top of page

Based on customer reviews, this salon was voted “Top Rated” for 2023.

Based on customer reviews, this salon was voted “Top Rated” for 2023.

Organic hair spa logo

Introduction We ("we", "us", "our") take the protection of user data ("users" or "you") of our website and/or our mobile app (the "website" or the "mobile app") very seriously and are committed to protecting the information users provide us in connection with the use of our website and/or our mobile app (collectively, "digital assets"). Furthermore, we commit to protecting your data in accordance with applicable law and using it responsibly.

This privacy policy explains our practices regarding the collection, use, and disclosure of your data through the use of our digital assets (the "services") when you access the services via your devices.

Please read this privacy policy carefully and ensure that you fully understand our practices regarding your data before using our services. If you have read and fully understood this policy and do not agree with our practices, you must cease using our digital assets and services. By using our services, you acknowledge the terms of this privacy policy. Continued use of the services constitutes your consent to this privacy policy and any changes thereto.

In this privacy policy, you will learn:

How we collect data What data we collect Why we collect this data To whom we disclose the data Where the data is stored How long the data is retained How we protect the data How we handle minors Updates or changes to the privacy policy

What data do we collect? Category: Always Below is an overview of the data we may collect:

Unidentified and non-identifiable information that you provide during the registration process or that is collected through the use of our services ("non-personal data"). Non-personal data does not allow identification of the individual from whom it was collected. The non-personal data we collect primarily consists of technical and aggregated usage information.

Individually identifiable information, meaning information that can identify you or could reasonably identify you ("personal data"). Personal data we collect through our services may include information requested from time to time, such as names, email addresses, addresses, phone numbers, IP addresses, and more. When we combine personal and non-personal data, they will be treated as personal data as long as they remain in combination.

How do we collect data? Category: Always The main methods we use to collect data are as follows:

We collect data when you use our services. Therefore, when you visit our digital assets and use services, we may collect, record, and store usage, sessions, and related information.

We collect data you provide to us directly, for example, when you contact us directly via a communication channel (e.g., an email with a comment or feedback).

We may, as described below, collect data from third-party sources.

We collect data you provide to us when you sign up for our services through a third-party such as Facebook or Google.

Why do we collect this data? Category: Always We may use your data for the following purposes:

To provide and operate our services;

To develop, customize, and improve our services;

To respond to your feedback, inquiries, and requests and provide assistance;

To analyze request and usage patterns;

For other internal, statistical, and research purposes;

To enhance our data security and fraud prevention capabilities;

To investigate violations and enforce our terms and policies, as well as to comply with applicable law, regulations, or regulatory orders;

To send you updates, news, promotional materials, and other information related to our services. You may choose whether to continue receiving these marketing emails. If not, simply click the unsubscribe link in these emails.

To whom do we disclose this data? Category: Always We may disclose your data to our service providers to operate our services (e.g., storing data through third-party hosting services, providing technical support, etc.).

We may also disclose your data under the following circumstances: (i) to investigate, prevent, or take action regarding illegal activities or misconduct; (ii) to establish or exercise our rights to defend against legal claims; (iii) to protect our rights, property, or personal safety, as well as the safety of our users or the public; (iv) in the event of a change of control within us or one of our affiliated companies (such as through a merger, acquisition, or purchase of substantially all assets, etc.); (v) to collect, retain, and/or manage your data through authorized third-party providers (such as cloud service providers) as far as reasonable for business purposes; (vi) to work jointly with third parties to improve your user experience. To avoid misunderstanding, we would like to emphasize that we may transmit or disclose non-personal data to third parties at our discretion or otherwise use it.

Category: User has a blog or forum Please note that our services enable social interactions (e.g., posting content, information, and comments publicly and chatting with other users). We remind you that any content or data you provide in these areas may be read, collected, and used by other individuals. We advise against posting or sharing information that you do not want to make public. If you upload content to our digital assets or provide it in any other way as part of using a service, you do so at your own risk. We cannot control the actions of other users or members of the public with access to your data or content. You acknowledge and agree that copies of your data may remain accessible on cached and archived pages or after a third party has made a copy/stored your content.

Cookies and similar technologies When you visit or access our services, we authorize third parties to use web beacons, cookies, pixel tags, scripts, as well as other technologies and analytics services ("tracking technologies"). These tracking technologies may allow third parties to automatically collect your data to enhance the navigation experience on our digital assets, optimize their performance, ensure a customized user experience, and for security and fraud prevention purposes.

To learn more, please read our Cookie Policy.

Category: User is NOT affiliated with an advertising service Without your consent, we will not share your email address or other personal data with advertising companies or ad networks.

Category: User is affiliated with an advertising service, campaign manager, or Facebook Ads We may deliver advertisements through our services and our digital assets (including websites and applications using our services) that may be tailored to you, based on, for example, advertisements based on your recent browsing behavior on websites, devices, or browsers.

To provide these advertisements to you, we may use cookies and/or JavaScript and/or web beacons (including transparent GIFs) and/or HTML5 Local Storage and/or other technologies. We may also utilize third parties such as network advertisers (i.e., third parties displaying ads based on your website visits) to serve targeted ads. Third-party ad network providers, advertisers, sponsors, and/or website traffic measurement services may also use cookies and/or JavaScript and/or web beacons (including transparent GIFs) and/or Flash cookies and/or other technologies to measure the effectiveness of their ads and tailor ad content to you. These third-party cookies and other technologies are subject to the specific privacy policy of the respective third party, not this one.

Where do we store the data? Category: Always Non-personal data

Please note that our companies as well as our trusted partners and service providers are located worldwide. For the purposes explained in this privacy policy, we store and process all non-personal data we collect in different jurisdictions.

Category: User provides personal data Personal data

Personal data may be maintained, processed, and stored in the United States, Ireland, South Korea, Taiwan, Israel, and other jurisdictions as necessary for the proper provision of our services and/or as required by law (as further explained below).

How long do we retain the data? Category: Always Please note that we retain collected data for as long as necessary to provide our services, to comply with our legal and contractual obligations to you, to resolve disputes, and to enforce our agreements.

We may correct, supplement, or delete incorrect or incomplete data at our discretion at any time.

How do we protect the data? Category: Always The hosting service for our digital assets provides us with the online platform through which we can offer our services to you. Your data may be stored on secure servers behind a firewall, and secure HTTPS access is provided to most areas of its services.

Category: User accepts payments/eCommerce All payment options offered by us and our hosting provider for our digital assets comply with the PCI-DSS (Payment Card Industry Data Security Standard) of the PCI Security Standards Council. This involves collaboration among brands such as Visa, MasterCard, American Express, and Discover. PCI-DSS requirements help ensure the secure handling of credit card information (including physical, electronic, and procedural measures) by our shop and service providers.

Category: Always Despite the measures and efforts taken by us and our hosting provider, we cannot and will not guarantee absolute protection and security of the data you upload, post, or otherwise transmit to us or others.

For this reason, we urge you to set secure passwords and refrain from transmitting confidential information to us or others whenever possible. Since email and instant messaging are not considered secure forms of communication, we also ask you not to disclose confidential information via any of these communication channels.

How do we handle minors? Category: User does NOT collect data from minors The services are not intended for users who have not yet reached the legal age of majority. We will not knowingly collect data from children. If you are not of legal age, you should not download or use the services or provide us with any information.

We reserve the right to request proof of age at any time to verify whether minors are using our services. In the event that we become aware that a minor is using our services, we may prohibit such users from accessing our services and block them, and we may delete all data stored about such users. If you have reason to believe that a minor has provided data to us, please contact us as explained below.

Category: User collects data from minors Children may use our services. However, if they wish to access certain features, they may need to provide certain information. The collection of some data (including data collected through cookies, web beacons, and other similar technologies) may occur automatically. If we knowingly collect, use, or disclose data collected from a child, we will provide notice and obtain parental consent in accordance with applicable law. We will not make a child's participation in an online activity contingent on the child providing more contact information than is reasonably necessary for participation in that activity. We use the data we collect only in connection with the services requested by the child.

We may also use a parent's contact information to communicate about the child's activities in the services. Parents can view data we have collected from their child, prohibit us from collecting further data from their child, and request that we delete all data we have collected from our records.

Please contact us to review, update, or delete your child's data. For your child's protection, we may request proof of your identity. We may deny you access to the data if we doubt your identity. Please note that certain data cannot be deleted due to other legal obligations.

Category: Always We only use your personal data for the purposes set forth in the privacy policy and only when we are convinced that:

the use of your personal data is necessary to fulfill or conclude a contract (e.g., to provide you with the services themselves or customer service or technical support);

the use of your personal data is necessary to comply with legal or regulatory obligations, or

the use of your personal data is necessary to support our legitimate business interests (provided that this is always done in a manner that is proportionate and respects your privacy rights).

As an EU resident, you may:

request confirmation as to whether personal data concerning you is being processed and obtain access to your stored personal data and certain additional information;

request receipt of personal data you have provided to us in a structured, commonly used, and machine-readable format;

request correction of your personal data stored by us;

request deletion of your personal data;

object to the processing of your personal data by us;

request restriction of the processing of your personal data, or

submit a complaint to a supervisory authority.

However, please note that these rights are not unlimited and may be subject to our own legitimate interests and regulatory requirements. If you have general questions about the personal data we collect and how we use it, please contact us as indicated below.

In providing the services, we may transfer data across borders to affiliated companies or other third parties, from your country/jurisdiction to other countries/jurisdictions worldwide. By using the services, you consent to the transfer of your data outside the EEA.

If you are a resident of the EEA, your personal data will only be transferred to locations outside the EEA if we are convinced that an adequate or comparable level of protection for personal data exists. We will take appropriate steps to ensure that we have appropriate contractual agreements with our third parties to ensure that appropriate security measures are taken 

, so as to minimize the risk of unlawful use, alteration, deletion, loss, or theft of your personal data, and that these third parties act in accordance with applicable laws at all times.

Rights under the California Consumer Privacy Act

If you are a California resident using the services, you may be entitled under the California Consumer Privacy Act ("CCPA") to request access to and deletion of your data.

To exercise your right to access and delete your data, please see below for how to contact us.

Category: The website does not sell its users' data We do not sell users' personal data for the purposes and intentions of the CCPA.

Category: Websites with a blog or forum Users of the services who are residents of California and under 18 years of age may request and obtain deletion of their posted content by emailing us at the address provided in the "Contact" section below. These requests must be marked "California Removal Request." All requests must include a description of the content you wish to be deleted and sufficient information to help us locate the material. We do not accept notices that are not properly marked or transmitted, and we may not be able to respond if you do not provide sufficient information. Please note that your request does not ensure that the material will be completely or comprehensively deleted. For example, material you post may be republished or reposted by other users or third parties.

Updates or changes to the Privacy Policy Category: Always We may revise this privacy policy at our discretion from time to time; the version published on the website is always current (see "Effective Date"). We ask you to check this privacy policy regularly for changes. In the event of significant changes, we will publish a notice on our website. If you continue to use the services after being notified of changes on our website, this constitutes your acknowledgment and consent to the changes to the privacy policy and your agreement to be bound by the terms of those changes.

Contact Category: Always If you have general questions about the services or the data we collect about you and how we use it, please contact us at:

Name: Address: Email:

DISCLAIMER The information contained herein does not constitute legal advice, and you should not rely solely on it. Specific requirements regarding legal terms and policies may vary from state to state and/or legal system to legal system. As stated in our terms of use, you are responsible for ensuring that your services comply with the law applicable to you and adhering to it.

To ensure that you fully comply with your legal obligations, we strongly recommend that you seek professional advice to better understand which requirements specifically apply to you.

Data protection

bottom of page