Privacy Policy
Last updated: June 2026
Who we are
This Privacy Policy is provided by Tattoo Booking ("we", "us", "our"), the data controller for the Tattoo Booking platform.
What personal data we collect
- Account data: name, email address, and login credentials you provide when creating an account.
- Profile and usage data: studio name, artist details, bookings, client records, consent forms, and flash designs you create in the app.
- Support data: messages and communications you send to our support team.
- Technical data: IP address, browser type, device identifiers, and approximate location (country/region) for security and analytics.
How we use your data
- To create and manage your account and provide the Tattoo Booking service.
- To process bookings, store client records, and manage your studio's consent forms and flash board.
- For security, fraud prevention, and to maintain the integrity of the platform.
- To respond to your support requests and communicate important service updates.
- To analyse usage patterns and improve the product experience.
Legal basis for processing
We process your personal data on the following legal bases: (1) Performance of a contract — to provide the Tattoo Booking service you signed up for; (2) Legitimate interests — for security, fraud prevention, and product improvement; (3) Consent — for optional marketing communications; (4) Legal obligation — where we are required to comply with applicable laws.
Who we share your data with
- Service providers: hosting and cloud infrastructure providers, analytics providers, and customer support tooling.
- Payment processor: Stripe processes payment data, manages subscriptions, and handles tax compliance on our behalf. We do not store your full payment card details.
- Professional advisers: legal and accounting professionals, where necessary.
- Authorities: where required by law or to protect our legal rights.
International transfers
Your data may be transferred to and processed in countries outside the UK and European Economic Area (EEA). Where this happens, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) or adequacy decisions.
Data retention
We retain your personal data for as long as your account is active, and for a reasonable period thereafter to comply with legal obligations, resolve disputes, and enforce our agreements. When data is no longer needed, it is securely deleted or anonymised.
Your rights
Under the GDPR and applicable data protection laws, you have the right to:
- Access the personal data we hold about you.
- Rectify inaccurate or incomplete data.
- Request erasure of your personal data ("right to be forgotten").
- Restrict or object to certain processing activities.
- Receive your data in a portable format (data portability).
- Withdraw consent at any time, where processing is based on consent.
- Lodge a complaint with a supervisory authority.
We aim to respond to all requests within one month. To exercise your rights, please contact us at the email address below.
Security
We implement appropriate technical and organisational measures to protect your personal data, including encryption in transit and at rest, access controls, and regular security reviews.
Cookies
We use essential cookies to keep you signed in and maintain your session. We may use analytics cookies to understand how visitors use the site. You can manage your cookie preferences through your browser settings.
Contact us
If you have any questions about this Privacy Policy or how we handle your data, please contact us at support@tattoobooking.co.