Privacy Policy
Digital Resources SRL — Park2Go Mobile Application
Last updated: April 15, 2026 Effective date: April 15, 2026
1. Introduction
Digital Resources SRL ("we," "us," or "our") operates the Park2Go mobile application ("App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you use our App.
By creating an account or using the App, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the App.
Digital Resources SRL is the data controller responsible for your Personal Data. We are committed to compliance with the Republic of Moldova's Law No. 195 on Personal Data Protection (2024) and the General Data Protection Regulation (GDPR) where applicable.
This Privacy Policy is available at https://park2go.io/privacy-policy and within the App under Settings → Privacy Policy.
2. Definitions
- "Customer" — a registered user who searches for and books parking spaces through the App.
- "Provider" — the owner or operator of a parking location listed on the App.
- "Booking" — a confirmed reservation of a parking space for a specified time period.
- "Personal Data" — any information that directly or indirectly identifies a natural person.
- "Service" — all features and functionality provided through the Park2Go App.
3. Data We Collect
3.1 Information You Provide Directly
| Data Category | Specific Data | Purpose |
|---|---|---|
| Account Information | Full name, email address, password (stored as a cryptographic hash) | Account creation and authentication |
| Profile Information | Phone number, country code, date of birth, profile photo | User identification, customer support, age verification |
| Vehicle Information | Make, model, year, license plate number, color, vehicle type | Booking management and parking access |
| Booking Details | Selected parking location, check-in/check-out times, notes | Service delivery and booking management |
| Reviews & Ratings | Star ratings, written comments, uploaded images | Community feedback and quality assurance |
| Customer Support Messages | Chat messages, attachments | Issue resolution and support |
3.2 Information Collected Automatically
| Data Category | Specific Data | Purpose |
|---|---|---|
| Location Data | GPS coordinates (when permission granted) | Displaying nearby parking on the map, navigation |
| Device Information | Device type, operating system, app version | Technical support, compatibility, analytics |
| Usage Data | Features accessed, search queries, interaction timestamps | Service improvement and troubleshooting |
| Authentication Tokens | Access and refresh tokens (stored securely on-device) | Maintaining your logged-in session |
3.3 Information from Third Parties
| Source | Data | Purpose |
|---|---|---|
| Google OAuth | Name, email address (from your Google account) | Simplified account creation and login |
| Payment Processor | Transaction status, payment confirmation (we do NOT store full card numbers) | Processing payments for bookings |
4. How We Use Your Data
We process your Personal Data for the following purposes and legal bases:
4.1 Contract Performance (Art. 6(1)(b) GDPR)
- Creating and managing your account
- Processing and managing parking bookings
- Facilitating check-in/check-out at parking locations
- Processing payments and issuing receipts
- Communicating booking confirmations, reminders, and status updates
- Enforcing penalties and community standards (see Sections 10 and 11)
4.2 Legitimate Interest (Art. 6(1)(f) GDPR)
- Improving App functionality and user experience
- Preventing fraud, abuse, and unauthorized access
- Maintaining platform safety and enforcing our Terms of Service
- Aggregated analytics to improve parking availability data
4.3 Legal Obligation (Art. 6(1)(c) GDPR)
- Tax and financial record-keeping
- Responding to lawful requests from authorities
- Compliance with Moldova's Law No. 195 on Personal Data Protection
4.4 Consent (Art. 6(1)(a) GDPR)
- Sending promotional communications (you may opt out at any time)
- Using your precise location while the App is in use
- Biometric authentication (fingerprint/face recognition for app login)
- Push notifications (you may revoke this permission at any time through your device settings)
4.5 Automated Decision-Making Certain actions within the App may involve automated processing, such as automatic booking expiration (when a Customer does not check in within 30 minutes) and automated penalty escalation for repeated violations (see Sections 10 and 11). These automated decisions are based on objective, clearly defined rules described in this policy. You have the right to request human review of any automated decision that significantly affects you by contacting us at contact@park2go.io.
5. Data Sharing and Disclosure
We share your Personal Data only in the following circumstances:
5.1 Between Customers and Providers When you make a booking, the Provider receives your name, vehicle information (make, model, license plate), and booking time. This is necessary to grant you access to the parking facility. Providers do NOT receive your email, phone number, date of birth, or payment details.
5.2 Service Providers (Data Processors) We engage third-party service providers who process data on our behalf under Data Processing Agreements (DPAs) compliant with GDPR Article 28:
- Cloud Hosting (AWS) — data storage and infrastructure
- Payment Processor — payment transaction processing (PCI-DSS compliant; they operate under their own privacy policy, which will be linked at checkout)
- Mapbox — map display and geolocation services (receives anonymized location queries)
- Email Service Provider — transactional emails (booking confirmations, password resets)
- Google OAuth — authentication services
These processors may use sub-processors. A current list of sub-processors is available upon request at contact@park2go.io.
5.3 Legal Requirements We may disclose your data if required by law, in response to valid legal process, or to protect the rights, property, or safety of Digital Resources SRL, our users, or the public.
5.4 Business Transfers In the event of a merger, acquisition, or sale of all or a portion of our assets, your Personal Data may be transferred as part of that transaction. We will notify you via email or a prominent notice in the App prior to your data being subject to a different privacy policy.
We do NOT sell your Personal Data to third parties.
6. Data Storage and Security
6.1 Storage Location Your data is stored on servers within the European Union (AWS eu-north-1 region, Stockholm, Sweden).
6.2 Security Measures We implement appropriate technical and organizational measures to protect your data, including:
- Passwords hashed with Argon2 (industry-standard cryptographic hashing)
- Authentication tokens stored in secure device keychain (not in plain storage)
- HTTPS/TLS encryption for all data in transit
- Role-based access controls for internal systems
- Separate database architecture isolating user identity, booking, and parking data
6.3 Data Breach Notification In the event of a personal data breach, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach, in accordance with GDPR Article 33. If the breach is likely to result in a high risk to your rights and freedoms, we will also notify affected users without undue delay, providing details of the nature of the breach, the likely consequences, and the measures taken to address it.
7. Data Retention
We retain your Personal Data for as long as your account is active or as needed to provide you with our services. Specific retention periods:
| Data Type | Retention Period |
|---|---|
| Account data | Duration of account + 30 days after deletion request |
| Booking history | 3 years after booking completion (for legal/tax purposes) |
| Payment transaction records | 5 years (legal/tax obligations) |
| Customer support messages | 1 year after resolution |
| Reviews | Until deleted by you or your account is removed |
| Location data | Not stored on our servers; used only in real-time |
After the applicable retention period, data is permanently deleted or irreversibly anonymized.
8. Your Rights
Under Moldova's data protection law and the GDPR (where applicable), you have the following rights:
- Access — Request a copy of the Personal Data we hold about you.
- Rectification — Request correction of inaccurate or incomplete data.
- Erasure ("Right to be Forgotten") — Request deletion of your Personal Data, subject to legal retention obligations.
- Restriction — Request that we limit processing of your data in certain circumstances.
- Data Portability — Receive your data in a structured, machine-readable format.
- Objection — Object to processing based on legitimate interest.
- Withdraw Consent — Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
How to exercise your rights:
- In-app: Settings → Profile → Delete Account
- Email: contact@park2go.io
- We will respond to your request within 30 days.
Account Deletion: You may delete your account at any time through the App or by contacting us. Upon deletion, we will erase your Personal Data except where retention is required by law (see Section 7). We also provide account deletion through a web-based process accessible at https://park2go.io/delete-account.
9. Children's Privacy
The App is not intended for use by individuals under the age of 18. We do not knowingly collect Personal Data from children under 18. If we become aware that we have collected data from a child under 18, we will take steps to delete such information promptly. If you believe that we have inadvertently collected data from a child, please contact us at contact@park2go.io.
10. Provider Obligations and Penalties
10.1 Availability Guarantee
Providers who list parking spaces on Park2Go commit to making those spaces available during the times and dates for which Customers have confirmed bookings. By listing a parking space, the Provider agrees to the following obligations:
A 15-minute buffer period is automatically applied between consecutive bookings. During this buffer, the Provider must ensure the parking slot is vacated, clean, and ready for the next customer. This buffer is managed by the platform and cannot be modified by the Provider.
10.2 Failure to Provide Booked Parking
If a Provider fails to make a booked parking space available at the reserved time ("No-Show by Provider"), the following consequences apply:
First offense:
- The Customer receives a full refund for the affected booking.
- The Provider receives a formal warning and the incident is recorded on their account.
- The Provider is charged a compensation fee equal to 100% of the booking value, which is credited to the affected Customer as platform credit.
Second offense (within 12 months):
- Full refund to the Customer.
- Compensation fee of 150% of the booking value credited to the Customer.
- The Provider's listing is temporarily suspended for 7 days.
- The Provider must acknowledge updated availability before reactivating their listing.
Third offense (within 12 months):
- Full refund and 200% compensation to the Customer.
- Provider's listing is suspended for 30 days.
- Manual review by Park2Go before the listing can be reinstated.
Fourth or more offenses (within 12 months):
- Full refund and 200% compensation to the Customer.
- Permanent removal of the Provider's listing.
- Potential account termination (see Section 11).
10.3 Customer No-Shows
If a Customer fails to arrive at the booked parking space within 30 minutes of the reserved check-in time without cancelling the booking:
- The booking is marked as expired.
- The Customer is charged the full booking amount (no refund).
- The parking space is released and made available to other users.
10.4 Late Cancellations
- Cancellations made more than 2 hours before check-in: Full refund.
- Cancellations made between 30 minutes and 2 hours before check-in: 50% refund.
- Cancellations made less than 30 minutes before check-in: No refund.
11. Community Standards and Anti-Social Behavior
Park2Go is committed to maintaining a safe, respectful, and reliable community for all users. The following actions constitute anti-social behavior and are subject to disciplinary action:
11.1 Prohibited Conduct
- Fraudulent bookings — creating bookings with no intention of using them, or using stolen payment credentials.
- Harassment or abuse — threatening, insulting, or otherwise harassing other users, Providers, or Park2Go staff through reviews, messages, or in-person interactions.
- Fraudulent reviews — posting fake, misleading, or defamatory reviews, or offering/accepting compensation for reviews.
- Vandalism or property damage — damaging parking facilities, equipment, or other vehicles.
- Repeated no-shows — consistently failing to honor bookings without cancellation (3 or more within 60 days).
- Circumventing the platform — arranging off-platform transactions to avoid fees or accountability.
- Identity fraud — using false information to create accounts or impersonating another person.
- Discrimination — refusing service or leaving reviews based on race, ethnicity, religion, gender, sexual orientation, disability, or other protected characteristics.
- Spam and automated abuse — using bots, scripts, or automated tools to interact with the platform, or sending unsolicited messages through the customer support chat.
11.2 Escalation and Consequences
We apply a graduated enforcement approach:
Level 1 — Warning: A written notice is sent to the user's registered email. The incident is recorded. The user must acknowledge the warning within 7 days.
Level 2 — Temporary Suspension: The user's account is suspended for 14 to 30 days, depending on the severity of the offense. During suspension, the user cannot create bookings, leave reviews, or access platform features. Active bookings at the time of suspension may be honored at our discretion.
Level 3 — Account Deletion and Ban: For repeated or severe violations, the user's account will be permanently deleted. A permanent ban is applied, preventing the individual from creating new accounts. Bans are enforced through a combination of email, device, and payment method identifiers. Any outstanding balances or credits are forfeited.
11.3 Severe Violations
The following offenses may result in immediate Level 3 action (account deletion and ban) without prior warnings:
- Use of stolen payment credentials or financial fraud.
- Threats of physical violence.
- Vandalism resulting in significant property damage.
- Identity fraud.
- Any activity that violates applicable law.
11.4 Appeals
Users who believe a disciplinary action was applied in error may submit an appeal to contact@park2go.io within 14 days of the action. Appeals are reviewed by a member of the Park2Go team not involved in the original decision. The outcome of the appeal will be communicated within 30 days.
12. Location Services
The App uses your device's GPS to show nearby parking locations on an interactive map. Location data is processed in real-time and is not stored on our servers. You may revoke location permission at any time through your device's settings, though this will limit the App's ability to show you nearby parking options.
13. Biometric Data
If you enable fingerprint or face recognition login, biometric data is processed entirely on your device using your device's built-in secure hardware (e.g., Android Keystore). We do not collect, transmit, or store your biometric data on our servers.
14. Cookies and Similar Technologies
The App does not use browser cookies. We use secure on-device storage (encrypted keychain for tokens, local storage for preferences) to maintain your session and settings.
15. International Data Transfers
Your data is primarily stored within the EU (Sweden). If we need to transfer data outside the EU/EEA, we will ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission, or transfer to countries with an adequacy decision.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new Privacy Policy in the App and, where appropriate, sending you an email notification. Your continued use of the App after the effective date of the revised Privacy Policy constitutes your acceptance of the changes.
17. Limitation of Liability and Disclaimer
17.1 Platform Role
Park2Go operates as a marketplace platform that connects Customers with Providers of parking spaces. Digital Resources SRL does not own, operate, or manage any parking facilities listed on the App. We do not guarantee the accuracy, completeness, or reliability of any listing information provided by Providers, including but not limited to parking space descriptions, photographs, availability, dimensions, accessibility features, or security measures.
17.2 No Guarantee of Safety or Condition
Digital Resources SRL does not inspect, verify, or certify the physical condition, safety, or suitability of any parking location listed on the App. We make no representations or warranties, express or implied, regarding the safety, security, cleanliness, structural integrity, or fitness for purpose of any parking facility. Users park their vehicles at their own risk.
17.3 Limitation of Liability for Damages
To the maximum extent permitted by applicable law, Digital Resources SRL shall not be liable for any direct, indirect, incidental, consequential, or special damages arising from or in connection with the use of the Service, including but not limited to:
- Theft, vandalism, or damage to vehicles or personal property while parked at a Provider's facility.
- Personal injury occurring on or near a Provider's premises.
- Loss or damage resulting from inaccurate listing information provided by a Provider.
- Any dispute between a Customer and a Provider regarding the condition or availability of a parking space.
- Force majeure events, including but not limited to natural disasters, civil unrest, or government actions that affect access to a parking facility.
17.4 Dispute Reporting
All disputes between Customers and Providers regarding service quality, listing accuracy, or platform-related issues should be reported to Park2Go through the in-app customer support chat or by emailing contact@park2go.io. We will make reasonable efforts to mediate such disputes, but we are not obligated to resolve them.
17.5 Physical Damage and Criminal Matters
Any incidents involving physical damage to property, personal injury, theft, or any other matter of a criminal nature must be reported to the relevant national authorities (police, emergency services) by the affected party. Park2Go may cooperate with law enforcement investigations upon receipt of a valid legal request but is not a substitute for emergency services or law enforcement.
18. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please contact us:
Digital Resources SRL Email: contact@park2go.io Appeals: contact@park2go.io
Supervisory Authority: If you are not satisfied with our response, you have the right to lodge a complaint with the National Center for the Protection of Personal Data of the Republic of Moldova (https://datepersonale.md). If you are located in an EU/EEA member state, you may also lodge a complaint with the supervisory authority in the country where you reside or work.
19. Governing Law
This Privacy Policy is governed by the laws of the Republic of Moldova. Any disputes arising from or in connection with this Privacy Policy shall be subject to the exclusive jurisdiction of the courts of the Republic of Moldova.