Policies
Privacy Policy
Privacy Policy
Alternative Hospitality (UK) Ltd operates Sinful House/Soir Haus. We process member data to run applications, memberships, events, tickets, payments, community features, safety moderation, support, rewards and legal compliance.
Information we collect
- Account information, including name, email, username, member number, language, country, phone details where provided, login/session data and account preferences.
- Membership and application information, including legal identity, date of birth, account type, partner details for couple applications, verification status, membership tier, subscription history and application decisions.
- Profile and community information, including profile content, photos, interests, privacy settings, messages, room memberships, reports, moderation actions and member interactions.
- Payment and order information, including tickets, memberships, cart reservations, invoices, payment status, payment method, transfer slips, Soir Pay wallet transactions, affiliate/reward activity and fraud-prevention records.
- Technical and usage information, including IP address, device/browser data, cookies, security logs, audit logs, page usage, error logs and support/chat metadata.
How we use information
- To create and secure accounts, review membership applications, verify eligibility, issue memberships, run the member app and maintain access controls.
- To process bookings, tickets, payments, wallet transactions, refunds where applicable, ticket PDFs, invoices, check-in, event updates and location release workflows.
- To operate community features, direct messages, chat rooms, translation services, notifications, support, rewards, partner perks and member preferences.
- To protect members through moderation, safety reviews, banned account enforcement, audit trails, fraud prevention, dispute handling, legal compliance and incident investigation.
- To send operational emails and notices about account security, applications, payments, tickets, memberships, policy updates and support. Marketing messages may be controlled through preferences where available.
Visibility, sharing and processors
- Legal identity, date of birth, verification materials and payment evidence are internal-use data and are not public profile fields.
- Public-facing profile details, usernames, display names, selected photos, community participation and attendance visibility depend on member settings, feature settings and moderation rules.
- We do not sell member personal information. We may share data only where needed for operations, payment processing, hosting, email delivery, support, fraud prevention, analytics, legal compliance, venue access, safety enforcement or a business transfer.
- Third-party processors may include payment providers, email providers, support chat providers, hosting providers, storage providers, translation/AI providers, analytics/security tooling and partner venues where required for a booking or benefit.
- Members must not export, screenshot, publish or disclose another member's private information, profile, attendance, messages, photos or identity without consent.
Cookies, security and retention
- We use cookies and similar technologies for login, session management, preferences, security, cart/checkout behaviour, language and app functionality.
- Passwords are not visible to staff in plain text. Members are responsible for keeping login credentials secure and reporting suspected account compromise promptly.
- No internet service can guarantee perfect security, but we use reasonable technical and organisational controls to protect member data and investigate suspected incidents.
- We retain data for as long as needed to operate the service, comply with law, resolve disputes, enforce rules, investigate safety incidents, manage payments and maintain audit trails. Some deleted account data may remain in backups or legal/safety records for a limited period.
- Deleted messages, moderation evidence, payment records, check-in records and safety audit logs may be retained where required for legal, safety, dispute, fraud or compliance reasons.
Your rights and contact
- Depending on your location, you may request access, correction, deletion, restriction, portability or objection to certain processing of your personal data.
- We may need to verify your identity before actioning privacy requests, especially where sensitive membership, safety or payment records are involved.
- Some records cannot be deleted immediately where retention is required for law, fraud prevention, chargeback defence, safety investigation, tax/accounting, audit logs or legitimate operational reasons.
- Privacy, data protection and support requests should be submitted through the in-app Support hub or by contacting [email protected].
- If a security incident affects non-public member information, we will take reasonable steps to investigate, contain, document and notify affected users or authorities where required by law.