Legal

Privacy Policy

Last updated: May 27, 2026

ZenCoach helps coaches manage client communication, scheduling, payments, and customer workflows. This Privacy Policy explains the information we collect, how we use it, and the choices available to you.

Information We Collect

We may collect account information, coaching business information, contacts and customer records, session details, payment-related records, support messages, device and usage data, and integration data needed to connect ZenCoach with third-party services.

Meta and Instagram Data

When you connect Instagram through Meta APIs, ZenCoach may collect and process Instagram account IDs, usernames, access tokens, conversation IDs, message content, sender IDs, timestamps, webhook metadata, and related integration records.

Google OAuth, Calendar, and Gmail Data

When you connect a Google account, ZenCoach may collect and process Google OAuth identifiers, account email addresses, profile information, access tokens, refresh tokens, granted scopes, token expiration details, Google Calendar IDs, calendar names, event IDs, event titles, event descriptions, start and end times, attendee information, availability, time zones, conference details, Gmail message IDs, thread IDs, labels, headers, sender and recipient addresses, subject lines, message bodies, attachments, timestamps, and related API metadata needed to provide the Google-connected features you authorize.

Stripe and Stripe Connect Data

When you use payments or connect a Stripe account, ZenCoach may collect and process Stripe customer IDs, connected account IDs, account session IDs, onboarding status, account capability status, business profile information, payment intent IDs, checkout session IDs, subscription IDs, invoice IDs, charge IDs, refund IDs, dispute IDs, payout IDs, transfer IDs, balance transaction IDs, payment status, amounts, currencies, timestamps, receipt details, webhook event IDs, webhook metadata, and related Stripe integration records. Stripe may collect payment method details, bank account details, identity verification information, tax information, and other compliance information directly through Stripe-hosted or Stripe-powered flows.

How We Use Information

  • Provide app functionality such as reading Instagram messages, sending replies, managing contacts, notifying users, scheduling sessions, and supporting customer management workflows.
  • Provide Google-connected functionality such as signing in with Google, syncing calendars, checking availability, creating and updating calendar events, sending emails, reading or organizing authorized Gmail messages, connecting client communication to customer records, and supporting reminders, scheduling, and customer management.
  • Provide Stripe-connected functionality such as accepting payments, managing subscriptions or invoices, routing funds through Stripe Connect, onboarding connected accounts, tracking payment and payout status, handling refunds and disputes, supporting receipts, and maintaining payment-related customer records.
  • Maintain account security, troubleshoot integrations, provide customer support, improve reliability, and comply with legal, billing, fraud-prevention, security, and compliance obligations.
  • Process payments and maintain business records related to coaching services, subscriptions, invoices, and transaction history.

Data Security and Protection

ZenCoach protects sensitive data through industry-standard security measures. Data in transit between your browser or device and our servers is encrypted using TLS. OAuth access tokens and refresh tokens obtained from Google, Meta, or other integrations are stored encrypted at rest. We apply role-based access controls so that only authorized systems and personnel can access integration credentials and user data. Sensitive credentials such as OAuth tokens are never exposed in client-side code or logs. We conduct periodic reviews of our security practices and promptly address any identified vulnerabilities. Payment method data is processed and stored by Stripe, a PCI DSS-compliant provider, and ZenCoach does not store raw card numbers or bank account details. We monitor for unauthorized access and maintain incident response procedures to detect and respond to potential data breaches.

Google API Limited Use

ZenCoach's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. ZenCoach does not sell Google user data, does not use Google Calendar or Gmail data for advertising, and does not use Gmail message content for ad targeting or unrelated marketing purposes. Human access to Google user data is limited to cases where it is necessary to provide support, investigate security or abuse, comply with law, or when you have given us permission.

Instagram Data Restrictions

ZenCoach does not sell Instagram data. ZenCoach does not use Instagram direct message content for advertising, ad targeting, or unrelated marketing purposes.

Stripe Data Restrictions

ZenCoach does not sell Stripe payment or Stripe Connect data and does not use Stripe transaction, payout, bank account, or identity verification data for advertising or ad targeting. Payment method and bank account details are handled by Stripe, and ZenCoach stores only the limited identifiers and metadata needed to provide payment, billing, payout, support, fraud-prevention, security, and compliance functionality.

Sharing and Service Providers

We may share information with trusted service providers that help us operate ZenCoach, such as hosting, analytics, email delivery, payment processing, customer support, and integration infrastructure. These providers are permitted to use information only to provide services to ZenCoach or as legally required.

Data Retention

We retain information for as long as needed to provide ZenCoach, maintain business records, comply with legal obligations, resolve disputes, prevent fraud or abuse, and enforce our agreements. You may request deletion of eligible data as described on our Data Deletion Instructions page.

Your Choices

You may update account information in ZenCoach, disconnect integrations, remove ZenCoach from Meta/Facebook/Instagram app settings, or request deletion of eligible data by contacting us.

Contact

For privacy questions or requests, contact info@zencoach.io.