Privacy Policy

Last updated: February 8, 2026

1. Introduction

Holdly ("Holdly," "we," "us," "our") respects your privacy. This Privacy Policy explains how we collect, use, and share information when you visit or use our websites and services (the "Service"), including getholdly.com and any related pages or applications we operate.

2. Information We Collect

A. Information from business users (our customers)

If you sign up for or use Holdly as a business user, we may collect:

  • Contact information (such as name and email address)
  • Business details you provide (such as business type and optional responses you submit through forms)
  • Calendly connection information and scheduling data received via Calendly (such as event types, booking and cancellation metadata)
  • Stripe account identifiers needed to enable payment processing through Stripe (we do not receive or store full bank account details)

B. Information from your clients (end customers)

When your clients book through your scheduling flow and you use Holdly, we may receive:

  • Name and email address (typically from Calendly booking/cancellation data)
  • Appointment metadata (such as time, event type, and cancellation status)
  • Policy consent records (such as timestamp, policy terms shown, and policy version)
  • Payment card data: Full card numbers are collected and stored by Stripe — Holdly does not receive or store full card numbers. We do store limited card display information received from Stripe (such as the last four digits, card brand, and expiration date) for identification and audit purposes. We also store Stripe-issued identifiers such as customer IDs, payment method IDs, and setup intent IDs.

C. Webhook and event payloads

To operate the Service and maintain an audit trail, we store event data we receive from integrated services (for example, Calendly webhooks). This may include the raw webhook payload and related metadata.

D. Information we collect automatically

We may collect basic technical data needed to operate and secure the Service, such as:

  • IP address and approximate location derived from IP
  • Device and browser information
  • Logs related to requests, errors, and abuse prevention

We do not currently run third-party analytics on the landing page. If we add analytics in the future, we will update this policy.

3. How We Use Information

We use information to:

  • Provide, operate, maintain, and secure the Service
  • Sync appointment data and determine whether a fee policy is triggered
  • Facilitate fee collection through Stripe when a business initiates a charge (and provide records to the business)
  • Maintain audit trails to support dispute resolution, fraud prevention, and compliance
  • Communicate with you about the Service (for example, early access, onboarding, support, and product updates)
  • Improve the Service (including troubleshooting and debugging)

We may send transactional emails in the future (for example, booking or charge receipts). If and when we do, we will use a service provider and update this policy as needed.

4. How We Share Information

We do not sell personal information. We share information only as needed to operate the Service, including with:

  • Stripe — for payment processing and card storage
  • Calendly — scheduling data integrations you enable
  • Infrastructure and hosting providers we use to run the Service
  • Legal and safety — if required by law, to respond to lawful requests, or to protect rights, safety, and security

5. Data Retention

We retain information for as long as necessary to provide the Service and for legitimate business purposes such as dispute handling, audit, security, and compliance.

Because Holdly supports fee enforcement and disputes may arise after an event, we may retain certain audit logs (including webhook events, policy consent records, and charge-related records) for a reasonable period even after an account is closed, unless a longer retention period is required by law or needed for legal claims.

6. Security

We use reasonable administrative, technical, and organizational safeguards designed to protect information. However, no system is 100% secure.

Full payment card numbers are handled by Stripe and are not stored on our servers. We may store limited card metadata (such as the last four digits, card brand, and expiration) and Stripe identifiers to support account management and audit trails.

7. Your Rights

Depending on your location, you may have rights to access, correct, or delete personal information, or to object to or restrict certain processing. Business users can contact us at hello@getholdly.com to submit requests.

If we process end-customer data on behalf of a business, the business may be the primary party responsible for responding to end-customer requests. We will assist as required.

8. Cookies

We use essential cookies required for the Service to function (such as authentication and session management). We do not use third-party advertising or tracking cookies.

9. Children's Privacy

The Service is not intended for individuals under 18. We do not knowingly collect personal information from children.

10. Changes

We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page reflects the most recent revision.

11. Contact

Questions? Contact hello@getholdly.com.