Legal

Privacy Policy

Last updated August 10, 2026

This policy explains what information Avenlyr collects, why we collect it, and how we handle it. It is written by the Avenlyr team and describes our current practices. It is not a legal certification or an independent audit.

Who we are

Avenlyr is a financial intelligence product for hotels. If you have questions about this policy, email hello@avenlyr.com.

Information we collect

  • Account information — your name, work email, hotel or group name, job title and password (stored only as a salted hash by our authentication provider).
  • Workspace information — organizations, properties, room counts, city, currency, time zone and team member roles you enter.
  • Hotel data you provide — spreadsheets and files you upload, and data imported from systems you choose to connect.
  • Product usage — pages visited, actions taken and error reports, used to fix problems and improve the product.
  • Support messages — anything you send us by email or through the in-product assistant.

How we use it

  • To create and run your workspace, dashboards and forecasts.
  • To authenticate you and keep your data separated from other customers.
  • To provide support, respond to requests, and send service notices.
  • To detect abuse, debug faults and improve accuracy.

We do not sell your data. We do not use your hotel financial data to train public AI models.

Processors we rely on

We use a small number of service providers to run Avenlyr: a managed cloud database and authentication provider (hosting your account, workspace and financial records), application hosting, email delivery for account messages, and an AI model gateway used for briefings and the assistant. Messages sent to the assistant are transmitted to the model provider to generate a response. We will keep this list current as it changes.

Storage, retention and security

Your data is stored in our managed cloud database with database-level access rules so records are only readable by members of the organization they belong to. Uploaded files are stored in a private bucket that is not publicly readable. Data is encrypted in transit over HTTPS and encrypted at rest by our hosting provider. We keep your data while your account is active. If you ask us to delete your workspace, we remove it from live systems and it ages out of routine provider backups.

No system is perfectly secure. We do not claim any formal certification, and you should not treat this page as one. See our Security page for the specifics of what is implemented today and what is still planned.

Your choices

  • You can view and update your account details in your account settings.
  • You can request a copy or deletion of your workspace data by emailing us.
  • You can disconnect a data source or stop uploading files at any time.
  • You can opt out of non-essential email while keeping account and security notices.

Children

Avenlyr is a business product and is not intended for anyone under 16.

Changes

If we make a material change to this policy we will update the date above and notify account owners by email.