Privacy Policy
Terminklick is an online platform that enables businesses to manage and accept appointments from their customers. This policy explains what personal data we collect, why we collect it, and how we protect it. It applies to business accounts that use our platform and to customers who book appointments through it. Terminklick is operated from Switzerland and primarily serves customers in Switzerland; this policy is therefore governed by the Swiss Federal Act on Data Protection (FADP). Where relevant, we also reference the EU General Data Protection Regulation (GDPR) below.
1. Controller
The data controller responsible for this platform is:
Laib Technologies GmbH
Martina-Hälg-Strasse 1
8590 Romanshorn, Schweiz
Privacy contact: info@terminklick.ch
2. Data We Collect
We collect the following categories of personal data:
- Business account data: business name, email address, postal address, phone number, and website URL provided at registration or in account settings.
- Customer booking data: first name, last name, email address, phone number, and any optional message provided when booking an appointment.
- Appointment details: date, time, service type, and assigned staff member for each booking.
- Technical data: IP address, browser type, and request timestamps recorded in server access logs.
- Session data: a session identifier stored in a strictly necessary cookie to keep you logged in.
3. Purpose and Legal Basis
We process personal data for the following purposes:
- Providing the booking service — to create, confirm, and manage appointments between businesses and their customers. Legal basis: performance of a contract (GDPR Art. 6(1)(b)).
- Sending transactional notifications — confirmation, cancellation, and reminder emails sent to customers and businesses. Legal basis: performance of a contract (GDPR Art. 6(1)(b)).
- Account management — to operate business accounts, authenticate users, and provide access to the dashboard. Legal basis: performance of a contract (GDPR Art. 6(1)(b)).
- Security and fraud prevention — to detect and prevent abuse, rate-limit requests, and maintain the integrity of the platform. Legal basis: legitimate interests (GDPR Art. 6(1)(f)).
We do not process personal data for advertising, profiling, or any purpose beyond operating the appointment management service.
4. Data Sharing and Third Parties
We share personal data only with the following categories of service providers, solely to the extent necessary to operate the platform:
- Email delivery provider: used to send booking confirmation and notification emails. Your name and email address are transmitted to deliver these messages.
- Hosting provider: the servers on which this platform runs. All data stored on the platform resides on these servers.
We do not sell personal data to any third party. We do not share data with advertising networks or analytics providers.
5. International Transfers
Where personal data is transferred to service providers outside the European Economic Area, we ensure an appropriate level of protection is in place through Standard Contractual Clauses or an applicable adequacy decision. Contact us at the address above for details of the specific safeguards applied.
6. Retention
- Customer booking PII (name, email, phone, message): automatically anonymised 30 days after the appointment takes place. The booking record itself (date, time, service) is retained for business accounting purposes.
- Business account data: retained for as long as the account is active. Deleted within 7 days of a verified account deletion request.
- Server access logs (IP address, user-agent, timestamps): retained for 30 days, then deleted automatically.
7. Cookies
We use the following cookies:
- Session cookie (
sessionid): strictly necessary. Keeps business users logged in to the dashboard. Expires at the end of the browser session or after 2 weeks, whichever comes first. - CSRF cookie (
csrftoken): strictly necessary. Protects forms against cross-site request forgery attacks. Not used for tracking.
We do not use analytics, advertising, or any non-essential cookies.
8. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you (Art. 15 GDPR)
- Correct inaccurate or incomplete data (Art. 16 GDPR)
- Request deletion of your data (Art. 17 GDPR)
- Restrict or object to certain processing (Art. 18 / 21 GDPR)
- Receive your data in a portable format (Art. 20 GDPR)
- Withdraw consent at any time, where processing is based on consent
- Lodge a complaint with your local supervisory authority
To exercise any of these rights, contact us at info@terminklick.ch. We will respond within 30 days.
9. Security
We protect personal data using industry-standard measures: all connections are encrypted in transit via HTTPS, passwords are stored as one-way hashes and never in plain text, and access to production systems is restricted to authorised personnel. No method of transmission or storage is completely secure; we cannot guarantee absolute security but we take reasonable precautions to minimise risk.
10. Children
This platform is not directed at children under the age of 16. We do not knowingly collect personal data from anyone under 16. If you believe we have inadvertently collected data from a child, please contact us and we will delete it promptly.
11. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated to registered business accounts via email and will be clearly noted at the top of this page with an updated date. Continued use of the platform after changes take effect constitutes acceptance of the revised policy.
12. Contact
For any privacy-related questions, requests, or complaints:
Laib Technologies GmbH
Martina-Hälg-Strasse 1, 8590 Romanshorn, Schweiz
info@terminklick.ch