Legal
Privacy Policy
Last updated: March 24, 2026
Bookably App Inc. ("Bookably," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform, website, and services (collectively, the "Service").
1. Information We Collect
1.1 Information You Provide
- Account information: Name, email address, business name, phone number, and billing details when you register or subscribe
- Business data: Service offerings, pricing, provider schedules, and location information you configure in the platform
- Communications: Messages, support requests, and feedback you send to us
- Beta signup data: Email addresses submitted through our beta signup form
1.2 Information from Integrations
When you connect third-party scheduling platforms (e.g., MindBody, Mariana Tek, Square Appointments), we receive booking data including appointment times, service types, provider names, and client identifiers (typically hashed or anonymized). We only access the data necessary to provide our demand forecasting and pricing services.
1.3 Automatically Collected Information
- Device and browser data: IP address, browser type, operating system, and device identifiers
- Usage data: Pages visited, features used, click patterns, and session duration
- Cookies and similar technologies: As described in our Cookie Policy
2. How We Use Your Information
We use collected information to:
- Provide, operate, and maintain the Service
- Generate AI-powered pricing recommendations and demand predictions
- Process transactions and send related information (confirmations, invoices)
- Send administrative communications (service updates, security alerts, policy changes)
- Respond to your requests, comments, and support inquiries
- Analyze usage patterns to improve and optimize the Service
- Train and improve our machine learning models using aggregated, de-identified data
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations
3. Legal Bases for Processing (GDPR)
If you are located in the European Economic Area (EEA) or United Kingdom, our legal bases for processing your personal data include:
- Contract performance: Processing necessary to provide the Service you requested
- Legitimate interests: Improving our Service, preventing fraud, and ensuring security
- Consent: Where you have given explicit consent (e.g., marketing communications)
- Legal obligation: Where processing is required by law
4. How We Share Your Information
We do not sell your personal information. We may share information with:
- Service providers: Third-party vendors who assist in operating the Service (hosting, analytics, payment processing), bound by data processing agreements
- Integration partners: Third-party scheduling platforms, only to the extent necessary for the integration to function
- Legal requirements: When required by law, regulation, legal process, or governmental request
- Business transfers: In connection with a merger, acquisition, or sale of assets, with notice to affected users
- With your consent: For any purpose you have explicitly approved
5. Data Retention
We retain your personal data for as long as your account is active or as needed to provide the Service. After account termination, we retain data for up to 30 days to allow for export, after which it is deleted or anonymized. We may retain certain data longer where required by law or for legitimate business purposes (e.g., resolving disputes, enforcing agreements).
6. Data Security
We implement industry-standard technical and organizational measures to protect your data, including:
- Encryption in transit (TLS 1.2+) and at rest (AES-256)
- Access controls and role-based permissions
- Regular security assessments and monitoring
- Secure cloud infrastructure (Vercel, Supabase/AWS)
No method of transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data, subject to legal retention requirements
- Portability: Request your data in a structured, machine-readable format
- Restriction: Request that we limit processing of your data
- Objection: Object to processing based on legitimate interests
- Withdraw consent: Where processing is based on consent, withdraw at any time
To exercise these rights, contact us at support@feltsense.com. We will respond within 30 days (or as required by applicable law).
8. California Privacy Rights (CCPA/CPRA)
California residents have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA), including the right to know what personal information is collected and shared, the right to delete, the right to opt out of the sale or sharing of personal information, and the right to non-discrimination. We do not sell personal information. To submit a request, contact us at support@feltsense.com.
9. International Data Transfers
Your data may be transferred to and processed in the United States or other countries where our service providers operate. We ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission, where applicable.
10. Children's Privacy
The Service is not directed to individuals under 18 years of age. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child, we will delete it promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or through the Service at least 30 days before they take effect. The "Last updated" date at the top reflects the most recent revision.
Contact
For privacy-related inquiries, contact us at support@feltsense.com.
Bookably App Inc.
Email: support@feltsense.com