Privacy and GDPR
As a salon owner, you handle personal information every day — names, phone numbers, email addresses, appointment details. Salonnare is built to help you manage this data responsibly and stay compliant with privacy regulations like the GDPR.
Don't worry — you don't need to be a legal expert. This guide explains the practical tools available to you.
What is GDPR?
GDPR (General Data Protection Regulation) is a European privacy law that gives people control over their personal data. In simple terms, your clients have the right to:
- Know what data you have about them.
- Get a copy of their data.
- Ask you to delete their data.
Salonnare gives you the tools to handle all three with just a few clicks.
When a client asks: "What data do you have on me?"
This is called a "data access request." Here's how to handle it:
- Go to Clients and open the client's profile.
- Click Export client data.
- A file downloads containing everything you have on file for that client: contact details, booking history, purchase history, loyalty points, and any notes.
- Send this file to the client.
That's it — request handled.
When a client asks: "Delete my data"
This is called a "right to erasure" request. Here's what to do:
- Go to Clients and open the client's profile.
- Click Delete client.
- Confirm the deletion.
What happens next
After you click delete:
- The client is immediately hidden from all your lists and searches.
- Their bookings are made anonymous (the appointment data stays for your records, but the client's name is removed).
- A 30-day grace period starts. During these 30 days, you can undo the deletion if it was a mistake.
- After 30 days, all personal data is permanently and irreversibly deleted.
Exporting all your salon's data
You can also export a complete copy of all your salon's data at once — not just one client, but everything.
- Go to Settings.
- Find Privacy and Data.
- Click Export all data.
- A file is generated containing your clients, bookings, staff, products, invoices, and settings.
This is useful for your own records, for switching systems, or for compliance purposes.
How long is data kept?
Here's a simple overview of how long different types of data are stored:
| Type of data | How long it's kept |
|---|---|
| Client personal data | Until the client asks you to delete it, or you close your account |
| Appointment records | Kept as anonymous records after a client is deleted |
| Financial records | At least 7 years (required by tax law) |
| Activity logs | 12 months |
| Email logs | 30 days |
If you close your Salonnare account
If you decide to close your account, all your data is deleted within 30 days. During that period, you can still download a full data export.
Data processing agreement
Salonnare processes data on your behalf. If you need a formal Data Processing Agreement for your records, you can request one through the support page.
Keeping it simple
Privacy compliance doesn't have to be complicated. Here are three habits that keep you on the right side:
- Only collect what you need — You don't have to fill in every field for every client.
- Respond promptly to data requests — Salonnare makes it a matter of clicks.
- Review your client list periodically — Delete records for clients who haven't visited in years and are unlikely to return.
Want to learn more about managing your clients? See Managing Clients.