Privacy Policy
Last updated: August 2026
This Privacy Policy explains how AMPELORA collects, uses, and protects information across the AMPELORA website (ampelora.com), the AMPELORA Business app, and the Public Booking page (book.ampelora.com).
For any privacy-related inquiry: privacy@ampelora.com
Data We Collect
Business owner data: name, email, phone number, business name and type, and branch details.
Employee data (entered by the business owner): name, phone, email (optional), and job title.
Client data (entered by the business owner): name, phone, and booking history (date, service, price, status, notes).
Customers can also book directly through the public booking page or a business's QR code, without creating an AMPELORA account — no separate customer profile is created. In that case, we collect only what they submit themselves — name, phone number, the details of that booking, and, only when the selected service requires it, their location (see "Location Permission" below).
We keep a snapshot of a client's name and phone number inside each booking record at the time it is created, to preserve an accurate historical record even if the client is later deleted.
Depending on how you sign in, we may also process your email and password, your phone number (for a one-time SMS verification code), or basic profile information shared by Google or Apple when you sign in with them.
Important: neither the website nor the app currently process or store any payment or credit card information.
How We Use This Data
Operating accounts and authentication (sign-in, password recovery).
Enabling business owners to manage their branches, employees, clients, and bookings.
Powering the public booking page so customers can book a service, employee, and time.
Showing local reminders and booking notifications on a user's own device.
Sending essential operational emails.
Improving performance and security.
We do not use your data for advertising, and we do not sell it to any third party.
Where Your Data Is Stored
Our database is hosted with Supabase in Frankfurt, Germany (EU). Push notifications are delivered via Google Firebase Cloud Messaging and, on iOS, Apple Push Notification service. Domain and hosting services are managed via Cloudflare. Account-related emails are sent through our authentication provider.
Sharing Data With Third Parties
We do not share your data for marketing purposes. Sharing is limited to the technical service providers necessary to operate the website, app, and public booking page.
If you sign in with Google, Apple, or via SMS, those providers only receive the minimum information needed to authenticate you — never used by us for advertising or tracking.
Subscription & Free Trial
New accounts get a 14-day free trial. After the trial (or if a subscription lapses), the account switches to read-only mode: existing data stays fully visible, but new bookings, clients, or edits are blocked until renewal.
The subscription (₪99/month) is purchased through official AMPELORA channels, never inside the app itself — the app does not process or store any payment or card details. We only store subscription status and relevant dates (trial end date, period end date) to determine whether an account can be edited.
Data Retention
We retain your data for as long as your account remains active.
Account Deletion
You can request account deletion directly from within AMPELORA Business (Settings → Delete Account) — no email required.
As soon as the request is submitted, you are signed out automatically.
You have 14 days to cancel the request: simply log back in during this period to automatically cancel the deletion and regain full access to your data.
If you do not log in within 14 days, your account and all its data are permanently deleted and cannot be recovered afterwards.
Location Permission
The app only asks for location permission when it's actually needed — typically once, while setting up a business — never automatically on launch.
We request approximate (coarse) location only, use it once to detect the country, and immediately discard the coordinates — they are never stored anywhere.
Declining location permission never breaks the app: currency simply stays at its default value, and can always be set manually from Settings.
For services that require it — such as field or home services where the business comes to you, or moving services with a pickup and a drop-off point — location is collected and stored with the booking, so the business can navigate there. This only happens for a service that actually requires it, or when the customer chooses to provide it themselves.
This location is never shown publicly, is never included in notifications, and is only visible to the business the booking was made with.
Whether a location is requested depends on the profession and the specific service: businesses customers visit (barbershops, salons, clinics) never request a location; field and home services request a single customer location; transport, moving and delivery services request both a pickup and a drop-off location.
When a booking includes a location, the business owner can open it in a maps or navigation application (such as Google Maps or Apple Maps) to travel there. AMPELORA does not track anyone's location continuously, and does not follow a customer's location after the booking is submitted.
Notifications
Booking notifications and reminders reach you in two ways: notifications generated locally on your own device, and push notifications delivered through Google's Firebase Cloud Messaging (and, on iOS, Apple Push Notification service).
To deliver push notifications, a notification token is stored for each signed-in device, linked to that business. The token identifies the device to the notification service only; it is not used for advertising or tracking. Notification content is limited to the fact that a booking or quote request was received, along with the client and service name — customer locations are never included in a notification.
Notifications respect the device's notification settings and the sound/haptics toggles inside the app's Settings, and can be turned off at any time. If notification permission is revoked, the stored token stops being used.
Your Rights
Access the personal data we hold about you.
Request correction of any inaccurate data.
Request deletion of your data ("right to be forgotten").
Object to specific processing of your data.
Data Security
Access to your data is limited to your own business account: each business's records are isolated from every other business at the database level, traffic is encrypted in transit, and data is encrypted at rest. Passwords are never stored by us in readable form. No system can be guaranteed completely secure, but we work to keep these protections current.
Children
AMPELORA is directed at adult business owners and their customers. We do not knowingly collect data from individuals under 16.
Changes to This Policy
This policy may be updated from time to time. Updates will be published on this page.
Contact Us
Privacy Officer: Bashar Abdulrahman — privacy@ampelora.com. Send privacy inquiries and access, correction, or deletion requests to this address.
General support: support@ampelora.com
General inquiries: info@ampelora.com