accounts, remember preferences, and measure product and marketing performance. You can control cookies through your browser settings. Blocking some cookies may limit parts of the Services (for example remaining signed in).

Data retention

We retain personal information for as long as needed to provide the Services, meet legal and accounting requirements, resolve disputes, and enforce our agreements. Retention periods vary by data type. When information is no longer required, we delete or anonymize it where reasonably possible.

If you close an account, we may retain limited records (for example billing history or fraud-prevention logs) as required or permitted by law.

Security

We use administrative, technical, and organizational measures designed to protect personal information. No method of transmission or storage is completely secure, and we cannot guarantee absolute security. Please use a strong unique password and limit access to your workspace.

International transfers

Clavibase serves customers in Nigeria. Some service providers may process data on servers outside Nigeria. Where that happens, we take steps appropriate to the relationship and provider to protect personal information in line with applicable law, including Nigeria's data protection framework (including the Nigeria Data Protection Act / NDPR regime as applicable).

Your rights

Depending on applicable law (including Nigerian data protection rules), you may have rights to request access to, correction of, or deletion of personal information we hold about you, to object to or restrict certain processing, or to withdraw consent where processing is based on consent.

To exercise these rights for your Clavibase account data, contact hello@clavibase.com. We may need to verify your identity before responding.

Guests who want to access or change booking information should contact the property manager who took the booking. We can assist managers with account-level requests where appropriate.

Children

The Services are directed to adults operating shortlet and hospitality businesses. We do not knowingly collect personal information from children for Clavibase account registration.

Changes to this policy

We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page will change when we do. Material changes may also be communicated by email or in-product notice where appropriate. Continued use of the Services after an update means you acknowledge the revised policy.

Contact

Privacy questions or requests: hello@clavibase.com

You can also reach us via the contact page.

Related documents: Terms of Service and Refund Policy.