Privacy Policy

RTP Bookings is operated by RTP Bookings. Contact: support@rtpbookings.app.

What RTP Bookings does

RTP Bookings lets businesses ("Businesses") publish an online booking page and lets their customers ("Customers") book and pay for appointments. This policy explains what data we handle for each.

Data we collect from Businesses

  • Account details: name, email address, password (stored hashed), business name, contact details, address and business type you choose to enter.
  • Services, prices, opening hours and team members you configure.
  • Billing: your subscription is processed by Stripe. We store your Stripe customer and subscription identifiers, never your card number.

Google Calendar data

When a Business connects Google Calendar, we request the calendar.readonly and calendar.events scopes. We use them only to:

  • Read free/busy information from the calendars you select, so customers cannot book a time you are already busy. We do not read event titles, descriptions or attendees of your existing events, and we do not store your calendar contents.
  • Create, update and delete the calendar events that correspond to bookings made through RTP Bookings.

Your Google access and refresh tokens are stored encrypted at rest and are deleted when you disconnect Google Calendar or delete your account. We never sell, share or transfer Google user data to third parties, and we do not use it for advertising or to train machine-learning models. RTP Bookings's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Data we collect from Customers

  • Name, email address, optional phone number and notes entered when booking, plus the booking time and service.
  • Payment is processed by Stripe on the Business's connected Stripe account. We store the payment identifier, not card details.
  • Your browser timezone, used only to display times correctly.

Customer data is shared with the Business you booked with (it appears in their dashboard, their calendar and their confirmation emails) and with Stripe to take payment.

Emails

We send transactional emails only: booking confirmations, reminders, changes and cancellations, account and billing notices, and calendar-connection links to team members. We do not send marketing email.

Service providers

Stripe (payments and subscriptions), Google (calendar), our hosting provider, and our email delivery provider process data on our behalf under their own terms.

Retention and deletion

Booking records are kept while the Business's account is active so it can keep its history. A Business can disconnect Google Calendar at any time from Integrations, which deletes the stored tokens. To delete an account or a customer record, email support@rtpbookings.app and we will do so within 30 days.

Security

All traffic is encrypted with TLS. OAuth tokens are encrypted at rest. Access to production systems is restricted to the operator.

Changes

We will post any changes to this policy on this page. Last updated September 2026.