Privacy Policy
Your privacy is important to us. This policy explains how GatiNOW collects, uses, and protects your personal data in compliance with GDPR and applicable EU data protection laws.
1. About GatiNOW
GatiNOW is an online scheduling and booking platform created and operated by Bremore Consulting Ltd, an Irish registered company.
Data Controller
Bremore Consulting Ltd
Ireland
Email:
This Privacy Policy explains how we collect, use, store, and protect your personal data when you use GatiNOW.
2. Data We Collect
We collect the following categories of personal data:
Account Information
Name, email address, profile photo, time zone, and account preferences.
Scheduling & Booking Data
Event types, availability settings, booking details, meeting preferences, and booking history.
Invitee (Guest) Data
Names, emails, phone numbers, booking responses, and any information submitted during scheduling. For invitee data, the host (GatiNOW user) is the data controller. GatiNOW processes this data on behalf of the host.
Calendar Integration Data
When you connect Google Calendar, Outlook, or other providers, we may access: free/busy information, event metadata (title, time, duration), and availability windows. We do not access or store event content unless explicitly required and consented.
Payment & Billing Data
Processed by Stripe, Revolut, and PayPal. We do not store card numbers or sensitive payment details. We may store billing addresses, transaction metadata, and payout information for compliance.
Communication Data
Email delivery logs, reminders, confirmations, and support messages (via Brevo and Zoho Mail).
Usage & Analytics Data
IP address, device type, browser, pages visited, interactions, and performance metrics (via Google Analytics).
3. How We Use Your Data
We use your data to:
- •Provide and improve the GatiNOW platform
- •Enable scheduling, booking, and calendar syncing
- •Send confirmations, reminders, and service notifications
- •Process payments and payouts
- •Provide customer support
- •Improve performance, security, and user experience
- •Comply with legal and regulatory obligations
- •Send marketing communications (only with consent)
4. Legal Basis for Processing
Under GDPR, we process your data based on:
- •Contract: To provide scheduling and booking services
- •Consent: Marketing emails, optional integrations
- •Legitimate Interests: Fraud prevention, analytics, service improvement
- •Legal Obligation: Tax, accounting, compliance requirements
5. Third Party Service Providers
We share data only with trusted processors who support our operations.
Core Processors
Stripe / Revolut / PayPal
Payments & payouts - Billing info, transaction metadata
Brevo (Sendinblue)
Transactional emails - Email address, message metadata
Zoho Mail
Support communications - Support messages
Google Calendar / Outlook
Calendar sync - Availability, event metadata
Zoom / Google Meet / Teams
Meeting link generation - Event details (minimal)
Hosting Providers (Vercel/Render/Neon/Cloudinary)
Platform hosting - Account & operational data
Google Analytics
Usage analytics - Device, IP, interaction data
All processors are bound by GDPR compliant data protection agreements.
6. International Data Transfers
Some processors operate outside the EEA. Transfers are protected using:
- •Standard Contractual Clauses (SCCs)
- •Adequacy decisions
- •GDPR approved safeguards
7. Data Retention
We retain data only as long as necessary:
- •Account Data: Active account + 30 days after deletion
- •Booking Data: Retained for service history (configurable)
- •Invitee Data: Retained as long as the host maintains it
- •Payment Records: 7 years (legal requirement)
- •Email Logs: 12–24 months
- •Analytics Data: Per provider defaults (typically 14–26 months)
8. Cookies & Tracking
We use cookies to operate and improve the platform.
Types of Cookies
- •Essential Cookies: Authentication, session management, security
- •Analytics Cookies: Google Analytics
- •Preference Cookies: Language, time zone
- •Marketing Cookies: Used only with consent
9. Security Measures
We implement industry standard protections:
- •TLS/SSL encryption
- •Encryption at rest (AES-256)
- •Role based access control (RBAC)
- •Audit logging
- •Regular security reviews
- •Incident response procedures
- •Least privilege access for staff
10. Your Rights
Under GDPR, you have the right to:
- •Access your data
- •Correct inaccurate data
- •Request deletion
- •Restrict processing
- •Object to processing
- •Withdraw consent
- •Request data portability
- •Lodge a complaint with the Irish Data Protection Commission
To exercise your rights:Email
11. Children's Privacy
GatiNOW is not intended for users under 16. If we discover such data, we delete it promptly.
12. Changes to This Policy
We may update this policy. Material changes will be communicated via:
- •In-app notifications
- •Updated date on this page
13. Contact Us
Bremore Consulting Ltd
Email: