Legal Document

Privacy Policy

Last updated: January 28, 2026

Introduction

Welcome to Carimeet. We respect your privacy and are committed to protecting your personal data. This privacy policy will inform you about how we look after your personal data when you visit our website and use our services, and tell you about your privacy rights and how the law protects you.

Data Controller

The data controller responsible for your personal data is Carimeet. For any questions regarding the protection of your data, you can contact us at the address provided at the end of this document.

Information We Collect

Personal Information

When you use our booking services, we may collect the following information:

  • Name and contact information (email, phone number)
  • Booking details (date, time, service selected)
  • Payment information (processed securely through our payment provider)
  • Account credentials if you create an account
  • Any additional information you provide in notes or messages

Automatically Collected Information

  • IP address and browser type
  • Device information
  • Pages visited and time spent on pages
  • Referring website addresses

Legal Basis for Processing

In accordance with GDPR, we process your personal data on the following legal bases:

  • Contract performance: processing bookings, managing your account, providing the service
  • Consent: sending marketing communications, using non-essential cookies
  • Legitimate interest: improving our services, fraud prevention, service security
  • Legal obligation: retention of accounting data, responding to authority requests

How We Use Your Information

We use your personal information to:

  • Process and manage your bookings
  • Send you booking confirmations, reminders, and updates
  • Process payments securely
  • Respond to your inquiries and provide customer support
  • Improve our services and user experience
  • Send you marketing communications (with your consent)
  • Comply with legal obligations

Data Sharing and Disclosure

We do not sell your personal data. We may share your information with:

  • Service Providers: Calendar owners and service providers you book with
  • Payment Processors: Stripe to process transactions securely
  • Email Service Providers: To send booking confirmations and notifications
  • Analytics Providers: To understand how our service is used
  • Legal Requirements: When required by law or to protect our rights

Data Security

We implement appropriate technical and organizational security measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes encryption of data in transit (HTTPS/TLS), secure password storage (hashing), servers hosted in the European Union, and regular security assessments.

Data Retention

We retain your personal data for the following periods:

  • Account data: retained for the duration of your account, then 3 years after closure
  • Booking data: 3 years after the booking date (accounting obligations)
  • Payment data: 10 years (French legal requirements)
  • Navigation data (logs): 13 months maximum
  • Marketing consents: until consent is withdrawn, then 3 years

Upon expiration of these periods, your data is deleted or irreversibly anonymized.

Your Rights

Under GDPR and applicable data protection laws, you have the following rights:

  • Right to Access: Obtain a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing of your data, particularly for marketing purposes
  • Right to Withdraw Consent: Withdraw your consent at any time for processing based on consent

To exercise any of these rights, please contact us at the email address provided below. We will respond to your request within one month.

Complaint to Supervisory Authority

If you believe that the processing of your personal data constitutes a violation of GDPR, you have the right to lodge a complaint with the French Data Protection Authority (CNIL): www.cnil.fr. If you reside in another EU country, you may also contact your local data protection authority.

Cookies

We use cookies and similar tracking technologies. Essential cookies are necessary for the website to function. Analytics cookies help us understand service usage. You can manage your preferences through our cookie banner or your browser settings. For more information, see our cookie consent banner.

International Data Transfers

Your data is primarily processed within the European Union. If a transfer to a third country is necessary (for example, for certain subcontractors), we ensure that appropriate safeguards are in place (EU Standard Contractual Clauses, adequacy decisions).

Children's Privacy

Our services are not intended for persons under 16 years of age. We do not knowingly collect personal information from minors under 16. If you are a parent and find that your child has provided us with personal data, please contact us.

Changes to This Policy

We may update this privacy policy from time to time. In case of substantial changes, we will notify you by email or through a notification on the Service before the changes take effect. The "Last updated" date at the top of this page indicates the date of the last revision.

Contact Us

If you have any questions about this privacy policy or our data practices, please contact us at:

Email: support@carimeet.fr

Website: https://carimeet.fr