Skip to content

Privacy Policy

Last updated August 26, 2026

Who we are

Pupline is a business tool for pet care businesses, from solo sitters and walkers to daycares, boarding and kennels. It is an independent product run by its founder. This policy explains what we collect, why, and the choices you have.

Two kinds of information

Some of what we hold is about you: your email, your business details, your subscription. The rest is about your clients, their pets and your staff — you enter it, we hold it on your behalf, and you can export or delete it at any time. We don’t use your clients’ information for anything other than running Pupline for you.

What we collect

Account data: your email address and the business details you enter (business name, currency, sales-tax rate, the kind of work you do, and your language), plus your plan and subscription status.

Data you add: the clients, pets, appointments, care & report cards, vaccinations, photos, invoices and notes you create to run your business — and, if you run a facility, your runs, stays and occupancy records along with your staff members, their shifts and their time-clock entries.

What your clients send you: when someone books through your booking link or your Pupline website, we receive what they submit — their name, contact details, their pet’s details and any notes — and store it in your account for you to act on.

Vault entries: labels and values you store (for example gate codes or alarm PINs), which are encrypted at rest and shown to you when you’re signed in.

Usage data: which pages you open, which features you use, your browser and device type, and session replays — described in full below.

Notification data: if you turn on notifications, the push subscription your browser or phone issues, so we can deliver them.

We do not see payment card numbers. Invoices you send your clients record only the payment-method note you type (such as “Venmo” or “cash”), and your own Pupline subscription is charged through Polar, which handles card details on its own systems.

Analytics & session replay

We use PostHog to see how Pupline is used and to find bugs. That includes page views, feature events, and session replay — a reconstruction of what happened on screen, so we can see how a problem actually occurred. It is heavily redacted by design: every value you type and every piece of on-screen text is masked, so a replay shows layout and interactions rather than content. Sign-in screens are excluded from recording entirely, and the booking-link pages your clients use are never recorded at all. Visitors who aren’t signed in are not profiled. We use this to fix and improve the product, and we don’t sell it.

How we use it

To provide the service: showing your schedule, generating care cards, report cards and invoices, sending the links and reminders you trigger, delivering the notifications you turn on, publishing your booking page and website, billing your subscription, answering your support requests, and keeping your account secure. We do not sell your data or your clients’ data.

Where it lives & who processes it

Data is hosted in the United States. We use a small set of providers to operate Pupline: Supabase (database, sign-in, file storage), Vercel (hosting), Resend (email delivery), Polar (subscription billing) and PostHog (analytics and session replay). If you connect them yourself, we also exchange calendar data with Google Calendar or Apple iCloud. These providers process data on our behalf under their own terms.

Calendar connections

Connecting Google Calendar or Apple iCloud lets Pupline write your appointments into your own calendar and check when you’re busy. It is a one-way push: appointments you create, change or cancel in Pupline appear in your calendar, but events you create in your calendar do not become Pupline appointments. For availability checks, Google returns only your busy times and never event details; for iCloud, Pupline reads the entries in the window it is checking and keeps only the busy times from them. You can disconnect either one at any time.

What’s public

Your Pupline website and your booking link are public pages. Anything you put on them — business name, description, services, prices, photos, contact details, hours — is visible to anyone and can be indexed by search engines. Your client records, your notes and your Vault entries are never published.

Cookies

We use cookies to keep you signed in, to remember your language, and for the analytics described above. If you arrive through an affiliate link, we set a short-lived cookie so the referral can be credited. We don’t run advertising cookies.

The Vault

Vault values are encrypted at rest and shown to the signed-in operator. We manage the encryption keys required to operate the service, so this is strong protection for stored secrets rather than a guarantee about every possible form of access. Marketing copy reflects this: we describe the Vault as “encrypted at rest.”

Support access

To investigate a problem you report, we can sign in to your account as you. We use this only for support and operations, and such a session behaves exactly like your own — the same permissions, the same records.

Your choices

You can export all of your data as a JSON file at any time from Settings, and you can delete your account and all associated data from the same screen. Deletion is permanent. You can also disconnect a calendar or turn notifications off whenever you like.

Retention

We keep your data while your account is active. When you delete your account, we remove your records and stored files and delete your sign-in. Billing records are kept for as long as we are required to keep them, and analytics data ages out on our provider’s schedule.

Children

Pupline is for business use by adults and is not directed to children.

Contact

Questions about this policy? Email hello@pupline.app.