Privacy Policy
Last Updated: November 10, 2025
1. Introduction
BookNex Solutions (“we,” “us,” “our”) is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our booking and appointment management system at https://booknexsolutions.com (the “Service”).
By using BookNex Solutions, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, please do not use our Service.
2. Information We Collect
2.1 Information You Provide to Us
When you use our booking system, we collect information that you voluntarily provide, including:
- Account Information: Name, email address, phone number, business name, business address, and password
- Booking Information: Appointment details, service selections, preferred dates and times, special requests, and booking history
- Customer Information: Information about your customers when you manage bookings on their behalf, including names, contact details, and appointment preferences
- Payment Information: Billing addresses and transaction details (payment card information is processed directly by our payment partners and not stored on our servers)
- Profile Information: Business descriptions, service offerings, staff information, location details, and business hours
- Communication Data: Messages, feedback, support requests, and correspondence with our team
2.2 Information Automatically Collected
When you access our Service, we automatically collect certain information, including:
- Technical Information: IP address, browser type, device information, operating system, and access times
- Usage Data: Pages visited, features used, booking interactions, time spent on pages, and clickstream data
- Cookies and Tracking Technologies: Information collected through cookies, web beacons, and similar technologies (see Section 9 for details)
2.3 Information from Third-Party Sources
We may receive information from third-party services you choose to integrate with BookNex, including:
- Google Calendar synchronization data
- Payment processor transaction confirmations
- Social media profile information (if you choose to connect social accounts)
- Communication platform data (WhatsApp, SMS, Email services)
3. How We Use Your Information
We use the collected information for the following purposes:
3.1 Providing and Managing Our Service
- Processing and managing appointments and bookings
- Enabling communication between businesses and their customers
- Providing customer support and responding to inquiries
- Managing user accounts and preferences
- Facilitating payment processing and financial transactions
3.2 Service Improvement and Analytics
- Analyzing usage patterns to improve our Service
- Developing new features and functionality
- Conducting research and statistical analysis
- Troubleshooting technical issues and bugs
3.3 Communication and Marketing
- Sending appointment confirmations, reminders, and updates
- Providing important service announcements and updates
- Sending promotional materials and newsletters (with your consent)
- Responding to your questions and requests
3.4 Security and Legal Compliance
- Protecting against fraud, abuse, and security threats
- Complying with legal obligations and regulations
- Enforcing our Terms of Service and policies
- Resolving disputes and investigating complaints
4. Booking Data Handling
4.1 Business User Data
When you use BookNex as a business owner or staff member, we act as a data controller for your business account information. You maintain control over your booking settings, availability, and business preferences.
4.2 End Customer Data
For data related to your customers (appointment bookings, contact information, booking history), you act as the data controller, and BookNex acts as a data processor. You are responsible for:
- Obtaining necessary consents from your customers
- Providing privacy notices to your customers
- Ensuring lawful processing of customer data
- Responding to customer privacy requests
4.3 Booking Information Shared
Booking information is shared only with:
- The business providing the service
- The customer who made the booking
- Necessary service providers (payment processors, communication services)
- Legal authorities when required by law
5. Payment Information Security
5.1 Payment Processing
BookNex integrates with certified payment processors to handle financial transactions securely. We do NOT store your complete payment card information on our servers. Payment data is processed directly by:
- PayPal: Subject to PayPal’s Privacy Policy
- Stripe: Subject to Stripe’s Privacy Policy
- Square: Subject to Square’s Privacy Policy
- WooCommerce Payment Gateways: Subject to respective gateway policies
5.2 PCI DSS Compliance
Our payment partners are PCI DSS (Payment Card Industry Data Security Standard) compliant, ensuring that your payment information is handled with the highest security standards. We maintain PCI compliance through:
- Using tokenization for payment processing
- Implementing secure transmission protocols (SSL/TLS)
- Never storing complete payment card details
- Regular security audits and monitoring
5.3 Transaction Records
We retain transaction records including:
- Transaction IDs and confirmation numbers
- Transaction amounts and dates
- Payment status and refund information
- Billing addresses (not complete card numbers)
6. Data Retention
6.1 Retention Periods
We retain your information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law:
- Active Account Data: Retained for the duration of your active subscription
- Booking Records: Retained for 7 years for business and tax compliance purposes
- Payment Transaction Records: Retained for 7 years to comply with financial regulations
- Customer Communication: Retained for 3 years or as required by law
- Support Tickets: Retained for 3 years for quality assurance
- Marketing Data: Retained until you withdraw consent or unsubscribe
- Inactive Accounts: Data may be deleted after 2 years of inactivity following notification
6.2 Data Deletion
You may request deletion of your data at any time (subject to legal retention requirements). Upon account deletion:
- Personal information is permanently deleted within 30 days
- Booking records required for legal compliance are anonymized
- Financial transaction records are retained as required by law
- Backup copies are purged within 90 days
7. Third-Party Integrations
BookNex integrates with various third-party services to provide enhanced functionality. When you enable these integrations, information is shared with these services according to their respective privacy policies:
7.1 Calendar Integrations
- Google Calendar: Syncs appointment data, availability, and scheduling information
- Outlook Calendar: Syncs appointment data and availability
- iCal: Exports calendar data in standard format
Privacy Policies: Google, Microsoft
7.2 Payment Processors
- PayPal: Processes online payments and manages transaction data
- Stripe: Processes credit card payments and manages payment tokens
- Square: Processes payments for US-based businesses
- WooCommerce: Provides access to additional payment gateway options
Privacy Policies: PayPal, Stripe, Square, WooCommerce
7.3 Communication Services
- Email Services: Sends appointment confirmations, reminders, and notifications
- SMS Providers: Delivers text message notifications and reminders
- WhatsApp Business API: Sends booking confirmations via WhatsApp
- Telegram: Sends admin/staff notifications about new bookings
7.4 Meeting Platforms
- Zoom: Creates and manages virtual meeting rooms for online appointments
- VivoMeetings: Provides video conferencing for remote appointments
Privacy Policies: Zoom
7.5 Analytics and Performance
- Google Analytics: Tracks website usage and user behavior (anonymized)
- Performance monitoring tools to ensure service reliability
Important: We recommend reviewing the privacy policies of all third-party services you choose to integrate with BookNex.
8. Your Privacy Rights
8.1 GDPR Rights (European Economic Area)
If you are located in the EEA, you have the following rights under the General Data Protection Regulation (GDPR):
- Right to Access: Request a copy of the personal data we hold about you
- Right to Rectification: Request correction of inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data (subject to legal retention requirements)
- Right to Restrict Processing: Request limitation of how we process your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests or for direct marketing
- Right to Withdraw Consent: Withdraw consent for data processing at any time
- Right to Lodge a Complaint: File a complaint with your local data protection authority
8.2 CCPA Rights (California Residents)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to Know: Request information about the personal data we collect, use, and disclose
- Right to Delete: Request deletion of your personal data (subject to exceptions)
- Right to Opt-Out: Opt-out of the sale of personal information (we do not sell personal data)
- Right to Non-Discrimination: Exercise your privacy rights without discriminatory treatment
8.3 Other Privacy Rights
Regardless of your location, you have the right to:
- Access and update your account information at any time
- Opt-out of marketing communications
- Disable cookies through your browser settings
- Request information about data sharing practices
- Close your account and request data deletion
8.4 Exercising Your Rights
To exercise any of your privacy rights, please contact us at:
- Email: support@booknexsolutions.com
- Subject Line: “Privacy Rights Request”
We will respond to your request within 30 days (or as required by applicable law). We may need to verify your identity before processing your request to ensure data security.
9. Cookies and Tracking Technologies
9.1 What Are Cookies
Cookies are small text files stored on your device that help us provide and improve our Service. We use both session cookies (which expire when you close your browser) and persistent cookies (which remain until deleted or expired).
9.2 Types of Cookies We Use
Essential Cookies (Required)
- Authentication Cookies: Remember your login status
- Security Cookies: Detect authentication abuse and protect user accounts
- Session Management: Maintain your session while using the Service
Functionality Cookies
- Preference Cookies: Remember your settings and preferences
- Language Settings: Store your preferred language
- Display Settings: Remember your interface customizations
Analytics Cookies
- Usage Analytics: Understand how users interact with our Service
- Performance Monitoring: Track page load times and technical performance
- Error Tracking: Identify and fix technical issues
Marketing Cookies (With Consent)
- Advertising Cookies: Deliver relevant advertisements
- Conversion Tracking: Measure marketing campaign effectiveness
9.3 Managing Cookies
You can control cookies through your browser settings:
- Block all cookies
- Accept only certain cookies
- Delete existing cookies
- Receive notifications before cookies are stored
Note: Disabling essential cookies may affect Service functionality.
9.4 Other Tracking Technologies
- Web Beacons: Small graphics used to track page views and email opens
- Local Storage: Stores data locally on your device for enhanced functionality
- Analytics Scripts: Collect information about how you use our Service
10. Data Security
10.1 Security Measures
We implement industry-standard security measures to protect your information:
- Encryption: All data transmitted is encrypted using SSL/TLS protocols
- Secure Storage: Data at rest is encrypted using AES-256 encryption
- Access Controls: Strict role-based access controls and authentication
- Regular Audits: Periodic security assessments and penetration testing
- Monitoring: 24/7 system monitoring for suspicious activity
- Backup Systems: Regular encrypted backups stored securely
- Secure Infrastructure: Enterprise-grade servers with 99.9% uptime
- Employee Training: Staff trained on data protection and security protocols
10.2 Data Breach Protocol
In the event of a data breach that affects your personal information:
- We will notify affected users within 72 hours of discovery
- We will inform relevant data protection authorities as required
- We will provide information about the nature and extent of the breach
- We will outline steps taken to mitigate harm and prevent future breaches
10.3 Your Security Responsibilities
You can help protect your account by:
- Using a strong, unique password
- Enabling two-factor authentication if available
- Not sharing your login credentials
- Logging out after using shared devices
- Reporting suspicious activity immediately
11. International Data Transfers
BookNex Solutions may transfer, store, and process your information in countries other than your country of residence. When we transfer data internationally, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses approved by the European Commission
- Data Processing Agreements with service providers
- Adequacy decisions where applicable
- Your explicit consent for transfers when required
12. Children’s Privacy
BookNex Solutions is not intended for use by children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have inadvertently collected information from a child under 16, please contact us immediately, and we will take steps to delete such information.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes:
- We will update the “Last Updated” date at the top of this policy
- For material changes, we will provide prominent notice on our website
- For significant changes, we may notify you via email
- Your continued use of the Service after changes constitutes acceptance
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
BookNex Solutions
Email: support@booknexsolutions.com
Website: https://booknexsolutions.com
Data Protection Officer
For GDPR-related inquiries, you may contact our Data Protection Officer at: support@booknexsolutions.com
EU Representative
If you are located in the European Economic Area and have concerns about our data practices, you have the right to lodge a complaint with your local data protection authority.
15. Additional Information for Specific Regions
15.1 European Economic Area (EEA)
Legal Basis for Processing: We process your personal data based on:
- Contract Performance: Processing necessary to provide our Service
- Legitimate Interests: Improving our Service, fraud prevention, security
- Legal Compliance: Meeting legal and regulatory requirements
- Consent: Marketing communications and optional features
15.2 California Residents
Do Not Sell My Personal Information: We do not sell personal information to third parties. We share information only as described in this Privacy Policy for operational purposes.
California “Shine the Light” Law: California residents may request information about disclosure of personal information to third parties for direct marketing purposes.
15.3 Nevada Residents
Nevada residents have the right to opt-out of the sale of certain personal information. We do not sell personal information as defined under Nevada law.
15.4 Other Regions
If you are located in a region with specific data protection laws not mentioned here, we will comply with applicable local regulations.
16. Business Changes
In the event of a merger, acquisition, bankruptcy, or sale of assets, your personal information may be transferred to the acquiring entity. We will notify you via email and/or prominent notice on our website before your information becomes subject to a different privacy policy.
Your privacy matters to us. We are committed to maintaining the trust you place in BookNex Solutions by handling your information responsibly and transparently.
Last Updated: November 10, 2025