Privacy Policy
Updated: 2026-09-13
1. Who is responsible for your data
The service is provided by Natalija Kozarová, Počátecká 1032/6, 140 00 Praha, Česká republika. Data protection enquiries: help@senivi.com.
The Terms of Service, accepted by the salon when the account is created, contain the data processing agreement required by Article 28 GDPR — no separate document needs to be signed.
Two situations differ. If you are a salon owner or employee with an account, we are the controller of your data. If you are a salon customer whose appointment was booked, the salon is the controller and we only process the data on its instructions — address your requests to the salon.
2. Data we process about accounts
For salon staff accounts:
- name, email address, phone number
- password — stored only as a hash; we cannot see or recover it
- role and the branches the account may access
3. Salon customer data
The salon enters its customers’ data to manage bookings:
- first and last name, phone, email
- date of birth and gender, if the salon fills them in
- Instagram handle, photo, preferred language
- notes and tags created by the salon
- visit history: services, specialist, time, payments, loyalty points
4. Purposes and legal bases
Account data is needed for sign-in, permissions and support — performance of a contract.
Customer data is processed on the salon’s instructions: to show the appointment, send confirmations and reminders, and calculate payments and reports.
Technical logs (request time, IP address, page address, response code) are kept for security and troubleshooting — our legitimate interest.
5. Who we share data with
We do not sell data and do not share it for advertising. Our processors:
- hosting, databases and files — Hetzner Online GmbH, Germany
- backups — Cloudflare R2, stored in the EU
- email delivery — Brevo (Sendinblue SAS, France)
- inbound mail to help@senivi.com — Cloudflare Email Routing
- push notifications — Apple (APNs) and Google (FCM)
We do not send SMS at present: the service has such a channel, but it is switched off in production and no SMS provider is involved. Should that change, we will update this list before any messages go out.
6. Retention and deletion
Data is kept while the account exists or until the salon deletes it.
You can delete your account in the app: Settings → Delete account. Access ends immediately and data is destroyed after 30 days. That window exists so an accidental tap can be undone — write to help@senivi.com before it closes.
If a salon owner deletes their account, the entire business is destroyed with it: customers, appointments, payments, cash register. The team loses access immediately.
Technical logs are kept for up to 30 days.
7. Your rights
You may request a copy of your data, correction, deletion or restriction, and object to processing. Write to help@senivi.com — we reply within 30 days.
If you are a salon customer, contacting the salon directly is faster: it decides what data about you is kept.
You may also lodge a complaint with your national data protection authority.
8. What is stored on your device
The service stores sign-in tokens on your device so you do not have to enter your password every time; in the app they are kept in the system’s secure storage. We do not install advertising or analytics trackers.
9. Changes
If this policy changes materially, we will notify you in the app or by email. The date of the last update is shown above.