Privacy Policy

Last updated: April 2026

1. Information We Collect

Provider Information

When you create an account, we collect:

  • Email address and password (password is hashed, never stored in plain text)
  • Business name, your name, bio, city, and timezone
  • Profile photo (stored in secure cloud storage)
  • Service details (names, prices, durations)
  • Availability schedule

Client Information

When a client makes a booking, we collect:

  • Name and email address
  • Optional message to the provider
  • Booking details (date, time, service selected)

Clients do not need to create an account to make a booking.

Payment Information

Payment processing is handled entirely by third-party processors (Stripe or PayPal). BookSimple does not collect, store, or have access to credit card numbers or bank account details. We only store transaction reference IDs for record-keeping.

2. How We Use Your Information

We use collected information to:

  • Provide and operate the booking service
  • Send booking confirmations and notifications via email
  • Display provider profiles on public booking pages
  • Process cancellations and manage appointments
  • Improve the Service and fix issues

We do not sell your personal information to third parties. We do not send marketing emails unless you explicitly opt in.

3. Data Storage and Security

Your data is stored securely using Supabase (hosted on AWS infrastructure). We use industry-standard security measures including encrypted connections (TLS/SSL), hashed passwords, and row-level security policies on our database. Profile photos are stored in encrypted cloud storage.

4. Data Sharing

We share your information only with:

  • Supabase — database and authentication hosting
  • Resend — transactional email delivery
  • Stripe / PayPal — payment processing (when enabled)
  • Vercel — application hosting

These providers process data on our behalf and are bound by their own privacy policies.

5. Cookies

We use essential cookies only for authentication (keeping you logged in). We do not use tracking cookies, analytics cookies, or advertising cookies.

6. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate information via your dashboard settings
  • Delete your account and all associated data
  • Export your booking data

To exercise these rights, contact us at support@booksimple.toolstackos.dev.

7. Data Retention

We retain your data for as long as your account is active. When you delete your account, we delete all your personal data, provider profile, services, and booking history within 30 days. Anonymized, aggregated data may be retained for analytics purposes.

8. Children's Privacy

BookSimple is not intended for use by individuals under the age of 16. We do not knowingly collect personal information from children.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users of material changes via email. Continued use of the Service after changes constitutes acceptance.

10. Contact

For privacy-related questions or requests, contact us at support@booksimple.toolstackos.dev.