Privacy Policy

Last updated May 1, 2026 · 8 min read

KnipCloud takes your privacy seriously. This policy explains what we collect, why, how it's used, and your rights under the EU General Data Protection Regulation (GDPR).

1. Who is the data controller

KnipCloud BV (KvK 92345678) is the data controller for personal data collected through this platform.

You can reach our Data Protection Officer at privacy@knipcloud.com.

2. What we collect

Account data

  • Name, email, phone number.
  • Profile photo (optional).
  • Hashed password.

Booking data

  • Services booked, salons visited, prices paid.
  • Customer notes you save (allergies, product preferences, reference photos).

Usage data

  • Device type, browser version, IP address (for security).
  • App version, screens visited, errors encountered (for product improvement).

Payment data

  • Card details are processed and stored by Stripe — we never see or store full card numbers ourselves.

3. How we use it

  • Run the platform (book, cancel, charge, notify).
  • Improve recommendations (which salons fit your taste).
  • Send service emails (booking confirmations, reschedule prompts).
  • Send marketing emails (you can opt out at any time without affecting service emails).
  • Detect fraud and abuse (rate limiting, anomaly detection).
  • Comply with legal obligations (financial record-keeping, tax reporting).

4. Who we share with

  • Salons you book with — they see your name, contact info, and any notes you've added to help them prep.
  • Stripe — for payment processing only.
  • Our infrastructure providers — under strict data-processing agreements.
  • Authorities — only when required by Dutch law.

We do not sell personal data. We do not share it with advertisers. Full stop.

5. International transfers

Our infrastructure is hosted in the EU (primarily Frankfurt). When data does cross borders (e.g. customer support tooling), we use Standard Contractual Clauses or equivalent safeguards.

6. Your rights under GDPR

  • Access — see all data we hold on you. Request from Account → Privacy.
  • Correction — update any field. Edit your profile directly.
  • Deletion — close your account; we delete personal data within 30 days (see our delete guide).
  • Portability — receive your data in a portable format (JSON export).
  • Objection — opt out of any non-essential processing.
  • Complain — file a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).

7. How long we keep it

  • Active accounts: indefinitely until you delete.
  • Deleted accounts: 30-day grace period, then permanently erased.
  • Financial records: 7 years (Dutch tax law).
  • Server logs: 90 days, then aggregated and anonymised.

8. Cookies

See our Cookies Policy for the full breakdown. Short version: we use essential cookies for the platform to work, and you can choose whether to allow analytics cookies via the consent banner.

9. Children

KnipCloud is not intended for users under 16. If we learn that we've inadvertently collected data on a child, we delete it on discovery.

10. Changes to this policy

We'll notify you by email and via an in-app banner at least 30 days before material changes take effect.

11. Contact

Questions, concerns, or rights requests: privacy@knipcloud.com.