← Back to Schedulo

Privacy Policy

Last updated: May 1, 2026

This Privacy Policy describes how Schedulo ("we", "our", "us") collects, uses, and protects your personal information when you use the scheduling platform available at bookwithschedulo.com (the "Service").

By using Schedulo, you agree to the practices described in this policy. If you do not agree, please do not use the Service.

1. Information We Collect

1.1 Information you provide directly

1.2 Information from connected third-party services

If you connect a third-party service (such as Google Calendar), we receive limited data from that service to provide the integration. See Section 4 for details.

1.3 Information collected automatically

2. How We Use Your Information

We use the information we collect to:

We do not sell your personal information to third parties. We do not use your data for advertising.

3. How We Share Information

We share your information only in these limited circumstances:

4. Google Calendar Data

Schedulo's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

If you choose to connect your Google Calendar to Schedulo, we request the following OAuth scopes from Google:

ScopeHow we use it
calendar.events Create, update, and delete events on your primary Google Calendar when bookings are made, rescheduled, or cancelled through Schedulo. Events automatically include a Google Meet link.
calendar.readonly Read your busy/free times to prevent double-bookings, and display your existing Google Calendar events alongside your Schedulo bookings in the unified calendar view.
userinfo.email / profile Identify which Google account is connected so you can manage the integration.

4.1 Storage and security

4.2 Limited use compliance

We use Google Calendar data only to provide and improve the user-facing features described above. Specifically, we do not:

4.3 Disconnecting

You can disconnect Google Calendar at any time from the Integrations page in Schedulo. When you disconnect:

5. Microsoft Calendar Data

If you connect Microsoft Calendar (Outlook), Schedulo requests these Microsoft Graph API scopes via OAuth:

ScopeHow we use it
Calendars.ReadWrite Create, update, and delete events on your primary Outlook calendar when bookings are made through Schedulo.
OnlineMeetings.ReadWrite Auto-generate Microsoft Teams meeting links for created events.
User.Read Identify which Microsoft account is connected to label the integration in our UI.
offline_access Refresh access tokens without requiring re-authentication every hour.

The same security and Limited Use compliance described in Section 4 (Google Calendar Data) applies to Microsoft data: encrypted-at-rest tokens, no event content storage, no advertising use, no data resale, no AI training. You can disconnect at any time from Schedulo's Integrations page.

6. Zoom Data

Schedulo's use and transfer of information received from Zoom APIs adheres to the Zoom Data Use & Compliance Policy.

If you connect Zoom, Schedulo requests these scopes via OAuth:

ScopeHow we use it
meeting:write Create unique Zoom meetings in your account when guests book through your Schedulo scheduling links. Each booking gets its own meeting with a fresh join URL.
meeting:read List your scheduled Zoom meetings to display alongside Schedulo bookings in our unified Calendar view.
meeting:delete Delete Zoom meetings when bookings are cancelled, keeping Zoom in sync.
user:read Identify which Zoom account is connected to label the integration in our UI.

6.1 Storage and security

6.2 Limited use compliance

We use Zoom data only to provide the meeting-creation features described above. We do not:

6.3 Disconnecting

You can disconnect Zoom at any time from the Integrations page in Schedulo. When you disconnect:

7. Data Retention

We retain your account information for as long as your account is active. When you delete your account:

8. Your Rights

You have rights under multiple regulations including:

You can exercise the most common rights directly inside the app:

For other requests (correction, restriction, objection, complaints), email support@bookwithschedulo.com. We respond within 30 days. India users may also escalate complaints to the Data Protection Board of India once it is operational.

9. Children's Privacy

Schedulo is not directed to children. The minimum age depends on your jurisdiction:

If you believe a child has provided us information without proper consent, contact us and we will delete it within 7 days.

10. International Data Transfers

Schedulo is operated from India. Personal data is hosted on Supabase (database, region: ap-south-1, Mumbai), Render (API, region: oregon-us), and Vercel (frontend, edge globally). If you access the Service from outside India, your data may be transferred between these regions. We rely on standard contractual safeguards with each provider. By using the Service, you consent to these transfers.

11. Security & Encryption

We implement multiple layers of safeguards:

No method of transmission or storage is 100% secure. We commit to disclosing material security incidents that affect your data within 72 hours of confirmation, as required by the DPDP Act.

12. Changes to This Policy

We may update this Privacy Policy from time to time. The "Last updated" date at the top reflects the most recent revision. Material changes will be communicated via email or an in-app notice. Continued use of the Service after changes constitutes acceptance.

13. Contact

Questions, concerns, or requests? Email us at support@bookwithschedulo.com.