← Back to home

Privacy Policy

Last updated: May 2026

Who we are

NailIQ is a salon booking and operations platform operated from Vancouver, British Columbia, Canada. This policy explains what personal information we collect, how we use it, and your rights under Canada's Personal Information Protection and Electronic Documents Act (PIPEDA).

What we collect

  • Salon owner: phone number, salon name, business address, and opening hours.
  • Bookings: client first name, phone number, selected service, staff, and appointment time.
  • Account activity: sign-in events and basic usage logs needed for security and reliability.

Why we collect it

We use this information solely to provide the booking and walk-in queue service: showing your booking page to clients, confirming appointments, displaying the live receptionist dashboard, and enabling sign-in.

Where it is stored

Salon and booking data is stored in Supabase, a managed Postgres provider, in a US or Canadian data region. Phone verification (one-time codes) is sent through Twilio; the phone number is verified at sign-in but no SMS content is retained beyond the auth event.

Payment information

When a salon collects a deposit or keeps a card on file for a no-show fee, the payment is processed by Square or Stripe under their PCI-compliant systems. NailIQ never stores your full card number— only a payment token and the card's brand and last four digits (to show you which card is on file), plus a record that you consented and the policy you agreed to. You can remove a saved card at any time from the link in your booking confirmation. The salon is the merchant for these charges.

International storage & US residents

Some data is stored on servers located in the United States (Supabase, Vercel). By using NailIQ you consent to this cross-border transfer; while stored in the US, data may be subject to access under US law. If you are a California resident, you have rights under the CCPA/CPRA to know what we hold, request deletion, and opt out of any "sale" of personal information — we do not sell personal information. We will notify affected users and the relevant authorities of a privacy breach as required by law.

We do not sell your data

NailIQ does not sell, rent, or share salon or client data with third parties for marketing. The only third parties involved are infrastructure providers strictly required to run the service (Supabase for storage, Twilio for SMS, Vercel for hosting, Sentry for error monitoring).

Retention

Account and salon data is kept for as long as the account is active. If you ask us to delete your account, we will remove your salon data within 30 days, except where retention is required by law (for example, tax records).

Your rights under PIPEDA

You have the right to access the personal information we hold about you, correct it if inaccurate, and request its deletion. To exercise any of these rights, email privacy@nailiq.ca.

Commercial electronic messages (CASL)

Canada's Anti-Spam Legislation (CASL) governs commercial electronic messages sent to Canadian addresses. NailIQ sends transactional messages only — appointment confirmations, OTP codes, and service notifications required to operate your account. We do not send marketing or promotional emails unless you have expressly opted in. You may withdraw consent at any time by contacting privacy@nailiq.ca.

Quebec residents — Law 25 (Bill 64)

Quebec's Act respecting the protection of personal information in the private sector (Law 25) grants residents of Quebec additional rights, including the right to data portability, the right to be forgotten (de-indexation), and the right to be informed of any automated decision-making affecting you. NailIQ does not make automated decisions with legal or similarly significant effects on individuals. If you are a Quebec resident and wish to exercise any of these rights, contact our Privacy Officer at privacy@nailiq.ca. We will respond within the 30-day period prescribed by Law 25.

Our Privacy Officer is responsible for compliance with Law 25 and can be reached at the email above.

Contact

Privacy questions or requests: privacy@nailiq.ca