top of page

Privacy Policy.

Lost Illustration

YOUR TRUST MATTERS

Here's is how Loopin Global collects, uses and protects your information.

Last Updated : 15 September 2026 

1. Who we are

Loopin Global (“Loopin Global”, “we”, “us” or “our”) is operated by Loopin Hospitality Private Limited, CIN U55101RJ2026PTC111515, with registered office at D-35 Nagnachi Road, Pawanpuri Nagnachi Scheme, Bikaner – 334001, Rajasthan, India.

Contact privacy@loopin.global or +91 86288 96888. Skand Srivastava, Chief Revenue Officer, is our Grievance Officer.

 

2. Scope

This policy applies when you visit loopin.global; enquire, book or stay with us; check in at reception or through contactless check-in when available; use property Wi-Fi, facilities or common areas; make a purchase; or contact us. It applies to all Loopin Global property out there. Third-party booking platforms have their own privacy policies

 

This policy does not cover personal data collected from job applicants, employees, contractors or former team members. If Loopin Global begins hiring or otherwise collects employment data, it will provide a separate candidate or employee privacy notice.

3. Data we collect

We may collect name, mobile number, email, date of birth, gender, nationality, country, ZIP or postal code, booking reference, property, room or bed allocation, stay dates, guest count, special requests, communications, feedback, payment status, transaction reference, refunds, invoices and GST/billing details where applicable.

 

When contactless check-in is active, we may collect ID image, check-in/check-out time, digital access credential and deposit/payment status. We do not currently collect a selfie, conduct facial matching or use facial-recognition technology for check-in. Razorpay processes card and UPI payments through Checkout or Payment Links; Loopin Global does not store full card numbers or CVV.

 

We may receive personal data about your booking, contact details and stay from online travel agencies, booking platforms and travel or business partners when you book, enquire or otherwise deal with them in relation to Loopin Global. We use it only for the relevant booking, communication, service or legal purpose.

 

If you interact publicly with an official Loopin Global social-media page or post public content that refers to Loopin Global, we may process the public information in that interaction, such as your display name, profile image where public, comments, messages and feedback, to respond, support, protect the page or understand feedback. We do not use public content in marketing unless we have the required permission.

 

4. Identity verification

Adult Indian guests may provide an Aadhaar Card, Voter ID, Driving License or Passport, subject to applicable requirements. Aadhaar is optional: another listed ID may be used. Where an Aadhaar image must be retained, we mask the Aadhaar number before retention and do not use it for authentication or biometric matching. Foreign guests provide a passport and visa and other particulars required under applicable immigration law.

 

5. Why we use data

We use data to manage bookings, check-in, stays and check-out; verify identity; provide room and digital access; process payments and invoices; respond to special requests and communications; protect guests, staff and property; operate systems; comply with legal, tax, accounting, immigration and law-enforcement obligations; and resolve complaints or claims. We do not sell or rent personal data.

 

6. Wi-Fi and Captive Portal

When the captive portal is activated, Wi-Fi users may provide a mobile number and OTP. Captive Portal partner  may process MAC address, IP address, session times, bandwidth or data use, browsing-history information, repeat-visit analytics and network-security information for access, security, troubleshooting and service improvement.

 

If optional adult marketing, loyalty profiling or AI recommendations are offered through the portal, it will ask for the relevant consent and provide an opt-out. A child’s device must be registered by a parent or guardian and is excluded from browsing-history marketing, repeat-visit analytics, AI recommendations and loyalty profiling. Wi-Fi is optional.

 

7. CCTV

Our properties use CCTV that records video and audio in entrances and common areas for safety, security, incident investigation and property protection. Cameras are not placed in private rooms, dormitory sleeping areas, washrooms or changing areas. CCTV signage is displayed. Recordings are kept for 14 days unless required longer for an incident, complaint, insurance claim, legal matter or lawful request. We do not use CCTV for video analytics, facial recognition, identity matching, emotion analysis or guest profiling. Any future activation needs a policy update, appropriate notice, vendor controls and internal approval before use.

 

8. Cookies, analytics and marketing

Essential cookies support website security and booking functions. Google Analytics 4, Google Tag Manager and Meta Pixel are activated only after analytics or marketing consent through the cookie banner. Amazon S3 and Supabase support website and data services. You can change choices through Cookie Settings.

 

Marketing is optional, separately opted in and intended for adults. Loopin Global uses email and WhatsApp for opted-in marketing and does not conduct SMS marketing. Withdraw consent through an email unsubscribe link, by replying STOP on WhatsApp, or by contacting us. Withdrawal does not affect a booking or stay.

 

9. Sharing and international processing

We share data only when needed with Stayflexi for property and booking operations; Razorpay for payments; Captive Portal for Wi-Fi; AWS/S3 and Supabase for hosting and storage; Twilio for SMS/OTP; Meta Business API for WhatsApp; Google Workspace for email; Google and Meta for consented analytics or advertising measurement; authorized website, contactless check-in, security and CCTV providers; travel platforms; and auditors, insurers and legal advisers.

We may also disclose data to police, immigration and tourism authorities, tax authorities, courts, insurers or other authorities where required or appropriate for a legal claim, safety incident or legal obligation. Providers may process data in India or other countries depending on their infrastructure. We require appropriate contractual and security controls for providers that process data for u.s

If Loopin Hospitality Private Limited is involved in a merger, acquisition, restructuring, investment, financing or sale or transfer of assets, personal data may be disclosed or transferred as part of that transaction. Any recipient must handle it consistently with this policy and applicable law.

10. Retention

Core booking, invoice, payment and refund records are retained for eight financial years. CCTV footage and audio are retained for 14 days unless a longer hold is required. Wi-Fi logs are retained for one year. Marketing-consent and opt-out records are kept while active and for three years after withdrawal. GA4 user and event data is configured for up to 14 months; cookie-choice records for 12 months. Guest support communications are kept for three years after resolution, except data that must remain in core financial or legal records. ID images are retained only for the applicable legally required period. We delete or anonymise data when the relevant period ends unless law or a legal hold requires longer.

 

11. Security

We use encryption in transit and storage, role-based access controls, multi-factor authentication, access logs, backups, staff confidentiality obligations, security training and incident-response processes. Access is limited to people and providers who need it for the stated purpose.

 

12. Privacy requests

You may ask for access, correction, completion, updating, deletion where law permits, information about processing, withdrawal of consent or grievance support. Email privacy@loopin.global, call +91 86288 96888 or ask at reception. We verify requests using booking contact details and an OTP or booking-reference check before changing personal data.

 

We aim to acknowledge requests within 24 hours, give a final response within seven business days, and explain complex requests that need more time; complex requests are handled within 30 days. Records required by law cannot be deleted on request.

 

13. Children and under-18 guests

Some properties may allow under-18 guests only where their General Policies say so and only when the booking is made by a parent or legal guardian. Other properties are strictly 18+ and do not permit under-18 guests. The relevant property’s General Policies, booking flow and listing apply. A parent or guardian provides and manages a child’s booking data. We do not use children’s data for marketing, advertising, Wi-Fi profiling or loyalty activity.

 

14. Changes and contact

We may update this policy when practices, providers or legal requirements change.

For privacy questions or grievances, contact privacy@loopin.global or +91 86288 96888.

bottom of page