Privacy Policy
Last updated: January 28, 2026
Introduction
Welcome to Carimeet. We respect your privacy and are committed to protecting your personal data. This privacy policy will inform you about how we look after your personal data when you visit our website and use our services, and tell you about your privacy rights and how the law protects you.
Data Controller
The data controller responsible for your personal data is Carimeet. For any questions regarding the protection of your data, you can contact us at the address provided at the end of this document.
Information We Collect
Personal Information
When you use our booking services, we may collect the following information:
- Name and contact information (email, phone number)
- Booking details (date, time, service selected)
- Payment information (processed securely through our payment provider)
- Account credentials if you create an account
- Any additional information you provide in notes or messages
Automatically Collected Information
- IP address and browser type
- Device information
- Pages visited and time spent on pages
- Referring website addresses
Legal Basis for Processing
In accordance with GDPR, we process your personal data on the following legal bases:
- Contract performance: processing bookings, managing your account, providing the service
- Consent: sending marketing communications, using non-essential cookies
- Legitimate interest: improving our services, fraud prevention, service security
- Legal obligation: retention of accounting data, responding to authority requests
How We Use Your Information
We use your personal information to:
- Process and manage your bookings
- Send you booking confirmations, reminders, and updates
- Process payments securely
- Respond to your inquiries and provide customer support
- Improve our services and user experience
- Send you marketing communications (with your consent)
- Comply with legal obligations
Data Sharing and Disclosure
We do not sell your personal data. We may share your information with:
- Service Providers: Calendar owners and service providers you book with
- Payment Processors: Stripe to process transactions securely
- Email Service Providers: To send booking confirmations and notifications
- Analytics Providers: To understand how our service is used
- Legal Requirements: When required by law or to protect our rights
Data Security
We implement appropriate technical and organizational security measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes encryption of data in transit (HTTPS/TLS), secure password storage (hashing), servers hosted in the European Union, and regular security assessments.
Data Retention
We retain your personal data for the following periods:
- Account data: retained for the duration of your account, then 3 years after closure
- Booking data: 3 years after the booking date (accounting obligations)
- Payment data: 10 years (French legal requirements)
- Navigation data (logs): 13 months maximum
- Marketing consents: until consent is withdrawn, then 3 years
Upon expiration of these periods, your data is deleted or irreversibly anonymized.
Your Rights
Under GDPR and applicable data protection laws, you have the following rights:
- Right to Access: Obtain a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing of your data, particularly for marketing purposes
- Right to Withdraw Consent: Withdraw your consent at any time for processing based on consent
To exercise any of these rights, please contact us at the email address provided below. We will respond to your request within one month.
Complaint to Supervisory Authority
If you believe that the processing of your personal data constitutes a violation of GDPR, you have the right to lodge a complaint with the French Data Protection Authority (CNIL): www.cnil.fr. If you reside in another EU country, you may also contact your local data protection authority.
Cookies
We use cookies and similar tracking technologies. Essential cookies are necessary for the website to function. Analytics cookies help us understand service usage. You can manage your preferences through our cookie banner or your browser settings. For more information, see our cookie consent banner.
International Data Transfers
Your data is primarily processed within the European Union. If a transfer to a third country is necessary (for example, for certain subcontractors), we ensure that appropriate safeguards are in place (EU Standard Contractual Clauses, adequacy decisions).
Children's Privacy
Our services are not intended for persons under 16 years of age. We do not knowingly collect personal information from minors under 16. If you are a parent and find that your child has provided us with personal data, please contact us.
Changes to This Policy
We may update this privacy policy from time to time. In case of substantial changes, we will notify you by email or through a notification on the Service before the changes take effect. The "Last updated" date at the top of this page indicates the date of the last revision.
Contact Us
If you have any questions about this privacy policy or our data practices, please contact us at:
Email: support@carimeet.fr
Website: https://carimeet.fr