1. Introduction & Commitment to Discretion
At Nothingness, confidentiality and privacy are the cornerstones of our boutique hospitality ecosystem. We are committed to protecting the privacy and security of your personal data in accordance with the Information Technology Act 2000, the Digital Personal Data Protection Act 2023 (DPDP Act), and applicable Indian privacy regulations.
2. Personal Information We Collect
We collect only the minimum necessary information required to facilitate sanctuary reservations, secure payments, and statutory hotel guest reporting:
- Contact Details: Full Name, Mobile Phone Number, and Email Address.
- Government Identification: Front and back photographs of official Aadhaar Card or Passport for mandatory Police Compliance.
- Transactional Data: Booking dates, selected sanctuary or event, payment transaction IDs, and invoice records.
- Technical Data: IP address, device identifier, browser type, and authentication logs for Passkey / OTP session security.
3. Payment Security & Financial Data Protection
All online financial transactions on Nothingness are routed through authorized, certified payment aggregators (PayU Payments) using 256-bit SSL encryption.
Important: Nothingness does NOT capture, collect, or store any sensitive cardholder data, including Credit/Debit card numbers, expiry dates, or CVV/PIN codes on our databases or servers. All payment authentication is processed directly on the payment aggregator's secure banking gateway.
4. How We Use Your Information
- To process reservations, confirm payments, and dispatch electronic booking vouchers.
- To generate and provide secure lockbox entrance PINs and sanctuary directions.
- To comply with statutory Police Compliance, Form C, and local hospitality security registrations.
- To facilitate passwordless OTP and biometric Passkey authentication.
- To communicate crucial stay updates, emergency alerts, or customer support responses.
5. Strict Non-Disclosure & Zero Data Selling Policy
Nothingness maintains an absolute Zero Data Selling Policy. We do NOT sell, rent, trade, or monetize your personal information to any third-party advertisers, marketing agencies, or data brokers under any circumstances.
Information is only shared with trusted service infrastructure providers (such as SMS/WebPush notification delivery networks and government law enforcement when explicitly mandated under lawful warrant).
6. 180-Day Reusable Vetting & Data Retention
In accordance with digital hospitality guidelines, guest ID verification records are maintained securely in encrypted cloud storage for a period of 180 days from verification. This allows returning guests to book without submitting repetitive ID documents. Document images are automatically scheduled for secure permanent deletion upon expiry.
7. Cookies & Tracking Technologies
We use essential session cookies to maintain your login state and authentication tokens securely. We do not use intrusive cross-site tracking cookies. You may control cookie preferences through your browser settings.
8. Your Rights as a Data Principal
Under Indian DPDP Act provisions, you have the right to:
- Request a summary of your personal data processed by Nothingness.
- Request correction or updating of inaccurate personal data.
- Request erasure of your personal data (subject to statutory hotel guest register retention mandates).
- Withdraw consent for optional communications at any time.
9. Grievance Redressal & Data Protection Officer
For any queries, concerns, or grievances regarding your privacy or data processing, you may contact our designated Grievance Officer:
Data Protection / Grievance Officer: Sheikh Arsalan Ullah Chishti
Designation: Proprietor & Data Fiduciary
Registered Address: B-80, Ground Floor, Street 8, Ghaffar Manzil, Jamia Nagar, Okhla, New Delhi - 110025, Delhi, India
Direct Email: privacy@nothingness.asia
Customer Support: concierge@nothingness.asia
Helpline: +91 85279 76791