Privacy
Privacy Policy
This privacy policy explains how Terminov processes personal data in the app, the web dashboard and public booking pages. Service-provider details and retention periods are reviewed and updated continuously.
This page is shown in your selected language as a convenience translation. The German version remains legally authoritative.
1. Controller and contact
Bassam Alahmad, trading as Terminov, Westerholter Weg 101, 45657 Recklinghausen, Deutschland, is the controller for platform, account, security, support and contract data.
Privacy requests can be sent to support@terminov.de. If a data protection officer is legally required or voluntarily appointed, their contact details will be added here.
2. Scope and roles
This privacy notice applies to the Terminov websites, mobile app, web dashboard, public company pages, booking pages, registration forms and student portal.
Terminov generally acts as controller for account, security, support, contract management and platform communication. Where a company uses Terminov to manage its own customers, students, employees, prospects or appointments, that company remains responsible for those contents and Terminov technically processes them on its behalf.
3. Data categories
Depending on use, Terminov processes in particular the following data:
- Account and profile data: name, email address, authentication and session data, role, language, phone number.
- Company data: name, industry, profile, address, booking link, branding, billing and contact details, public visibility.
- Employee data: names, roles, permissions, working times, absences, access codes and linked auth accounts.
- Customer, student or prospect data: contact details, appointments, notes, booking history, training or industry-specific data.
- Appointment data: service, employee, customer, resource, date, time, status, source, meeting point and notes.
- Communication data: team messages, voice messages, notifications, reminders and email delivery information.
- Device, security and diagnostic data: push tokens, sessions, app version and request metadata.
- Voluntary content: logos, profile images, uploaded files and optional media.
4. Purposes of processing
Terminov processes data to provide sign-in, authentication, team and permissions management, scheduling, customer management, online booking, public company pages, driving-school registration, student portal, notifications, reminders, support, abuse prevention, security, error analysis, contract administration and legal documentation.
5. Legal bases
The legal basis depends on the specific process. Possible bases include contract performance, pre-contractual steps, legitimate interests in secure and reliable platform operation, consent for optional features and legal obligations. For company-managed data, the using company determines the legal basis towards its data subjects.
6. Public booking and registration
When you request or book an appointment or register through a public Terminov page, the entered data is transferred to the relevant company and stored in Terminov. The company uses it to process the request, prepare the service and communicate further.
The student portal displays information accessible only via an individual link. Do not share such links with unauthorised persons. The relevant company remains responsible for the professional content and accuracy of displayed training data.
7. App permissions
Microphone is used only for voice messages, contacts for voluntary customer import, location only if requested for meeting or pickup points, photos for logos and profile images, and notifications for appointment, booking, reminder and team notices. Permissions are requested contextually and can be revoked in the operating system.
8. Cookies, local storage and similar technologies
Terminov uses storage and access technologies on websites and in the web dashboard, especially local storage and comparable browser storage. Necessary storage is separated from optional preference, analytics and marketing categories.
- Necessary: session and security functions, form protection, booking flows and saving the privacy selection.
- Preferences: convenience settings such as language or display.
- Analytics: no analytics provider is currently active.
- Marketing: no marketing provider is currently active.
Optional consents can be changed or withdrawn at any time through the privacy settings.
Withdrawing privacy consent is not the same as withdrawing from a contract. To withdraw from an online contract, use Withdraw contract.
9. Recipients and service providers
Technical processing uses Supabase for authentication, database, storage and Edge Functions. Depending on enabled features, hosting, email delivery, push notifications and app-store services may use providers such as Vercel, Resend, Expo, Apple and Google.
The final list of subprocessors, purposes, data categories, transfer mechanisms and contractual bases must be legally confirmed and kept up to date before production launch.
10. Third-country transfers
Where service providers process data outside the EU or EEA, this is done only on the basis of appropriate safeguards such as adequacy decisions, standard contractual clauses or comparable mechanisms. The concrete assessment must be documented before production launch.
11. Retention and deletion
Personal data is retained only as long as required for the relevant purposes, contractual relationships, security records or legal retention duties. Specific periods must be finalised before production launch.
Account deletion can be confirmed in the app, web dashboard or via /daten-loeschen using an email code. After confirmation, final deletion is scheduled 30 days later.
Data managed by a company about its own customers, students or employees may also be subject to that company’s retention and deletion decisions.
12. Data subject rights
Data subjects may request access, rectification, deletion, restriction, portability and objection. Where processing is based on consent, consent can be withdrawn for the future. Requests can be sent to support@terminov.de.
There is also a right to lodge a complaint with a data protection authority. The competent authority depends on the provider’s final address.
13. Security
Terminov uses technical and organisational measures to protect data against unauthorised access, loss, misuse and alteration. These include encrypted transmission, role-based permissions, authentication, session management and access restrictions.
14. Sensitive data, minors and industries
Terminov is designed as multi-industry scheduling software. In sectors such as driving schools, health, therapy or consulting, users may enter sensitive or particularly protected data, including data of minors. Companies must ensure suitable legal bases, information duties and protection concepts.
15. Automated decisions
Based on the current technical state, Terminov does not make automated decisions with legal effect or similarly significant impact within the meaning of Art. 22 GDPR.
16. App stores
Additional privacy information is maintained in the Apple App Store and Google Play developer consoles. These statements must match this privacy policy and the actually submitted app version.
17. Version
Version: 17 July 2026. Final legal review, subprocessors and retention periods are reviewed continuously.
