General information only. This page is not legal advice.

Privacy Notice

Last updated: 29 September 2026

The Beauty Basement Pty Ltd operates ChairOS and the member, booking and website services at rent.thebeautybasement.com.au. This notice explains how we handle personal information in those services. The separate marketing website may also have its own privacy information. For questions or privacy requests, email thebeautybasementperth@gmail.com.

Information we collect

We collect the information you give us when you enquire, create an account, join as a member, configure your business, make or request a booking, communicate with us, or use ChairOS. This may include names, contact details, business details, services, availability, client records, appointment details, messages, and billing information. Members may enter information about their own clients so that ChairOS can provide booking and client-management functions. We also receive limited technical information such as device, browser, page activity, IP address and security logs when you use the service. Payment providers handle card details; ChairOS receives the transaction and status information needed to manage a booking or payment.

We may receive information from a member who manages your booking, from a payment provider, or from an integration you choose to connect. Please do not enter information about another person unless you have a proper basis to use it for your business.

How we use information

We use information to provide accounts and member workspaces, manage enquiries and bookings, display availability, communicate about services and appointments, process payments, provide support, secure and maintain the service, meet legal obligations, and improve the product. ChairOS may use the information a member enters to prepare business insights or draft content for that member to review. We send marketing communications where permitted and respect applicable opt-out choices.

Optional Google Calendar connection

A ChairOS member may choose to connect a Google account. ChairOS asks for the connected account's basic profile information, including its email address and Google account ID, and the Google Calendar events permission to view, create, change and delete events on its primary Google Calendar. We use the account details to identify the connection.

ChairOS reads calendar event times, dates, status and busy/free information to avoid offering appointment slots that overlap with the member's Google events. It creates and updates Google Calendar events for ChairOS appointments and removes its managed events when appointments are cancelled. A mirrored event can include the service name, client name, appointment time, optional booking location and a ChairOS appointment reference. Anyone with access to the member's Google Calendar under that account's sharing settings may be able to see those details. ChairOS also checks upcoming appointments periodically to reconcile the two calendars.

To keep the connection working, we store the connected Google account details, connection and sync status, and encrypted access and refresh tokens in the ChairOS database. Calendar information is processed on our servers for availability checks and appointment sync. Google receives the event details we write to the connected calendar. Our hosting and database providers process data needed to operate ChairOS. We use Google user data from this connection only to provide or improve the member-facing Calendar and booking functions. We do not sell it or use it for advertising.

The member can disconnect Google Calendar in ChairOS settings and can revoke ChairOS access in their Google Account. Disconnecting removes the saved ChairOS connection and related local sync records. ChairOS attempts to remove future ChairOS-managed events from Google Calendar while the connection is active. If that cleanup fails or an older event remains, the member may need to delete it in Google Calendar. Disconnecting does not delete personal Google events or the underlying ChairOS appointments. Reconnecting may sync upcoming appointments again.

Sharing and overseas processing

We share information as needed with the relevant member business and people involved in a booking, and with service providers that host, store, secure, process payments for or deliver communications for ChairOS. These include Google for the optional Calendar connection, our hosting and database providers, payment and email providers when those services are used, and AI processing providers for optional ChairOS draft and insight features. We may disclose information where required by law or to protect the service and its users. We do not sell personal information to advertisers. Data may be processed outside Australia, including in Japan where our production database is hosted and other locations used by service providers.

Security and retention

We use access controls and other safeguards appropriate to the service, including encryption of stored Google OAuth tokens. No online service can guarantee absolute security. We retain information while it is needed to operate accounts, bookings and the business, and for applicable record-keeping, dispute, security or legal requirements. Retention varies by the record and purpose. Disconnecting Google Calendar removes the stored connection tokens as described above; closing an account does not necessarily erase transaction or records that must be kept for other lawful reasons.

Access, correction and complaints

Email thebeautybasementperth@gmail.com to ask what personal information we hold about you, request a correction or deletion where applicable, or raise a privacy concern. We will consider the request and respond within a reasonable time. If you are unhappy with our response, you may be able to complain to the Office of the Australian Information Commissioner.

Changes

We may update this notice as the service changes. The latest version and update date will appear on this page.

Google Calendar connection

Connecting a Google account is optional. ChairOS uses the connected account identity to show which account is linked. It reads calendar event times and availability to avoid booking conflicts, and creates, updates or removes ChairOS appointment events in the connected calendar.

ChairOS stores the connected account details, sync status and encrypted access and refresh tokens to operate this feature. Our hosting and database providers process the information needed to deliver it. Disconnecting removes the local connection and attempts to remove future ChairOS-managed events; any events left in Google Calendar can be removed there by the account holder.

We do not use Google Calendar information, including information derived from it, to train or improve generalized AI models. Our use of information received from Google Workspace APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.