Privacy Policy

Effective Date: August 1, 2026 • Last Updated: August 13, 2026

1. Introduction

TymeFlow ("we", "our", or "us") is committed to protecting the privacy and security of your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you visit our website, register an account, or use our appointment scheduling platform, hosted booking pages, and embedded widgets.

2. Information We Collect

We collect information directly provided by merchants, staff members, and booking clients, as well as telemetry generated automatically during platform usage:

  • Merchant Account Data: Business name, owner email address, phone number, physical address, staff names, and service details.
  • Client Booking Information: Client full name, phone number, email address, appointment date/time, selected service, and optional notes provided during booking.
  • Payment Information: Transaction tokens processed through integrated third-party payment gateways (e.g., PayHere, Stripe). We do not store raw credit card numbers on our servers.
  • Technical Data: IP address, browser type, device identifiers, and system access logs collected automatically for security auditing and performance monitoring.

3. How We Use Your Information

We utilize collected data solely to deliver, maintain, and enhance our services:

  • To facilitate appointment reservations, staff scheduling, and service confirmation notifications via SMS and email.
  • To provide customer support and process business registration and transaction service charges.
  • To detect, investigate, and prevent fraudulent transactions or security violations.
  • To analyze platform usage trends and optimize application performance and UI responsiveness.

4. Data Protection & Security

We implement industry-standard administrative, physical, and technical safeguards to protect your personal data. All network communication with TymeFlow servers is encrypted using Transport Layer Security (TLS 1.3). Database records are stored securely with role-based access control and encrypted backups.

5. Third-Party Data Sharing

We do not sell, rent, or trade personal information or client booking lists to advertisers. We share data only with trusted service providers necessary for platform operation (e.g., cloud hosting providers, SMS delivery gateways, and payment processors) under strict confidentiality agreements.

6. Your Rights & Data Choices

Depending on your jurisdiction, you have the following rights regarding your personal information:

  • The right to access and request a copy of your personal data stored on TymeFlow.
  • The right to correct or update inaccurate account information through your merchant dashboard.
  • The right to request permanent deletion of your account and client data ("Right to be Forgotten").
  • The right to opt out of promotional marketing messages at any time.

7. Cookies & Tracking

We use essential session cookies and local storage tokens to maintain user authentication and preserve site preferences (such as selected language). We do not utilize third-party cross-site tracking cookies.

8. Contact Our Privacy Officer

If you have any questions or privacy concerns regarding this policy, please contact our Data Protection Officer at tymeflowlk@gmail.com.