Legal
Privacy Policy
Our philosophy
Slot'd is built and operated by Lawn Dart Systems, LLC. We carry the same privacy stance we apply across the company: we do not sell, rent, or trade personal information. Inside the booking experience and the provider dashboard, we do not run third-party advertising or track users across the web. On our public marketing pages we use the Meta Pixel to measure how well our own ads reach service providers — that is limited to those pages and never active while a client is booking.
Two roles, two data flows
Slot'd has two kinds of users, and they create different kinds of data.
- Providers are the businesses that pay Slot'd to run their booking and CRM. When a provider signs up, we create a Firebase Authentication user and a Firestore document with the business name, contact information, services, availability, Stripe account ID, and subscription status. This data lives under
/providers/{providerId}. Providers can sign up with an email and password or with Google; if you use Google, we receive your name and email address from Google to create and sign you in to your account. - Clients are the people who book appointments through a provider's booking page. When a client books, we store the contact information they entered, their appointment history, any intake-form answers, and any photos the provider attaches to their profile. This data lives under the provider's collection. The provider owns this data, not Slot'd. If you booked with a Slot'd provider and want to change or remove your information, contact the provider directly. Clients receive a secure link in their booking confirmation that lets them view, reschedule, or cancel that appointment without creating an account; the link carries a private token and is not shared publicly.
Sub-processors
Slot'd runs on a handful of vetted infrastructure partners. They process data on our behalf under their own privacy and security commitments:
- Google Firebase — Authentication, Firestore database, Cloud Functions, Cloud Storage, and Cloud Messaging. Slot'd's primary infrastructure.
- Stripe, Inc. — Payment processing for client deposits and provider subscriptions (Stripe Connect Express marketplace model). Card details are entered into Stripe and never touch Slot'd servers. When a client pays online, the funds settle directly to the provider's connected Stripe account; Slot'd does not hold or store the client's card data.
- Twilio, Inc. — SMS notifications, only when the provider has enabled SMS.
- Twilio SendGrid — Transactional email (booking confirmations, receipts, reminders, and feedback-notification emails to our support team), only when applicable.
Feedback you send us
If you choose to send us feedback through the app, we collect and store the message you submit (in our Firestore database) and send a notification email to our support team via SendGrid. Feedback is voluntary — please don't include sensitive personal information you don't want us to retain. We may use feedback you submit to operate, troubleshoot, and improve the product.
Text messaging (SMS)
When you provide a phone number while booking, you may receive transactional SMS about that appointment — confirmations, reminders, cancellations, and rescheduling — sent on the provider's behalf through our messaging sub-processor, Twilio. Message frequency varies by appointment activity. Reply HELP for help or STOP to opt out at any time. Message and data rates may apply.
No mobile information — including your phone number and SMS opt-in/consent — is shared with third parties or affiliates for marketing or promotional purposes, and SMS opt-in data is never sold. Mobile numbers are used only to deliver the transactional messages you opted into; the only third party that processes them is Twilio, solely to transmit those messages on our behalf.
Google Calendar integration
Connecting Google Calendar is optional and available only to providers. It is off until you explicitly connect it from your dashboard, and disconnecting it at any time revokes our access immediately.
What we access. With your permission we request two Google scopes: calendar.events, to read and write events on your primary calendar, and userinfo.email, to show you which Google account is connected. We do not request access to Gmail, Drive, Contacts, or any other Google service.
How we use it. Solely to keep your calendar and your Slot'd schedule in sync, in both directions: appointments booked through Slot'd are written to your Google Calendar, and events already on your calendar are read so that those times are blocked off and clients cannot double-book you. That is the entire purpose.
How we store it. We store your Google account email, your calendar id, an incremental sync cursor, and the refresh token that keeps the connection alive. These live in a server-only location (/providers/{providerId}/private/googleCalendar) whose security rules deny all client access outright — the refresh token is never sent to a browser, a mobile app, or any other client, and is reachable only by our server-side Cloud Functions. Calendar event contents are not warehoused: they are read to compute your availability and are not retained beyond what that requires.
How we share it. We do not. Google Calendar data is never sold, never shared with third parties, never used for advertising, and never used to train generalized artificial intelligence or machine learning models. No human at Slot'd reads your calendar data.
Slot'd's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Revoking access. Disconnect Google Calendar from Settings in your dashboard, which revokes the token with Google and deletes the stored connection. You can also revoke access at any time from your Google Account permissions page. Events already written to your calendar remain yours and are not removed when you disconnect.
Aggregate metrics
We count how many times each provider's booking page is viewed, so the provider can see how much interest their page is getting. This is a first-party counter — a running total and a per-day tally stored under the provider's own records. It uses no cookies, collects no personal information about visitors, and does no cross-site tracking.
How search results are ordered
Providers who choose to be listed in Slot'd's search can be found by service and area. Results are ordered by how active a provider is on Slot'd — whether they have openings published and have taken bookings recently — and then by distance from the search location. Providers on a paid plan receive a small ranking preference, which is capped so that an active provider on the free plan still ranks above a paid provider who is not currently taking bookings. We never disclose which providers are on a paid plan.
The activity signal is derived from a provider's own booking records and is used only to order search results. Location is handled as described above: search matches against a provider's precise location but only ever discloses an approximate area, and distances shown are calculated from that approximate area rather than the exact address.
Advertising & the booking experience
When you are booking an appointment — any provider booking page, or the page where you manage or pay for a booking — we run no advertising pixels, no Google Analytics, and no Meta Pixel. Those pages do no cross-site tracking or fingerprinting. We never sell or rent your personal information.
On our public marketing pages (our homepage and informational pages — not the booking flow) we use the Meta Pixel and Conversions API to measure how well our own ads bring service providers to Slot'd. This helps us reach the right businesses and spend our advertising budget responsibly. It is limited to those marketing pages and is never active while a client is booking.
Children's privacy
Slot'd is not directed to users under 13. We do not knowingly collect personal information from minors. If you believe a child has provided us information, contact privacy@lawndart.dev and we will delete it.
Your rights
Providers can deactivate or permanently delete their account themselves from Settings → Account in the dashboard; permanent deletion removes the account and its associated data and cannot be undone. You can also request deletion by emailing privacy@lawndart.dev from the address used to sign up, and we respond within five business days. Providers can export their client list (CSV) at any time from the dashboard.
Clients can ask the provider they booked with to update or delete their information. If the provider is unreachable, email privacy@lawndart.dev and we will route the request.
You may also request an export of your data by writing to the same address.
Deleting data connected to Facebook Login
If you signed up for or connected a Slot'd provider account using Facebook Login, Facebook shares only your name and email address with us to create and sign you in to your account. We do not import your Facebook posts, friends, photos, or any other Facebook content, and we do not post to Facebook on your behalf.
You can remove this data at any time, in whichever way you prefer:
- Delete your Slot'd account and all associated data. Sign in to the dashboard at app.slotd.app and go to Settings → Account → Delete Account. This permanently removes your provider account and its associated data and cannot be undone.
- Just disconnect Facebook (keep your Slot'd account) — in Settings → Account you can unlink Facebook and continue signing in with email or another provider. You can also remove Slot'd from your Facebook account under Facebook → Settings & privacy → Apps and Websites.
- Ask us to do it for you. Email privacy@lawndart.dev from the address on your account and request deletion of the data connected to your Facebook Login. We respond within five business days.
Subscriptions
Provider subscriptions ($19, $29, or $59 per month) start with a 14-day free trial and then renew automatically every month through Stripe. You can cancel any time from the Stripe billing portal linked in your dashboard. Cancellation takes effect at the end of the current billing period. Refunds, if any, are at our discretion under the Terms of Service. The prices above are for subscriptions purchased on the web; subscriptions bought through the Apple App Store or Google Play may cost more to cover the app stores' fees and are billed by the app store, not Stripe.
Jurisdiction
Lawn Dart Systems, LLC is a Texas limited liability company (TX SOS file number 806569155). This Privacy Policy and any related disputes follow Texas state law.
Changes
Updates will be reflected in the “Last Updated” date above. Material changes will be noted in the site changelog. Continued use after changes constitutes acceptance.
Contact
Lawn Dart Systems, LLC
privacy@lawndart.dev
This policy is provided in good faith and is not legal advice. For binding terms regarding consulting engagements, see your signed agreement with Lawn Dart Systems, LLC.