1) Scope and roles
This policy applies to people who visit getnoelle.com, create or use a Noelle workspace, connect calendars or billing, publish booking pages, book appointments through those pages, or exchange messages with Noelle by SMS or through the web or mobile app.
When a business or individual uses Noelle to operate a booking page or scheduling assistant, Noelle generally processes client and invitee information to provide that workspace's scheduling features. We may also use information for security, fraud prevention, product operations, billing, troubleshooting, support, and legal compliance as described in this policy.
2) Notice at collection
This section summarizes the categories of personal information collected online through Noelle.
Categories we collect
- Identifiers and contact details, including names, email addresses, phone numbers, business names, and booking-page identifiers.
- Booking, workspace, message, calendar, billing, device, and technical information.
- Google Calendar data and scheduling information derived from it, as described in Section 4.
Where it comes from
- Directly from workspace owners, clients, invitees, and site visitors.
- From integrations and providers you connect or use, including Google Calendar, payment, SMS, email, app-platform, and AI providers.
- Automatically from browsers, devices, logs, and local browser storage.
Why we collect it
- To create and secure accounts, coordinate availability, create and manage appointments, send communications, and operate assistant features.
- To process subscriptions, provide support, troubleshoot, prevent fraud or abuse, and improve user-facing reliability.
- To comply with law and enforce our agreements.
Sale, advertising, and retention
- We do not sell personal information or Google user data.
- We do not use or share Google user data for advertising, data-broker products, credit or lending decisions, or surveillance.
- We retain information only as long as reasonably necessary for the purposes described here, subject to limited backup, security, dispute, and legal needs.
3) Information we collect
Account and workspace information
- Your name, business name, phone number, email address, time zone, public booking slug, authentication information, device or push-notification identifiers, and profile or branding settings you save.
- Workspace configuration such as services, durations, availability rules, scheduling preferences, confirmation language, approval settings, and assistant preferences.
Booking, invitee, and scheduling information
- Information submitted by clients or invitees, such as name, email address, phone number, appointment selection, notes, time zone, preferences, and rescheduling or cancellation choices.
- Booking records and scheduling context, such as requested and confirmed times, status, service type, reminders, change history, and links between a Noelle booking and an external calendar event.
Messages and communications
- Content of SMS, in-app, email, or support communications, including scheduling requests, replies, confirmations, reminders, and notes.
- Related metadata such as sender and recipient identifiers, phone numbers, timestamps, provider identifiers, delivery status, and conversation history.
Billing and transaction information
- Plan tier, subscription status, trial and renewal dates, billing-provider actions, and transaction or invoice metadata.
- Payment card information is generally collected and processed by the applicable payment processor or app store and is not stored in full by Noelle.
Technical and usage information
- IP address, device or browser type, operating system, approximate timestamps of use, diagnostic and security logs, and pages or screens accessed.
- Browser storage and similar technologies used to keep you signed in, preserve workspace state, remember preferences, and maintain security.
4) Google Calendar and Google API data
This section applies only when a user voluntarily connects Google Calendar and grants the permissions shown on Google's OAuth consent screen.
Current Google permissions. Noelle requests calendar.events.owned to view, create, change, and delete events on Google calendars the user owns, and calendar.freebusy to view the user's availability. Noelle's current implementation uses the connected user's primary Google Calendar. It does not request permission to manage entire calendars, calendar access-control lists, Google profile data, Gmail, Google Drive, or Google Contacts.
Raw Google user data Noelle accesses
- Authorization and connection data: the permissions granted, connection status, token timestamps and status, an encrypted Google OAuth refresh credential, short-lived access credentials generated as needed, and the primary-calendar identifier used for the connection.
- Free/busy data: busy-period start and end times for the date range needed to evaluate availability. Google's free/busy response does not provide the event title or description for those intervals.
- Event data: event identifiers; titles or summaries; descriptions or notes; locations; start and end dates, times, and time-zone context; attendee email addresses, names, response status, and optional status when present; recurrence rules and recurring-event identifiers; and Noelle-specific private event fields that Noelle previously wrote, such as booking, contact, source, or client-phone references.
Actions Noelle takes with Google Calendar
At the user's request or according to scheduling rules the user enables, Noelle may:
- List and display events from the connected primary calendar.
- Check free/busy intervals to prevent double-booking and propose available times.
- Create calendar events, including event titles, notes, locations, times, and attendees.
- Update or reschedule events, including changing time, title, notes, location, or attendees.
- Delete events from the connected calendar.
- Ask Google Calendar to send invitations or event updates to attendees when that functionality is used.
Adding an attendee to an event is not the same as sharing an entire calendar. Noelle does not currently create calendars, alter calendar-level sharing permissions, manage calendar access-control lists, or subscribe the user to other calendars.
Derived, aggregated, and de-identified Google data
Noelle may derive scheduling information from Google user data, such as open time windows, conflict indicators, event-to-booking links, booking state, change history, and proposed scheduling actions. Noelle may create limited operational, security, or reliability metrics needed to provide and improve the user-facing calendar features.
Raw, derived, aggregated, anonymized, or de-identified Google user data remains subject to the restrictions in this section. Noelle does not use it to build advertising audiences, sell analytics, create data-broker products, determine creditworthiness, make lending decisions, conduct surveillance, or train generalized AI or machine-learning models.
How Noelle uses Google user data
Noelle uses Google user data only to:
- Establish and maintain the calendar connection the user requested.
- Display relevant events, calculate availability, prevent conflicts, and propose appointment times.
- Create, view, update, reschedule, delete, and reconcile appointments and related invitations.
- Maintain user-facing booking history and scheduling context.
- Provide support; detect, prevent, and investigate errors, fraud, abuse, and security incidents; and improve the reliability of the user-facing calendar and scheduling features.
- Comply with applicable law, enforce our agreements, and protect users, invitees, Noelle, and others.
AI-assisted scheduling and Google user data
Noelle uses third-party AI/model services, currently including the OpenAI API, to interpret scheduling requests, identify relevant scheduling context, propose actions, and draft scheduling-related responses. For a specific user-facing scheduling task, Noelle may send the provider the relevant conversation text, time-zone and workspace settings, contact context, busy intervals, and relevant event data such as titles, descriptions, locations, times, recurrence information, attendee details, and Noelle booking references.
Noelle limits that transfer to information reasonably needed for the requested feature. Noelle does not use raw or derived Google Workspace data to develop, improve, or train generalized AI or machine-learning models. Noelle does not permit an AI/model provider to use Google user data for generalized model training and does not opt Google user data into voluntary provider data-sharing or model-training programs.
How Google user data is disclosed or transferred
Noelle may disclose or transfer the minimum Google user data needed for the purposes above to:
- The user, workspace owner, and relevant event participants: for example, by displaying scheduling information or sending an event invitation or update.
- Google: when Noelle reads from or writes to Google Calendar at the user's direction.
- Service providers acting for Noelle: such as hosting, database, cloud infrastructure, security, monitoring, support, communications, and AI/model providers, solely to operate, secure, support, troubleshoot, or improve the applicable user-facing feature and subject to applicable restrictions.
- Legal or safety recipients: when disclosure is reasonably necessary to comply with law, respond to valid legal process, protect rights or safety, or investigate fraud, abuse, or a security incident.
Noelle does not sell Google user data or transfer it to advertisers, data brokers, information resellers, lenders, or other parties for their independent use.
How Google user data is protected
Noelle uses administrative, technical, and organizational safeguards designed to protect Google user data. Data is transmitted over HTTPS/TLS. Google OAuth refresh credentials are encrypted at rest using AES-256-GCM. Noelle also uses authentication and authorization controls, restricted access to production systems and OAuth credentials, protected configuration secrets, logging and monitoring, and access limitations for personnel and service providers.
Retention, disconnection, revocation, and deletion
- While connected: Noelle retains an encrypted Google refresh credential while it is needed to provide the integration. Google access credentials generated from it are short-lived and are obtained only as needed.
- Calendar content: Noelle retrieves events and free/busy data as needed. It may retain booking records, external event identifiers, event-to-booking links, conversation context, and derived scheduling history for as long as reasonably necessary to provide the Service, support users, prevent fraud, resolve disputes, secure the Service, and comply with law. Noelle is not intended to keep a permanent independent copy of every event in a connected calendar.
- Disconnecting through Noelle: Noelle disables the active connection, clears the active calendar association, and stops using the stored credential for future Google API access. Users may also revoke Noelle's authorization directly from their Google Account permissions. Disconnecting does not delete events already created in Google Calendar.
- Inactive credentials: an encrypted credential marked inactive is not selected or used for Google API access. Under Noelle's current implementation, an inactive credential may remain in the account's token record until the Noelle account is deleted or an administrative deletion process removes it. A user who wants immediate Google-side revocation should also revoke Noelle from the connected-app permissions in their Google Account.
- Account deletion: deleting the Noelle account removes Google connection credentials and associated Google-derived records from active systems, except information that must be retained temporarily for backups, security, fraud prevention, dispute resolution, or legal compliance. Backup copies are isolated from routine use and removed through the ordinary backup lifecycle.
Google Limited Use compliance. Noelle's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. The use of raw or derived user data received from Google Workspace APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
5) How we use information generally
In addition to the Google-specific uses above, we use information to operate, maintain, secure, support, and improve Noelle, including to:
- Authenticate users, secure accounts, and maintain sessions.
- Publish booking pages, manage services and availability, coordinate scheduling, and maintain booking history.
- Send confirmations, reminders, verification codes, and assistant- or owner-generated communications.
- Process subscriptions, collect payments, prevent fraud, and maintain accounting records.
- Provide support, investigate bugs, monitor deliverability, and improve product reliability and user-facing performance.
- Enforce our Terms, respond to legal requests, and protect users, recipients, and the Service.
7) SMS and messaging
If you or your clients use SMS with Noelle, message frequency varies by usage and workflow. Message and data rates may apply.
- Opt out: reply STOP to an eligible Noelle SMS to stop future messages from that thread or program.
- Help: reply HELP or contact support@getnoelle.com.
- Consent: workspace owners are responsible for obtaining any consent required before sending texts to clients or invitees through Noelle, including automated or assistant-generated texts.
- Revocation: if a recipient revokes consent or asks not to receive messages, we and the relevant workspace may suppress future messaging as needed to honor that request.
8) Browser storage and similar technologies
Noelle uses browser storage and similar technologies to keep you signed in, preserve workspace state, remember preferences, measure basic product operation, and maintain security. If you block or clear these technologies, parts of the Service may not work properly.
9) Data retention
We keep personal information only for as long as reasonably necessary for the purposes described in this policy. Retention depends on the category of data and the reason it was collected.
- Account and workspace records are generally kept while the workspace is active and for a reasonable period afterward to support account operation, backups, dispute resolution, security, and compliance.
- Booking, calendar, and message records are kept as needed to provide scheduling history, maintain context, reconcile appointments, support users, prevent fraud, and comply with law.
- Billing and transaction records are retained as needed for accounting, tax, refunds, audits, disputes, and fraud prevention.
- Logs and technical records are retained as long as reasonably necessary for security, troubleshooting, reliability, and abuse prevention.
When information is no longer needed, we delete it, de-identify it, or securely isolate it from routine use, subject to backup and legal-retention requirements.
10) Your choices and rights
- You can update certain account, workspace, branding, service, and availability information inside Noelle.
- You can disconnect integrations through Noelle where available or through the provider's settings. For Google, you may also revoke Noelle's access in your Google Account permissions.
- You can opt out of eligible SMS messages by replying STOP.
- You can initiate account deletion at getnoelle.com/delete or through supported in-app settings.
- You may request access to, correction of, or deletion of personal information we maintain by using the self-service deletion page or contacting support@getnoelle.com.
- If you booked with a business that uses Noelle, you can also contact that business directly to change or delete booking information it controls.
California rights. If the California Consumer Privacy Act applies to your information, you may have the right to know, access, correct, or delete personal information and the right to opt out of sale or sharing. Noelle does not sell personal information or share it for cross-context behavioral advertising. You also have the right not to be discriminated against for exercising applicable privacy rights.
To exercise a privacy request, email support@getnoelle.com with enough information for us to verify and respond to your request. Authorized agents may submit requests where permitted by law.
11) Account deletion
If you created a Noelle account, you can delete it from the website at getnoelle.com/delete or from supported in-app settings.
Deleting your account permanently removes the account record and most associated information from active systems. Certain information may be retained where needed for billing, security, fraud prevention, legal compliance, backups, dispute resolution, or similar legitimate purposes.
Deleting your Noelle account does not automatically delete appointments already written to an external calendar. You can delete those events in the calendar provider or through Noelle before deleting your account.
When you delete your Noelle account, we attempt to cancel an eligible subscription that we can cancel directly. Some subscriptions, including app-store subscriptions and any subscription we cannot cancel directly, may still require cancellation through the billing provider you used. You are responsible for confirming cancellation with that provider.
12) Security
We use reasonable administrative, technical, and organizational safeguards designed to protect personal information, including the controls described in the Google-data section. No system is completely secure, and we cannot guarantee absolute security.
13) Children's privacy
Noelle is not directed to children under 13, or the minimum age required by the law where they live, and we do not knowingly collect personal information directly from children through the Service.
14) Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will post the revised version here and update the “Last updated” date. If we materially change how we access or use Google user data, we will provide appropriate notice and obtain any consent required before using the data for the new purpose.
15) Contact
Leitbyte LLC
Website: getnoelle.com
Email: support@getnoelle.com