Terms and Conditions

Last updated: April 5, 2026

These terms govern the subscription to and use of Vico, the digital check-in and virtual counter solution for car rental companies offered by Zentia Labs LLC.

Vico is a B2B SaaS product that enables car rental companies to digitize the vehicle pick-up process, biometric identity verification (KYC), electronic contract signing, damage inspection, and payment collection. Zentia Labs is not a car rental company and does not act as an intermediary between the operator and its end customers.

1. Service scope

Vico provides a digital check-in platform that includes: biometric KYC identity verification (identity document, selfie with liveness detection), generation and electronic signing of rental contracts, photographic vehicle damage inspection, payment charges and pre-authorizations, and integration with the operator reservation management system (RMS).

Available functionality depends on the subscribed plan, the product documentation, and any applicable master agreement or order form.

2. Eligible customer and authority

  • Vico is intended exclusively for car rental companies (rent-a-car) and industry professionals, not for consumers as the SaaS contracting party.
  • Anyone subscribing on behalf of an operator represents that they have sufficient authority to bind the relevant entity.
  • The operator must provide accurate information, keep it updated, and designate authorized users for service administration.

3. Account and implementation

  • The operator configures Vico and offers it to its end customers (travelers) as part of its vehicle pick-up process.
  • The operator is responsible for credential custody, user administration, and the use made of the service by its authorized users.
  • The operator is responsible for the configuration of its check-in flows, own legal texts, branding, and third-party accounts connected to the service.
  • If the operator integrates Vico with a third-party RMS (RaX, Karve, Wheelsys, or other), it must comply with the policies and technical requirements of that provider.

4. Data protection and roles

The operator (rental company) acts as data controller for the personal data of its end customers processed through Vico: identification data, biometric liveness data, damage photos, contract data, and payment data.

Zentia Labs acts as data processor for that operational data, under the operator documented instructions and the applicable data processing agreement.

Given the nature of biometric data (special category under GDPR Art. 9), the operator is responsible for obtaining explicit consent from the traveler for biometric liveness verification before starting the KYC process in Vico.

Zentia Labs acts as independent controller for B2B marketing, operator account onboarding, support, billing, security, and use of its own websites and admin portals.

5. Use of AI and human supervision

  • The identity verification (KYC) process uses liveness detection and facial matching algorithms that may produce false positives or false negatives.
  • Certain future features may incorporate AI-assisted damage detection; the operator will be informed before activation.
  • The operator is responsible for defining acceptance thresholds, reviewing borderline cases, and maintaining adequate human supervision in processes with contractual impact.
  • Zentia Labs does not guarantee that automated results will replace human review in every scenario.

6. Fees and billing

Vico offers the following plans:

  • Startup plan: free, up to 20 reservations per month.
  • Pro plan: EUR 0.90 per processed reservation.
  • Enterprise plan: custom terms by agreement.

Unless expressly stated otherwise, applicable taxes, duties, and regulatory charges are not deemed included. The current commercial terms are those communicated to the operator at the time of subscription or renewal.

7. Acceptable use

  • Do not use the service for illegal, fraudulent, or rights-infringing activities.
  • Do not attempt to bypass security controls, extract unauthorized data, degrade the platform, or interfere with normal operations.
  • Do not use Vico to collect biometric data for purposes other than identity verification in the context of a rental check-in.
  • Do not use the service to distribute unlawful, misleading, discriminatory, or abusive content.

8. Intellectual property and license

Zentia Labs products, software, documentation, interfaces, brands, and other product elements are owned by Zentia Labs LLC or its licensors.

The customer receives a limited, non-exclusive, revocable, and non-sublicensable license to use the service during the term of the commercial relationship and in accordance with the contract.

9. Confidentiality

Each party undertakes to protect the other party confidential information with a reasonable standard of care and to use it only for performance of the commercial or technical relationship.

10. Availability, maintenance, and changes

  • Zentia Labs will use commercially reasonable efforts to keep the service available, subject to maintenance, incidents, and third-party dependencies.
  • We may introduce improvements, functional changes, or technical adjustments where necessary for the product, security, or legal compliance.
  • Enhanced support commitments or SLA levels apply only where expressly agreed in writing.

11. Suspension and termination

  • The operator may stop using the service and request closure in accordance with the applicable contractual conditions.
  • Zentia Labs may suspend or limit access in cases of non-payment, security risk, unlawful use, material breach, or service protection needs.
  • After termination, access may be revoked and data will be handled in line with the contract, privacy policy, and applicable retention or deletion process.

12. Limitation of liability

To the maximum extent permitted by law, Zentia Labs will not be liable for indirect damages, loss of profit, loss of business, data loss not directly attributable to a breach by Zentia Labs, or outages caused by third parties outside its reasonable control.

Except where liability cannot lawfully be excluded, Zentia Labs aggregate liability arising out of the service is limited to the amounts actually paid by the customer during the 12 months preceding the event giving rise to the claim.

13. Governing law and contact

These terms will be interpreted under the governing law set out in the contractual documentation signed with the customer. In the absence of a specific agreement, the laws of the State of Wyoming, United States, will apply, subject to the competent courts of that territory unless mandatory law provides otherwise.

For legal, contractual, or privacy matters, contact info@virtual-counter.com.

14. Data Processing Agreement (DPA)

By accepting these Terms, the Operator (data controller) and Zentia Labs LLC (data processor) agree to the following conditions regarding the processing of personal data carried out in the context of providing Vico.

Scope and roles

Zentia Labs acts as data processor solely with respect to the operational data processed on behalf of the operator in the context of Vico. The operator retains its status as data controller over such data, including special category biometric data (GDPR Art. 9).

Data processed

  • Identity document photos (national ID, passport) and driver license.
  • Biometric liveness data: selfies, liveness scores, and facial match scores.
  • Vehicle damage photos.
  • Rental contract data: name, dates, vehicle, terms, electronic signature.
  • Payment data: pre-authorizations and charges processed via Stripe.
  • Usage metadata: timestamps, device, IP address, language.

Sub-processors

Zentia Labs uses the following sub-processors to deliver Vico:

  • Upstash — real-time cache and storage (Redis).
  • Google Cloud Platform — infrastructure, compute, and storage.
  • Stripe — payment processing and pre-authorizations.
  • Resend — transactional email (confirmations, notifications).
  • Brevo — CRM and B2B marketing email.

Security measures

  • Encryption in transit (TLS 1.3) and at rest.
  • Role-based access control with least-privilege principle.
  • Isolation and scheduled deletion of biometric data according to the retention policy.
  • Audit logs and security event monitoring.
  • Periodic review of sub-processors and vendors.

Retention and deletion

Biometric data is deleted once verification is complete, unless applicable law requires a longer period. Damage photos are retained for the duration of the contract plus the operator claims period. Operator account data is kept until a deletion request is made.

Upon request from the controller, Zentia Labs will delete the data within a maximum period of 30 days, except where legal retention obligations apply.

International transfers

Where sub-processors operate outside the European Economic Area, standard contractual clauses (SCCs) or other safeguards recognised under applicable law will be applied.

Breach notification

Zentia Labs will notify the operator of any security breach affecting personal data within a maximum of 72 hours from detection.

This data processing agreement is incorporated by reference into these Terms of Service. By accepting the Terms, the Operator also accepts the data processing conditions described herein.

Contact

Controller
Zentia Labs LLC, 30 N Gould St Ste N, Sheridan, WY 82801, USA