Privacy and Data Protection Policy
Last updated: July 21, 2026
1. Identification of the Controller and Regulatory Coverage
The processing of personal data within the platform is carried out by Tindari Inc., a C-Corporation incorporated under the laws of the State of Delaware, United States, with registered office at 131 Continental Dr, Suite 305, Newark, DE 19713, United States, privacy contact email: legal@tindari.com. This policy has been drafted rigorously to simultaneously comply with the data protection regulations applicable in your country, the General Data Protection Regulation (GDPR - EU Regulation 2016/679) for the European market, and the Lei Geral de Proteção de Dados (LGPD - Law No. 13,709) for the Brazilian market.
2. Strict Delimitation of Legal Roles (Controller vs. Processor)
For the correct application of international privacy regulations, the parties agree to the following division of legal responsibilities:
- Tindari as Data Controller: Tindari Inc. acts in this capacity solely and exclusively with respect to the data collected for the creation and maintenance of the Client's commercial account (names of business administrators, corporate access emails of technical staff, logical usage audit logs, technical cookies and commercial billing data).
- Tindari as Data Processor: With respect to the databases of end users and patients that the Client collects, uploads, manages and stores within the software (names, phone numbers, emails, appointments, deposits, aesthetic notes, allergies and formulas), Tindari Inc. acts in the strict legal capacity of Data Processor. Tindari Inc. will process this information only to comply with the Client's logical instructions through the execution of the software, having no commercial exploitation rights over such data. The Client is the sole and exclusive "Data Controller" with respect to their own end users and patients.
3. Types of Data Processed
The platform collects and processes four specific categories of technical and commercial information:
- Account Data: Full names, email addresses, contact phone numbers, business names, roles assigned to staff and encrypted authentication credentials.
- Billing and Transaction Data: Payment information processed externally and directly by the authorized gateway. Tindari Inc. does not store or view full credit card numbers or security codes on its servers.
- Establishment Operational Data: End-client records, historical appointment records, service logs, product inventory and schedule settings.
- Technical Usage Data: Connection IP addresses, access device types, operating systems, error logs and behavior metrics within the platform for optimization purposes.
4. Processing of Sensitive Data and Aesthetic Care Records
In the field of comprehensive aesthetics, cosmetology and micropigmentation, it is common to store operational notes revealing skin conditions, allergies, medical contraindications or prior physiological conditions. The Client acknowledges that Tindari is a general-purpose technological storage environment and does not constitute an approved public-health medical record system. The Client assumes the absolute legal obligation to obtain the prior, express, informed and written consent of their end clients and patients to record any data of a sensitive nature, fully releasing Tindari Inc. from any infringement arising from the automated custody of such information on its servers.
5. Legal Purposes of Processing
Tindari Inc. lawfully processes personal data on the bases of contractual performance, legitimate interest and compliance with legal obligations, for the following purposes:
- Provide, maintain, back up and optimize the interface and the logical functions of the software.
- Manage technical support services, code incident resolution and Client care.
- Ensure the physical and logical security of the infrastructure through the detection of fraud or abusive use.
- Process commercial subscriptions and charges through the authorized processor.
- Send automated operational platform alerts (such as changes to the Terms or critical updates).
6. Use of Processors and Authorized Sub-processors
To ensure the optimal operation of a cloud platform (SaaS), Tindari Inc. subcontracts infrastructure from world-leading technology providers that meet the highest international privacy standards, acting as sub-processors:
- Supabase Inc. / Amazon Web Services (AWS): Main infrastructure for hosting relational databases, storage of multimedia files and logical authentication systems. The servers are located specifically in the United States region (Oregon - AWS us-west-2).
- Paddle.com Market Limited: Provider of global e-commerce services, secure credit card payment processing and compliance with international transactional taxes (Merchant of Record).
- Transactional Messaging Providers: Global platforms used for the automatic routing of emails and WhatsApp messages when the Client actively enables such operational modules in their administration panel.
7. International Data Transfers and Safeguard Mechanisms
By using Tindari, the Client acknowledges and expressly authorizes that the personal data collected and the databases uploaded will be transferred internationally for processing on servers located outside your country, the European Union and Brazil, physically located in the data centers of our cloud infrastructure providers in the United States of America. Tindari Inc. ensures that its international sub-processors offer levels of protection equivalent to those required by the GDPR and the LGPD through the signing of Standard Contractual Clauses (SCC) and the maintenance of robust data protection certifications in cloud environments.
8. Rigid Information Security Protocols
Tindari Inc. declares that it implements technical, organizational and logical security measures proportional to the risk to safeguard the confidentiality of the information:
- Multi-Tenant Isolation (Row Level Security): Implementation of strict row-level security (RLS) policies in the Supabase database engine, guaranteeing absolute data isolation per establishment. It is technically impossible for one business to view, modify or intercept another Client's database.
- End-to-End Encryption: Mandatory use of TLS 1.3 and HTTPS encryption protocols for the transfer of information in transit. Robust symmetric encryption using AES-256 algorithms at rest for all storage volumes and the cloud provider's automatic backups.
- Internal Privilege Control: The platform incorporates a granular role-based permissions module (e.g. administrator, receptionist, professional), transferring to the Client the control and responsibility of auditing the access of their own premises' staff to the database.
9. Retention Period and 90-Day Purge Policy
Data linked to the commercial account and the end-client databases will be kept actively in the systems as long as the contractual relationship remains in force and the Client pays their subscription fees. Following the voluntary cancellation of the service or the termination of the contract for non-payment, Tindari Inc. will initiate a technical security retention period for a maximum non-extendable term of ninety (90) consecutive days. During this period, the data will remain inactive but safeguarded to allow the Client to resolve billing disputes or reactivate their commercial account. Once day ninety (90) has elapsed, Tindari Inc. will proceed with the irreversible, definitive and total deletion of all information from the production servers and backups, or its complete anonymization for statistical purposes, in accordance with the GDPR's data minimization guidelines.
10. Rights of the Data Subject (Access Rights and Portability)
Data subjects (both the Client with respect to their account, and end users with respect to their operational records) enjoy the fundamental rights of Access, Rectification, Cancellation/Deletion ("Right to be Forgotten"), Objection, Restriction of Processing and Portability of information. For requests exercised by end clients or patients of the aesthetic sector, requests must be channeled directly to the owner of the commercial establishment (the Client), as the original Data Controller. Tindari Inc. will provide the Client with the technical tools to comply with such requirements. Direct requests from account holders may be sent in writing to legal@tindari.com together with proof of legitimate identity.
11. Local Storage Device Policy (Cookies)
The software platform and its public booking web pages use technical cookies necessary to keep the user session active, ensure interface stability and prevent code injection vulnerabilities. Additionally, and subject to the user's express consent through the initial interactive banner, web analytics cookies (such as Google Analytics) may be deployed exclusively for the collection of anonymous usage metrics to optimize operational flows. The user retains the ability to block or delete these technologies through their internet browser settings.
12. Ownership of Information and Right of Export
The Client retains at all times the exclusive, inalienable and absolute ownership of all personal data, operational histories and transactional information that they incorporate into the platform. To ensure transparency and mitigate the risk of vendor lock-in, the Client is entitled to perform or request the complete export of their transactional database in standard structured formats in common use (comma-separated values - CSV or JSON) autonomously at any time during the term of their subscription, and especially mandatorily before the technical retention period following the closure of their account expires.