Other Menus under PMS

How to Anonymise Guest Data in SabeeApp According to GDPR

Understanding Roles under GDPR

When it comes to guest personal data:

  • The hotel is the data controller. The hotel determines why and how guest data is processed (e.g., for booking, check-in, billing).
  • SabeeApp is the data processor, handling personal data on the hotel's behalf under their instructions.

This distinction is important: under GDPR, the primary responsibility for managing data requests (like access, rectification, or deletion) lies with the controller — not the processor.


Guest Rights and Deletion Requests

Under Article 17 GDPR (“Right to erasure” / “Right to be forgotten”), guests can request their personal data to be deleted.

Key points:

  • Processors (SabeeApp) cannot delete data independently.
  • Article 28(3)(h) GDPR requires processors to assist controllers, but only on the controller’s instructions.
  • If a guest contacts SabeeApp directly, SabeeApp will forward the request to the hotel. The hotel will review whether deletion is possible, considering legal obligations such as tax retention periods or other legal requirements.

How to Anonymise Guest Data in SabeeApp

Follow these steps to anonymise guest data:

  1. Go to PMS → GDPR menu.
  2. Search for the guest’s name and locate the relevant guest.
  3. Click Delete Guest Data.
  4. Confirm the action in the pop-up message.

5. Once completed, the guest’s data will be changed to “Anonymised” in the system.