Last updated: August 2026
Haila ("we", "us", "our") operates a community-focused hospitality platform connecting diners, venues, advertisers, and partners. This page explains how we govern data, secure our platform, and handle payments. Our governance model assigns clear ownership for data, payments, and vendor relationships, and is overseen by the founding team.
We apply reasonable technical and organisational measures to protect your information:
Payments on Haila (including bookings, ticketing, and Hail It Forward) are processed through Stripe. We do not collect, store, or transmit card numbers on our own systems — card data is handled directly by Stripe, a PCI-DSS Level 1 certified payment provider. Venue owners connect their own Stripe Connect account to receive payouts.
We are working toward recognised security and trust frameworks. Our controls are aligned with common best practices, and we are progressing toward formal SOC 2 Type II assessment. We do not currently hold SOC 2, ISO 27001, or PCI-DSS certifications in our own name; where certification status is relevant, we will state it plainly and not overstate our position.
Our handling of personal information is described in our Privacy Policy. We retain data only for as long as your account is active or as needed to provide services, and you may request deletion of your account and associated data.
We monitor for security events and have a process to investigate and respond to incidents. If you believe you have identified a security vulnerability or a data incident, please report it to us promptly so we can investigate and take appropriate action.
For security, compliance, or data governance enquiries, please contact us through our website at neatsocials.co.nz.