Privacy Policy
Last updated: April 2026
1. Information We Collect
Provider Information
When you create an account, we collect:
- Email address and password (password is hashed, never stored in plain text)
- Business name, your name, bio, city, and timezone
- Profile photo (stored in secure cloud storage)
- Service details (names, prices, durations)
- Availability schedule
Client Information
When a client makes a booking, we collect:
- Name and email address
- Optional message to the provider
- Booking details (date, time, service selected)
Clients do not need to create an account to make a booking.
Payment Information
Payment processing is handled entirely by third-party processors (Stripe or PayPal). BookSimple does not collect, store, or have access to credit card numbers or bank account details. We only store transaction reference IDs for record-keeping.
2. How We Use Your Information
We use collected information to:
- Provide and operate the booking service
- Send booking confirmations and notifications via email
- Display provider profiles on public booking pages
- Process cancellations and manage appointments
- Improve the Service and fix issues
We do not sell your personal information to third parties. We do not send marketing emails unless you explicitly opt in.
3. Data Storage and Security
Your data is stored securely using Supabase (hosted on AWS infrastructure). We use industry-standard security measures including encrypted connections (TLS/SSL), hashed passwords, and row-level security policies on our database. Profile photos are stored in encrypted cloud storage.
4. Data Sharing
We share your information only with:
- Supabase — database and authentication hosting
- Resend — transactional email delivery
- Stripe / PayPal — payment processing (when enabled)
- Vercel — application hosting
These providers process data on our behalf and are bound by their own privacy policies.
5. Cookies
We use essential cookies only for authentication (keeping you logged in). We do not use tracking cookies, analytics cookies, or advertising cookies.
6. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate information via your dashboard settings
- Delete your account and all associated data
- Export your booking data
To exercise these rights, contact us at support@booksimple.toolstackos.dev.
7. Data Retention
We retain your data for as long as your account is active. When you delete your account, we delete all your personal data, provider profile, services, and booking history within 30 days. Anonymized, aggregated data may be retained for analytics purposes.
8. Children's Privacy
BookSimple is not intended for use by individuals under the age of 16. We do not knowingly collect personal information from children.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users of material changes via email. Continued use of the Service after changes constitutes acceptance.
10. Contact
For privacy-related questions or requests, contact us at support@booksimple.toolstackos.dev.