AppointMe Privacy Policy

Operated by Syncworx Ltd

Last Updated: March 1, 2026

1. Introduction

This Privacy Policy explains how Syncworx Ltd ("Syncworx", "we", "us", "our") collects, uses, and protects personal data in connection with the AppointMe platform ("AppointMe" or the "Service").

Syncworx Ltd is an Irish VAT-registered company operating in compliance with:

  • Regulation (EU) 2016/679 (General Data Protection Regulation – GDPR)
  • Irish Data Protection Act 2018

Supervisory Authority: Irish Data Protection Commission (DPC)

2. Company Information

Syncworx Ltd

Registered in Ireland

VAT Number: [To be provided]

Registered Address: [To be provided]

Contact Email: info@appointme.com

Privacy Contact: privacy@appointme.com

3. Roles Under GDPR

For data protection purposes:

Syncworx acts as Data Controller for:

  • Account data
  • Billing data
  • Website data

Syncworx acts as Data Processor for:

  • Booking data processed on behalf of customers

Customers using AppointMe act as Data Controllers for their end-customer booking data.

4. Description of Service

AppointMe is a SaaS booking facilitation platform that allows users to:

  • Configure their own ElevenLabs AI agent
  • Connect their own Twilio number
  • Integrate Stripe, PayPal, Square, or Adyen
  • Manage appointment bookings

AppointMe does not:

  • Provide telecommunication services
  • Provide AI voice services
  • Store call recordings or voice data

Voice data is processed directly by Twilio and ElevenLabs under customer accounts.

5. Personal Data We Collect

5.1 Account Data (Controller Role)

We collect:

  • Full name
  • Business name
  • Email address
  • Billing address
  • VAT number
  • Subscription tier
  • Login credentials (encrypted)
  • IP address
  • Usage logs

Legal Basis:

  • Art. 6(1)(b) GDPR – performance of contract
  • Art. 6(1)(c) GDPR – legal obligation (tax/accounting)

5.2 Payment Information

Payments are processed via:

  • Stripe
  • PayPal
  • Square
  • Adyen

We do not store full card details.

We may receive:

  • Transaction ID
  • Payment status
  • Subscription status

Payment providers act as independent Data Controllers.

5.3 Booking Data (Processor Role)

Customers may process:

  • Names
  • Phone numbers
  • Appointment details
  • Booking notes

AppointMe stores structured booking information necessary to operate the Service.

AppointMe does not store audio recordings.

6. International Transfers

Data may be processed outside the EEA via service providers (e.g., AWS).

Safeguards include:

  • EU Standard Contractual Clauses
  • Adequacy decisions
  • Encryption and technical safeguards

7. Data Retention

  • Account data: duration of subscription + 6 years (Irish tax law)
  • Booking data: retained per customer configuration
  • Logs: 30–90 days

Upon termination, personal data is deleted or anonymised unless legally required.

8. Data Subject Rights

Under GDPR, individuals have the right to:

  • Access
  • Rectification
  • Erasure
  • Restriction
  • Portability
  • Objection
  • Lodge complaint with the Irish DPC

Requests: privacy@appointme.com

For booking data, requests may be redirected to the relevant customer.

9. Security Measures

We implement:

  • Encryption in transit (TLS)
  • Encrypted AWS hosting
  • Role-based access control
  • Logging and monitoring
  • Incident response procedures

10. Updates

We may update this policy. Updated versions will be published on our website.