Legal & compliance
Privacy Policy
QA · ar-QA · Default platform policy
PRIVACY POLICY
Last updated: 24 March 2026
This Privacy Policy describes how TAYMO SPORTS BOOKING PLATFORM (Commercial Registration No. 00238991, Ministry of Commerce & Industry, Qatar) ("Taymo", "we", "us", "our") collects, processes, uses, and protects personal data in connection with taymo.app, in accordance with Qatar's Personal Data Privacy Protection Law No. 13 of 2016 ("PDPL").
1. DATA CONTROLLER
TAYMO SPORTS BOOKING PLATFORM
C.R No. 00238991, MOCI Qatar
Contact: contact@taymo.app
2. PERSONAL DATA WE COLLECT
We collect only the data necessary to deliver our services:
- Identity data: full name, date of birth (for child profiles), gender.
- Contact data: email address, phone number.
- Child profile data (provided by parent/guardian): child name, date of birth, sport preferences, and any optional medical or health notes you choose to provide.
- Booking data: programs enrolled, session dates, attendance records, booking status.
- Financial data: payment status, invoice references, transaction identifiers. Full card data is never collected or stored by Taymo — it is handled exclusively by Tap Payment (www.tap.company) under a PCI-DSS compliant framework.
- Usage data: IP address, device type, browser, pages visited, session duration — used solely for security and platform improvement.
- Communications: support requests and correspondence with Taymo.
3. LEGAL BASIS FOR PROCESSING (Qatar PDPL Art. 6)
- Contract performance: necessary to fulfil bookings, manage accounts, and deliver the Taymo service.
- Legal obligation: required to comply with Qatar law including financial record-keeping requirements.
- Legitimate interests: fraud prevention, platform security, and aggregate analytics — not overriding your data rights.
- Consent: where explicitly given (e.g., marketing communications). Withdrawable at any time by contacting contact@taymo.app.
4. HOW WE USE YOUR DATA
We use your data solely to:
- Create and manage your account and child profiles.
- Process bookings, schedules, attendance, invoicing, and payments.
- Send transactional communications: confirmations, receipts, reminders, and updates.
- Respond to support requests.
- Detect fraud and maintain platform security.
- Comply with legal and regulatory obligations in Qatar.
- Improve the platform through aggregated, anonymised analytics only.
We do not use your data for advertising profiling. We do not sell, rent, or trade personal data.
5. DATA SHARING AND DISCLOSURE
We share personal data only as necessary and with appropriate safeguards:
- Service Providers: booking, attendance, and child profile data is shared with the relevant enrolled academy solely to deliver the booked service. Academies are bound by data confidentiality obligations.
- Tap Payment: transaction data (booking reference, amount, payer name and contact) is shared with Tap Payment (www.tap.company) as our authorised payment processor for payment processing only, under its own privacy policy and PCI-DSS framework.
- IT service providers: cloud hosting, SMS/email notification providers, and analytics tools access data only as necessary under strict confidentiality agreements.
- Legal authorities: disclosed only where required by Qatar law, court order, or to protect the safety of users or the public.
Personal data is not transferred outside Qatar except where necessary for service providers' infrastructure, with adequate contractual protections in place (Qatar PDPL Art. 6).
6. CHILDREN'S DATA
Data relating to children under 18 is processed only on the basis of parental or guardian consent given at registration. Parents and guardians may access, correct, or request deletion of their child's data at any time via contact@taymo.app. Children's data is not used for marketing or shared beyond what is necessary for service delivery.
7. DATA SECURITY
We implement the following measures:
- Role-based access controls: staff access only data necessary for their function.
- Strict tenant data isolation: organisations cannot access each other's data.
- TLS encryption for all data in transit.
- Audit logging of sensitive data access, financial transactions, and administrative actions.
- Regular security reviews.
In the event of a breach affecting your rights, Taymo will notify affected users and relevant authorities without undue delay, as required by Qatar law.
8. DATA RETENTION
- Active account and financial data: retained for the account relationship period plus 5 years for Qatar legal compliance.
- Booking and payment records: minimum 5 years per Qatar financial regulations.
- Usage/analytics data: anonymised after 12 months; identifiable logs deleted.
- Child profile data: deleted or anonymised on verified parental request, unless legally required to retain.
9. YOUR RIGHTS (Qatar PDPL)
You have the right to: access, rectify, erase, restrict processing of, and object to the processing of your personal data, and to withdraw consent at any time.
To exercise any right: contact@taymo.app. We respond within 15 business days.
10. COOKIES
We use only essential cookies necessary for platform operation (session management, security, language preferences). We do not use advertising, retargeting, or behavioural tracking cookies. See our Cookie Policy for details.
11. CHANGES TO THIS POLICY
We may update this Privacy Policy. Material changes will be notified to registered users at least 14 days in advance. Continued use of the platform constitutes acceptance.
12. CONTACT
Taymo Data Privacy Team — contact@taymo.app
