Trust, Security & Privacy

This page is maintained by the owners of Casa Mi Pajobe to answer common security and privacy questions about our booking website. It describes our current practices and is not an independent certification.

Account access & authentication

Guest inquiries can be submitted without an account. The admin area used by the villa owners requires email-based sign-in, and sensitive actions are restricted to accounts with an explicit admin role granted server-side.

Data we collect

When you submit a booking inquiry we store the details you provide (name, contact details, dates, party size and any message). We also keep basic, aggregated visit statistics (page, referrer, country) to understand how the site is used. We do not sell personal data.

Payments

Payments are processed by Stripe. Card details are entered on Stripe's hosted surfaces and are never stored on our servers; we only receive the payment status and a reference for your booking.

Hosting & infrastructure

The website runs on the Lovable platform with a managed Postgres database. Connections are encrypted in transit (HTTPS/TLS). Access to the database is protected by row-level security policies so each record is only readable by the accounts that need it.

Retention & deletion

Booking records are kept for as long as needed to administer your stay and to meet legal/accounting obligations. To request a copy of your data or its deletion, contact us using the address below.

Cookies & analytics

We use a small number of first-party cookies and storage entries that are required for the site to work (for example to remember your language and session). Aggregated visit counts are stored without third-party ad trackers.

Reporting a security issue

If you believe you have found a security issue, please email info@casamipajobe.com with a description and steps to reproduce. We will respond as soon as possible.

Back to home

© 2026 Benjamin Rysman. All rights reserved.