Plug N Play

Privacy Policy

Effective Date: March 1, 2026

Last Updated: March 30, 2026

1. Information We Collect

When you create an account, subscribe to a plan, or interact with the Plug N Play platform, we collect the following types of information:

Account Information

We collect your name, email address, phone number, business name, and billing address when you register for an account. If you subscribe to a paid plan, our payment processor (Stripe) handles your credit card or bank account information directly. We do not store full payment card numbers on our servers.

Usage Data

We automatically collect information about how you use the platform, including pages visited, features used, session duration, device type, browser type, operating system, IP address, and referring URLs. This data helps us understand how our platform is used and identify areas for improvement.

Cookies and Tracking Technologies

We use cookies, local storage, and similar technologies to maintain your session, remember your preferences, and analyze site traffic. Essential cookies are required for the platform to function. Analytics cookies help us understand usage patterns and may be declined through your browser settings.

2. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the Plug N Play platform and all associated services, including scheduling, invoicing, CRM, client portals, and reporting.
  • Process transactions, send invoices, and manage your subscription and billing.
  • Send transactional communications such as account confirmations, password resets, appointment reminders, and invoice notifications.
  • Improve the platform by analyzing usage trends, diagnosing technical issues, and developing new features.
  • Respond to support requests, feedback, and inquiries you submit through our contact forms or email.
  • Ensure the security of your account and our infrastructure by detecting fraud, unauthorized access, and other malicious activity.

3. How We Share Your Information

We do not sell, rent, or trade your personal information to third parties. We share information only in the following limited circumstances:

  • Service Providers: We work with trusted third-party providers who assist us in operating the platform. These include Vercel (hosting), Supabase (database and file storage), Stripe (payment processing), Resend (transactional email), and Twilio (SMS and voice). These providers only access your data as needed to perform their services and are bound by their own privacy policies.
  • Legal Requirements: We may disclose your information if required to do so by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of Plug N Play, our users, or the public.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you via email or a prominent notice on our website before your information becomes subject to a different privacy policy.

4. Data Security

We take the security of your data seriously and implement industry-standard measures to protect it:

  • All data transmitted between your browser and our servers is encrypted using TLS 1.2 or higher.
  • Data at rest is encrypted in our database using AES-256 encryption provided by our infrastructure partner, Supabase.
  • Access to production systems is restricted to authorized personnel using role-based access controls and multi-factor authentication.
  • We perform regular security reviews and keep our dependencies updated to address known vulnerabilities.
  • Passwords are hashed using bcrypt and are never stored in plaintext.

While no method of electronic transmission or storage is completely secure, we strive to use commercially reasonable means to protect your information.

5. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: You can request a copy of the personal data we hold about you at any time by contacting us.
  • Correction: You can update or correct your account information directly through the platform settings, or by contacting us.
  • Deletion: You can request that we delete your account and associated personal data. We will fulfill your request within 30 days, except where we are required to retain data for legal or compliance purposes.
  • Data Export: You can export your data (clients, appointments, invoices, and other records) in standard formats (CSV, JSON) from within the platform at any time.
  • Opt-Out: You can unsubscribe from marketing emails at any time using the link in any marketing email, or by contacting us. Transactional emails related to your account or service cannot be opted out of while your account is active.

6. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except for records we are required to keep for tax, legal, or compliance purposes (such as invoice records, which are retained for 7 years in accordance with IRS requirements).

7. Children's Privacy

Plug N Play is designed for use by businesses and is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

8. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email or by posting a prominent notice on our website at least 30 days before the changes take effect. Your continued use of the platform after the effective date constitutes your acceptance of the updated policy.

9. Contact Us

If you have questions about this Privacy Policy, want to exercise your data rights, or have concerns about how we handle your information, contact us at:

Email: privacy@plugnplay.app

Mail: Plug N Play, Attn: Privacy, New Jersey, USA