Privacy Policy
Last updated Sep 16, 2026
This policy explains what personal data Rento collects when you use our website and our apps, why we hold it, who else sees it, and what you can do about it.
It is written to be read. If anything here is unclear, write to us and we will explain it in plain words.
1. Who we are
Rento is operated by Rento24 GADI SH.P.K., a company registered in the Republic of Kosovo. We are the controller of the personal data described in this policy.
You can reach us about anything in this policy at info@rento-ks.com. For help with a booking, support@rento-ks.com reaches the support desk faster.
2. Our role, and the rental company’s
Rento is a marketplace. You book a car through us, but the car is rented to you by an independent rental company, and the rental agreement is between you and that company.
That means two organisations handle your data for different reasons. We handle it to run the platform: your account, the booking, the payment you make online, the messages you send, and the checks a company asks us to make. The rental company handles it to rent you a car: they decide what to do with the details we pass to them, and their own privacy terms apply to that. If you want a company to erase what it holds about you, ask that company.
3. What we collect
We collect only what a booking, an account and the law require.
- Your account
- Name, email address, phone number, the language you chose, and — if you signed up with a password — an encrypted form of that password from which the password cannot be read. If you sign in with Google or Apple we receive an account identifier, your email address and your name; from Google we may also receive your profile picture. If you use Apple’s “Hide My Email”, we only ever see the forwarding address Apple gives us.
- Bookings
- The car, the dates and times, the pick-up point, any extras, anything you write in the notes, and the price. If you book without an account we hold the name, email address and phone number you type, plus a secret link that lets you open that booking again.
- Payments
- Card payments are taken by our payment provider, not by us. We never see or store your card number. We store the amount, the currency, the status of the payment, and the provider’s reference for it. Your email address is passed to the provider so it can send you a receipt.
- Identity verification
- Some rental companies require a verified renter. If you choose to verify, we collect photographs of your identity document and driving licence and a selfie, and the details read from them: your name, date of birth, document numbers, licence categories and expiry, and your address. Our server compares the selfie with the document photograph to check they are the same person, and checks the photo is of a live person. Those comparisons happen on our own server and produce only a score — no face template is kept. We ask for your separate, explicit consent before this happens, because it is biometric data.
- Phone confirmation
- We send a code to your phone number to confirm it works, because the rental company phones you to arrange the handover. The code is delivered over WhatsApp or by text message.
- Messages, support and reviews
- The messages you exchange with a rental company and any pictures or documents you attach, the support requests you send us and their attachments, and any review you write after a rental.
- Photos at handover
- When the car is handed over or returned, photographs may be taken of the vehicle and its condition. These can show the surroundings and the number plate.
- Rental agreements
- If the company prepares a rental agreement through Rento, it contains your name and contact details and — where verification data is used to fill it — your identity document number, licence details, date of birth and address. Agreements are signed electronically through a signing service we run on our own server.
- Device and usage information
- Our servers log the IP address, the browser or app version and the time of requests. In the apps we store a notification token so we can send you booking notifications. We also count searches and car views to understand what people look for; those records carry a short-lived value derived from your IP address and browser rather than your name, and are not linked to your account.
4. Why we use it, and on what basis
- To provide what you asked for — creating your account, taking and confirming a booking, passing it to the rental company, taking the payment, carrying your messages, preparing an agreement. This is necessary to perform our contract with you.
- To keep the platform safe and working — preventing fraud and abuse, confirming a phone number is real, keeping logs, fixing faults, and answering support requests. This is our legitimate interest in running a service people can trust.
- To verify identity where a rental company requires it. We do this on the basis of your explicit consent for the biometric part, which you may withdraw at any time by deleting your verification in the app or on the website.
- To meet legal obligations — above all accounting and tax records of payments taken.
- To send you service messages about your bookings by email and, if you allow notifications, to your phone. We do not send marketing emails and we do not sell data to anyone.
5. Who else sees it
The rental company you book with sees what it needs to hand you a car: your name, email address and phone number, the booking, anything you wrote in the notes, and your messages with them. If you are a verified renter it also sees that you are verified, the country and categories of your licence, how long you have held it, an age band rather than your date of birth, and whether the name matches — never your documents.
A company can ask to see more of your identity details after an incident such as an accident or a theft. That request has to state a reason, a Rento administrator has to approve it, the access expires and is limited to a set number of views, and we email you when it is granted.
We use a small number of service providers, who act on our instructions and may not use your data for their own purposes:
- Supabase
- Our database, file storage and live updates.
- Hetzner Online GmbH (Germany)
- The servers that run our API and our document-signing service.
- Grafana Labs (data stored in Germany)
- Monitoring of our servers. Receives our server logs, which can include your account ID and IP address.
- Vercel
- Hosting for this website and the company dashboard.
- Paysera (Lithuania)
- Card and bank payments. Receives the amount, the booking description and your email address.
- Twilio (United States) and WhatsApp / Meta (Ireland, United States)
- Delivery of the code that confirms your phone number.
- Mailgun
- Delivery of our emails. Receives the address and the content of the message.
- Sign in with Google, and notifications to Android phones.
- Apple
- Sign in with Apple, and notifications to iPhones.
- OpenStreetMap Foundation
- Map tiles, and turning your location into an address when you press “Use my current location” on our website or in our apps. Your IP address reaches them when a map is shown; your coordinates only when you press that button, and they are not sent to us.
- komoot (Germany)
- Address suggestions on our website and in our apps (Photon, built on OpenStreetMap data). Receives what you type into an address field, and your IP address.
We also disclose data where the law requires it — for example to a court, the tax authority or the police acting on a lawful request — and to our professional advisers where needed to establish or defend a legal claim.
6. Where your data is held
Our API and signing servers are in the European Union. Our database, storage, website hosting, email, notification and payment providers are companies established in the European Economic Area or the United States, and some of them process data outside Kosovo.
Where data leaves Kosovo or the European Economic Area, it is protected by the transfer safeguards in our contracts with those providers — as a rule the European Commission’s standard contractual clauses.
7. How long we keep it
- Your account and its details: until you delete your account.
- Identity documents — the photographs of your ID, licence and selfie: 24 months from verification, then deleted automatically. A submission we reject is deleted straight away, and you can delete your verification yourself at any time.
- A confirmation that your phone number was checked: 4 months, after which we ask again.
- Bookings, payments and rental agreements: kept as records of a rental that happened, including for the accounting and tax periods the law requires. If you delete your account these stay with the rental company as its record, with your email address, phone number and the link to your account removed.
- Messages with a rental company and support requests: until you delete your account.
- Search and car-view records: up to 400 days. They are not linked to your account.
- Server logs: roughly 90 days.
- Backups of the signing service: 7 days.
When you delete your account we also keep, and cannot delete, a record of which documents were accessed and when — that record is what makes access to identity documents auditable, and it identifies the account only by a number that no longer maps to a person.
8. Your rights
- Ask for a copy of the personal data we hold about you.
- Have inaccurate data corrected — most of it you can edit yourself in Account.
- Delete your account, and with it everything described under “How long we keep it”. In the apps this is Account → Delete account; on the website it is in your account settings; or write to us.
- Withdraw a consent you gave, including consent to the biometric check, without affecting what was done before you withdrew it.
- Object to processing we carry out on the basis of our legitimate interests, and ask us to restrict processing while a dispute is looked at.
- Receive the data you gave us in a machine-readable form, or have it sent to another provider where that is technically possible.
Write to info@rento-ks.com and we will answer within 30 days. There is no charge. We may ask you to confirm who you are before we act, because these rights are worth nothing if anyone can use them on your behalf.
If you think we have handled your data badly, please tell us first — we would rather fix it. You can also complain to the Information and Privacy Agency of the Republic of Kosovo, and if you live in the European Union, to your national data-protection authority.
9. How we protect it
Everything travels over encrypted connections. Identity documents are encrypted individually before they are stored, with a key that is itself encrypted, so the files are useless on their own. Access to them is limited, logged, and shown to you on request. Passwords are stored in a form that cannot be reversed. The database enforces, row by row, who may read what — a rental company can only ever reach its own bookings.
No system is perfect. If a breach ever puts you at risk, we will tell you and the supervisory authority as the law requires.
11. Children
Rento is not for children. You must be at least 18 to have an account, and identity verification refuses anyone under 18. If you believe a child has given us personal data, write to us and we will delete it.
12. Changes to this policy
When we change this policy we update the date at the top. If a change materially affects you — a new purpose, a new recipient — we will tell you by email or in the app before it takes effect.
13. Contact
Rento24 GADI SH.P.K., business number (NUI) 812457390. Email info@rento-ks.com.