1. Overview
Discretion is the foundation of everything Salon Privé does. That principle extends to how we handle data. We collect only what is necessary to operate the platform safely and legally, we do not sell or share your information for commercial purposes, and we build our systems to minimise data exposure by design.
This policy explains what information [ENTITY NAME] collects, why we collect it, and how it is used and protected.
2. Information We Collect
We collect the following categories of information:
- Account information: Your email address and your chosen member handle. A real name is not required.
- Booking details: Session date, time, location, package selection, and add-ons associated with each booking you make.
- Payment method type: We record the payment method category used (e.g. cryptocurrency). Full card numbers and financial account details are processed by our payment provider and are never stored on our systems.
- IP address: Logged at the time of age attestation and at each sign-in, for legal compliance and fraud prevention.
- Session cookies: A short-lived authentication cookie to keep you signed in, and an age-attestation cookie to avoid repeating the entry gate on return visits.
- Membership application responses: The answers you provide during the membership application process, used solely for reviewing your application.
3. What We Do Not Collect
We have deliberately chosen not to collect the following:
- Phone numbers — we operate email-only. Phone numbers deanonymise members.
- Legal or real names — your handle is your identity on the platform.
- Precise geolocation — we detect your state for legal compliance only; we do not track your precise location.
- Third-party advertising or analytics pixels on authenticated member pages.
- Social media profile data or third-party login tokens.
4. How We Use Your Information
We use the information we collect for the following purposes:
- To create and manage your account and membership status.
- To process and confirm bookings and communicate booking details to you.
- To verify your age and eligibility to access the platform.
- To comply with applicable legal requirements, including state-level access restrictions.
- To detect and prevent fraud, abuse, and violations of our Terms of Service.
We do not sell your personal information. We do not use your information for advertising, profiling, or any purpose unrelated to operating the platform.
5. Venue Address Disclosure
Venue addresses are among the most sensitive pieces of information on this platform. Full addresses are stored in a restricted database table accessible only to members with a confirmed, approved booking at that location.
When you request an address reveal, it is delivered through a secure, authenticated endpoint. The revealed address is watermarked with your member handle and the time of disclosure. This is a practical deterrent against redistribution — it is not a guarantee of security. You are contractually obligated not to share venue addresses under our Terms of Service.
6. Data Retention
We retain your personal information for as long as your membership is active. If you close your account, we retain minimal records as required by law:
- Booking records: [X years]
- Age attestation and access logs: [X years]
- Account data: Deleted within [X days] of account closure, except where retention is legally required.
7. Cookies
We use two first-party cookies:
- Authentication cookie: Set on sign-in. Expires at session end or after a fixed period of inactivity. Required to use the platform.
- Age attestation cookie: Set when you confirm you are 18+ at the site entry gate. Prevents the gate from re-appearing on subsequent visits.
We do not use third-party advertising cookies, tracking pixels, or cross-site analytics on any authenticated page.
8. Third-Party Services
We share limited data with the following third-party services solely to operate the platform:
- Supabase: Our database and authentication provider. Account, booking, and session data is stored on Supabase infrastructure. Supabase privacy policy: supabase.com/privacy.
- [PAYMENT PROCESSOR]: Processes payment transactions. We do not receive or store full payment details. [Link to payment processor privacy policy.]
We do not share your information with any other third party except as required by law or with your explicit consent.
9. Your Rights
You have the right to access the personal information we hold about you, to request corrections to inaccurate data, and to request deletion of your account and associated personal data subject to our legal retention obligations.
To exercise any of these rights, contact us at [LEGAL@SALONPRIVE.COM]. We will respond within [X business days]. We may need to verify your identity before processing a request.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify active members of material changes via email or a notice on the platform. The effective date at the top of this page reflects when the current version took effect.
11. Contact
Privacy-related enquiries should be directed to [ENTITY NAME] at [LEGAL@SALONPRIVE.COM].