Privacy Policy

Last updated: July 2026

Skedrix ('we', 'us', 'our') is committed to protecting your personal information. This policy describes what data we collect, how we use it, and the rights you have over it.

Information we collect

We collect information you provide directly: name, email address, phone number, and business details when you create an account. We also collect appointment and booking data entered while using the service. Payment information (card numbers, bank details) is processed exclusively by Mercado Pago and is never stored by Skedrix. We automatically collect basic usage data (pages visited, features used, error logs) to improve the service.

How we use your information

We use your data to: provide and operate the booking service; send appointment confirmations and automated reminders; process subscription payments via Mercado Pago; respond to support requests; and improve and debug the product. We do not sell, rent, or share your personal data with third parties for marketing purposes.

Third-party services

We use Mercado Pago to process subscription payments. When you pay, you are also subject to Mercado Pago's privacy policy and terms. We do not control how Mercado Pago handles your payment data. If you use the Android application, we use Google Firebase to deliver push notifications, as described in Push notifications and Firebase below. We may use third-party infrastructure providers (hosting, email delivery) that process data on our behalf under confidentiality agreements.

Cookies and local storage

Skedrix uses session cookies strictly necessary for authentication (keeping you logged in) and CSRF protection. We also use browser localStorage to remember your theme preference (light/dark) and language choice. We do not use advertising or third-party tracking cookies.

See our Cookies page for full details.

Data security

All data is transmitted over HTTPS. Passwords are hashed and never stored in plain text. We apply reasonable technical and organisational measures to protect your information, but no system is completely immune to breaches. In the event of a security incident affecting your data, we will notify you as required by applicable law.

Data retention

We keep your account data for as long as your account remains active. If you want your account deleted, see Account deletion below for the exact process and timeline — deletion and anonymization there follow the specific schedule and role-based rules described in that section, not a general fixed window. We may need to retain certain data for legal, billing, security, or fraud-prevention reasons even after your account is deleted.

Your rights

Under Argentine Law 25.326 (Personal Data Protection), you have the right to access, correct, and delete your personal data held by Skedrix. To exercise these rights, email us at [email protected]. For users in Argentina: access requests are answered within 10 calendar days from receipt. Rectification, update, and deletion requests are processed within 5 business days from receipt, when legally applicable. We may need to retain certain data for legal, billing, security, or fraud-prevention reasons.

Push notifications and Firebase

If you use the Android application and enable push notifications, we register a Firebase Cloud Messaging (FCM) registration token, associated with your authenticated User account, so we can deliver appointment and operational push notifications to your device. Google Firebase acts as our processor for push delivery, alongside Mercado Pago (payments), our hosting provider, and our email provider. Revoking notification permission in Android settings stops delivery to that device; we also remove the token when you log out.

Error reports and bug reports

When the application encounters an unexpected error, it may automatically send us a diagnostic report containing the error title and message, a stack trace where available, the page path (without query parameters), and relevant context; if you are logged in, this report is associated with your User and, where applicable, your Business. Separately, if you choose to report a bug through the app's report form, that report can include broader diagnostic information: your current URL, browser/user-agent and operating system details, and the contents of your browser's local storage at that moment — this information is only sent when you explicitly submit that report, and the app discloses what it contains before you send it. We do not collect native Android crash logs or use a crash-reporting service like Crashlytics.

Account deletion

You can request deletion of your account and personal data from your Profile (if you are logged in) or from our public account-deletion page (if you are not). Requesting deletion only sends a confirmation email; nothing is deleted yet. The five-calendar-day deletion period begins only once you confirm that email through its single-use link, and until then — and while the request is pending — you can cancel it from your Profile with no effect on your account. What happens at deletion depends on your role: Customers are removed and their appointment history is anonymized rather than deleted so businesses keep accurate records; Employees have their staff access and identity removed from the businesses they worked at; Business Managers have their business, staff access, appointments, and subscription cancelled and their tenant data deleted or anonymized. In every case, we retain the minimum data required by law for billing, security, fraud-prevention, and audit purposes.

Contact

For any privacy-related questions or requests, please email [email protected].