OTTO Back to site
Legal

Privacy Policy

Effective date: 5 July 2026

OTTO (“OTTO”, “we”, “us”, “our”) provides a hotel management platform that helps hotels run reservations, guest records, room operations, daily takings and reporting. This Privacy Policy explains how we handle personal information when a hotel subscribes to and uses OTTO, and when you visit Otto.com.ng. By using OTTO, you agree to the practices described here. Otto Technology Systems Ltd

1. Who this policy covers

This policy applies to two groups: (a) hotel owners and staff who hold an OTTO account (“Subscribers”), and (b) visitors to our website. Guests of a hotel do not deal with OTTO directly — their information is entered into OTTO by the hotel that serves them. See section 7 for how guest data is handled.

2. Information we collect

Account and billing information. When a Subscriber signs up, we collect the hotel’s name, contact name, email address, phone number, number of rooms and subscription details. Payments are processed by Paystack; we receive confirmation of payment and subscription status, but we do not collect or store your full card details.

Data you enter into OTTO. To run your hotel, you enter operational data such as guest names and phone numbers, stay and booking history, visitor-log entries, room status, daily takings and expenses. This data belongs to your hotel; we process it on your behalf so the platform can work.

Technical information. Like most online services, we automatically collect limited technical data such as log data, device and browser type, and general usage information, to keep the service secure and running.

3. How we use information

We use the information above to provide and operate the platform; create and manage Subscriber accounts; process subscription payments and send billing notices; provide support; keep the service secure and prevent misuse; and improve and maintain OTTO. We do not sell your data or your guests’ data to anyone.

4. Legal basis

Where the Nigeria Data Protection Act (NDPA) applies, we process personal information on the basis of performing our contract with the Subscriber, our legitimate interest in operating and securing the service, and consent where required.

5. Payments

Subscription payments are handled by Paystack, a licensed payment processor. Your card and payment-authentication details are collected and stored by Paystack under its own terms and privacy policy, not by OTTO. We recommend reviewing Paystack’s privacy policy for details of how it handles payment data.

6. How we store and protect data

We host data with reputable cloud infrastructure providers and protect it with access controls and encryption in transit. Each hotel’s data is logically isolated so that one Subscriber cannot access another Subscriber’s records. Access to production data by our team is restricted to what is needed to operate and support the service. No system is perfectly secure, but we take reasonable measures to protect your information.

7. Guest and visitor data — roles and responsibilities

The information a hotel records about its own guests and visitors belongs to, and is controlled by, that hotel. In data-protection terms, the Subscriber is the “controller” of its guest data and OTTO is the “processor” acting on the Subscriber’s instructions. The Subscriber is responsible for collecting guest and visitor information lawfully — including giving any notices and obtaining any consents required — and for using it appropriately. OTTO processes that data only to provide the service.

8. Sharing and disclosure

We share information only with service providers that help us run OTTO (such as our hosting provider and Paystack), under appropriate confidentiality obligations; and with authorities or third parties where we are required to by law, or to protect our rights, our users, or the public. We do not sell personal data.

9. Data retention

We keep Subscriber account and operational data for as long as the account is active. After an account is closed, we retain data for a limited period to meet legal, accounting and dispute-resolution needs, after which it is deleted or anonymised. Subscribers may request export or deletion of their data as described below.

10. Your rights

Subject to applicable law, you may request to access, correct, update or delete your personal information, or object to or restrict certain processing. Because much of the data in OTTO is controlled by a hotel, guests wishing to exercise rights over their information should contact the hotel directly; we will support the hotel in responding. To make a request as a Subscriber, contact us using the details in section 14.

11. International transfers

Our infrastructure or service providers may store or process data outside Nigeria. Where this happens, we take steps intended to ensure your information continues to be protected in line with this policy and applicable law.

12. Children

OTTO is a business tool intended for hotels and is not directed at children. We do not knowingly collect personal information from children through the service.

13. Changes to this policy

We may update this policy from time to time. When we make material changes, we will update the effective date above and, where appropriate, notify Subscribers. Continued use of OTTO after changes take effect means you accept the updated policy.

14. Contact us

Questions about this policy or your data can be sent to:
Email: hello@otto.com.ng
WhatsApp: +234 905 661 1433
Otto Technology Systems Ltd · RC 9705446

© 2026 Otto Technology Systems Ltd (RC 9705446). All rights reserved.
Privacy Terms Refunds
One Touch, Total Control.