Version 1
Applicants, professionals, and operators must use personal, identity, client, and operational data only for legitimate BOOK'D purposes.
BOOK'D processes the minimum data needed for identity, eligibility, booking, payment, access, safety, support, and compliance. Sensitive identity capture requires a clear notice, purpose, retention statement, and recorded consent before provider session creation. Users must not export, scrape, sell, or misuse client or network data. Access is role-limited and auditable. Privacy requests and retention actions must follow the applicable jurisdictional process.
Evidence requirements
Signed consent and attestation records; privacy or retention task evidence when applicable.
Enforcement
Misuse may result in access restriction, data remediation, suspension, removal, and legally required reporting.
Applicability
Application type: professional · Mandatory: Yes
Application type: passport · Mandatory: Yes
Application type: operator · Mandatory: Yes
