Privacy Policy
Last updated September 11, 2026
BackBooked is a customer follow-up and rebooking management tool for service businesses. This policy explains what information is handled when a business owner uses BackBooked, why it is handled, who it is shared with, and the choices available.
Who is responsible for this service
BackBooked is operated by Kevin Alston, a sole proprietor based in North Carolina, United States. Privacy questions and requests can be sent through the support request form.
Information business owners provide about themselves
When an owner creates an account and completes setup, BackBooked stores an email address and password credentials, the business name, owner name, business type, business phone number, and business location, plus the services offered and their recommended return intervals.
Information business owners provide about their customers
Owners enter customer records themselves. These may include a customer's first and last name, phone number, email address, free-text notes, completed service visits and their dates and amounts, follow-up messages drafted or sent by the owner, and rebookings and their amounts.
BackBooked processes this information on the owner's behalf. The owner decides what is entered and remains responsible for it.
Information collected automatically
Basic technical information needed to run and secure the service — such as sign-in session records, request and error logs, and the timestamps attached to records — is generated as the app is used.
Why this information is processed
- To create and secure the account and keep an owner signed in.
- To store services, customers, visits, follow-ups, and rebookings.
- To calculate when a customer is due to return and to draft suggested messages.
- To show revenue associated with confirmed rebookings.
- To take payment for the subscription and issue invoices and receipts.
- To respond to support requests and account-deletion requests.
- To detect, prevent, and investigate abuse, fraud, and technical faults.
- To meet legal, tax, and accounting obligations.
Service providers and payment processing
BackBooked relies on third-party providers to operate. Information necessary for those purposes is processed by them:
- Hosting, database, and authentication providers store account credentials, sessions, and all application records, and run the servers that deliver the app.
- Stripe handles subscriptions, payments, billing, invoices, receipts, and payment fraud prevention. Card details are entered directly with Stripe and are never stored by BackBooked. Stripe receives the billing information needed to process a subscription and applies its own privacy terms.
Providers may be located in other countries, and information may be processed there. Information may also be disclosed where required by law or to protect legal rights.
BackBooked does not sell personal information
BackBooked does not sell personal information about business owners or their customers, and does not share it for cross-context behavioural advertising.
Owner responsibility for customer information
Business owners are responsible for having the authority and any required permission to enter, store, and use their customers' information in BackBooked, and for following the marketing, privacy, and messaging laws that apply to them. BackBooked does not send messages on an owner's behalf: Copy Message and Text Customer only prepare text that the owner chooses to send.
Retention and account deletion
Records are kept for as long as the account is open, so that history and due dates stay accurate. An owner can edit or delete individual services, customers, visits, follow-ups, and rebookings at any time from inside the app.
A full account-deletion request can be submitted from Settings. Requests are handled manually by the operator. Some information may be retained after deletion where required for legal, tax, accounting, or fraud-prevention reasons — for example, payment and invoice records held by the payment processor.
Security
Reasonable technical and organisational measures are used to protect information, including encrypted connections, per-account database access rules that prevent one account from reading another's records, server-side verification of payment events, and payment card handling delegated entirely to the payment processor. No online service can guarantee absolute security, and no such guarantee is made here.
Cookies and session technology
BackBooked uses only the storage needed to make the app work. A sign-in session token is kept in the browser so an owner stays logged in; the payment processor sets its own cookies inside the checkout and billing portal for security and fraud prevention. No advertising or cross-site tracking cookies are used. Clearing browser storage signs the owner out.
Privacy rights and how to make a request
Depending on where an owner lives, they may have the right to request a copy of their information, correct it, delete it, restrict or object to certain processing, ask for portability, or withdraw consent. Requests can be made from Settings, or through the support request form. Identity may need to be verified before a request is completed, and a response will be provided within the timeframe required by applicable law.
Where a request concerns a business owner's own customers, the owner is the party responsible for responding; BackBooked will assist the owner where it can.
Children
BackBooked is a business tool and is not directed to children. Accounts should not be created by anyone under the age of majority in their jurisdiction.
Changes to this policy
If this policy changes, the updated version will be posted here with a new last-updated date.
Contact
Privacy questions and requests can be sent through the support request form, and are handled by Kevin Alston.
