Trust & security
Last updated: 27 August 2026 · Contact: hello@sesion.org
Quick answer: everything runs over TLS on Cloudflare with data stored in the EU, our emails are DKIM-authenticated from mail.sesion.org, and our advice is independent — shortlists are never paid placements.
1. Infrastructure
sesion.org runs on Cloudflare Workers with data in Cloudflare D1 (EU region). All traffic is encrypted with TLS. The admin area is protected by authenticated sessions and server-side secrets.
2. Email you can trust
Every email we send comes from our authenticated domain mail.sesion.org (SPF, DKIM and DMARC in place). If an email claims to be Sesion and comes from anywhere else, forward it to hello@sesion.org.
3. Independence
Our business is helping hotels choose well, not selling software. Shortlists are built per hotel; vendors cannot buy a place on them. When you ask us to exclude a vendor, we exclude it.
4. Data minimalism
We collect only what a session needs and delete it on request. Details in the privacy policy.
5. Report a concern
Security issue or something that looks wrong? Write to hello@sesion.org. We read everything.