Legal

Privacy Policy

Last updated 2026-08-12

Morning Tree Resort ("we", "us", "our") operates a booking and hotel management system used to handle reservations, check-in and check-out, billing, and guest communication for our property. This policy explains what information we collect through that system, how we use it, and the choices available to you.

Information we collect

  • Guest contact details provided at booking or check-in: full name, phone number, email address, nationality, and a copy of a government-issued ID document where required by law.
  • Booking and stay records: reservation dates, room assignment, number of guests, special requests, and check-in / check-out history.
  • Payment records: amount, currency, payment method, receipt number, and (for bank transfers) the transaction reference number. We do not store full payment-card numbers.
  • Communications that you send to the resort (phone, email, Telegram, or messaging platforms), and any notes our staff record about your stay.
  • Staff account data for internal users of the system: username, role, and activity logs used for operations, security, and payroll.

How we use your information

  • Manage reservations, check-in, room assignment, billing, and receipts.
  • Communicate with you about your booking, stay, or requests.
  • Comply with guest registration and tax obligations under Cambodian law.
  • Internal reporting on occupancy, revenue, and guest satisfaction.
  • Protect the security and integrity of the system (fraud prevention, audit logs).

Sharing

We do not sell personal data. We share information only with: (a) payment providers and banks to process and verify transactions; (b) government authorities where required by law, including guest registration with the immigration and tourism authorities; and (c) messaging providers such as Telegram, Facebook or Instagram, only when you choose to contact us through them.

Retention

Booking, financial, and tax records are retained for the period required by Cambodian hospitality and tax law. Guest profiles are kept to recognise returning guests and can be archived on request. Internal communications and activity logs are kept for a reasonable operational period and then removed.

Security

Access to the system is restricted to authorised staff by role-based permissions. Data is transmitted over encrypted connections (HTTPS/TLS), and sensitive settings are stored as encrypted secrets. Payment-card numbers are never stored in full.

Your rights

You may request access to, correction of, or deletion of your personal data by emailing gm@morningtreeresort.com. See our Data Deletion Instructions for the step-by-step process. We will respond within a reasonable timeframe, subject to records we are legally required to keep.

Contact

Morning Tree Resort
gm@morningtreeresort.com