Privacy Policy
This Privacy Policy explains how YogaTherapyHub ("YogaTherapyHub", "we", "us", "our") collects, uses, discloses, and protects information when you use our website and services (the "Service").
1. Scope
This policy applies to information collected through the YogaTherapyHub Service. It does not cover third-party websites or services you may access through the Service (such as a payment processor or video meeting provider).
2. Information we collect
- Account information (e.g., name, email, authentication details).
- Business website content you upload or create (e.g., name, bio, images, contact details, availability settings).
- Client inquiry and booking information submitted through forms (e.g., name, email, message, appointment request details).
- Usage data (e.g., pages viewed, basic device/browser information, approximate location derived from IP address).
Note: Providers may choose to collect additional information from clients off-platform (e.g., intake forms). That collection is governed by the provider’s own policies.
3. Information we do not intentionally collect
- Payment card details: We do not store full payment card numbers, bank account numbers, or CVV codes on our servers.
- Sensitive health information: YogaTherapyHub is not intended for collecting or storing medical records. Please do not submit sensitive health information via public contact forms.
Providers may collect health or intake information separately as part of their professional services; that information is governed by the provider’s own policies.
4. How we use information
- Provide, operate, and maintain the Service.
- Facilitate account creation, login, and customer support.
- Enable providers to publish pages and receive inquiries/bookings.
- Process payments and subscriptions (typically through third parties).
- Improve the Service, prevent abuse, and secure our systems.
- Comply with legal obligations and enforce our Terms.
5. How information is shared
We may share information in the following ways:
- With providers: When a client submits an inquiry or booking request, the information is shared with the relevant provider so they can respond and deliver services.
- With service providers: We use vendors (e.g., hosting, analytics, email delivery, error monitoring, spam prevention) to operate the Service.
- With payment processors: If you subscribe or pay through the Service, payment processing is handled by a third party (e.g., Stripe), subject to their terms.
- For legal reasons: If required by law or to protect rights, safety, and security.
- Business transfers: If we undergo a merger, acquisition, or asset sale.
6. Cookies and similar technologies
We may use cookies and similar technologies to keep you signed in, remember preferences, measure performance, and help prevent spam/abuse.
7. Payment information (Stripe)
If you purchase a subscription or a provider accepts payments through the Service, payments are processed by third parties (for example, Stripe).
We do not store full payment card numbers or bank account details on our servers. We may store limited payment-related identifiers and status information such as your Stripe customer ID, subscription ID, and subscription status (for example, active or canceled) to operate billing, entitlements, and support.
8. Data minimization
We aim to collect and retain only the information reasonably necessary to provide and improve the Service, comply with legal obligations, and protect the Service from fraud and abuse.
9. Data retention
We retain information for as long as needed to provide the Service and for legitimate business or legal purposes (such as accounting, security, and dispute resolution).
Retention is applied by data category. Current default windows for user-relevant data include:
- Client inquiries and non-payment booking records: generally up to 12 months.
- Payment-linked booking and billing reference records (for disputes, fraud prevention, and accounting): generally up to 24 months.
- Subscription status and billing-reference records used for entitlement enforcement: generally up to 24 months after subscription end.
- Over-limit suspended website data: generally up to 30 days before purge.
We also keep limited operational event logs in rolling windows to maintain service reliability and security.
We may retain data longer when required by law, active dispute/abuse investigations, security incidents, or valid legal holds. After applicable retention windows, data is deleted or minimized according to our internal retention controls.
Deleted data may remain in limited-duration backup media until backup rotation completes.
10. Security
We use administrative, technical, and organizational measures designed to protect information. However, no method of transmission or storage is 100% secure.
If you believe you have found a security vulnerability, please report it responsibly (see our Security page).
11. Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, or object to certain processing of your personal information. You can also update some information in your account settings.
12. Children’s privacy
The Service is not intended for children under 13 (or under 16 in certain jurisdictions). We do not knowingly collect personal information from children.
13. International transfers
If you access the Service from outside our operating country, your information may be processed in other countries where data protection laws may differ.
14. Contact
To contact us about privacy, please use our contact page.
Last updated: 2026-02-28