SlotFill
Schedule Continuity System
1. Information We Collect
🔒 Minimal Data Collection
SlotFill only collects essential information for scheduling:
- Phone Number: Required for SMS notifications
- Name (Optional): For personalization
- Email (Admin only): For account access
- Appointment Data: Time, duration, therapist assignment
We never collect sensitive health information beyond what's necessary for scheduling.
2. Data Security & Compliance
🔒 HIPAA Compliant
All data processing is handled through HIPAA-compliant providers:
- Supabase: Encrypted database with HIPAA compliance
- Twilio: Secure SMS services with HIPAA compliance
- Encryption: AES-256 encryption for data at rest and in transit
- Access Controls: Strict authentication and authorization
3. How We Use Your Information
We use your information only for:
- Scheduling and managing appointments
- Sending SMS notifications for appointment reminders
- Maintaining waitlists for cancelled appointments
- Providing customer support
We never use your data for marketing, advertising, or sell it to third parties.
4. Data Retention
Appointment data is retained for 2 years for operational purposes and then automatically deleted. Users can request immediate deletion of their data at any time.
5. Your Rights
You have the right to:
- Access your data
- Correct inaccurate information
- Delete your data
- Opt-out of SMS communications
- Request a copy of your data
6. Third-Party Services
We use trusted third-party services:
- Supabase: Database and backend services
- Twilio: SMS delivery services
- Resend: Email notifications (admin only)
All third parties are HIPAA-compliant and sign data protection agreements.
7. Security Measures
We implement multiple security layers:
- End-to-end encryption
- Regular security audits
- Secure authentication (multi-factor available)
- Network security monitoring
- Employee background checks
8. Contact & Support
For privacy-related questions or to exercise your rights:
privacy@slotfill.app
General support:
support@slotfill.app
Last updated: January 30, 2026