PRIVACY

Collect less. Explain what we keep.

This page describes the data the current WhatShePaid pilot actually uses. It is intentionally narrower than a generic legal-policy template.

Price reports

An anonymous Gel-X report includes the NYC area, visit date and total before tip, plus optional tip, provider name and context if you choose to add them. The service and market are fixed to Gel-X and NYC in this pilot.

Pseudonymous retry protection

We set a random HttpOnly contributor cookie and store a one-way hash of it. It helps prevent an accidental retry from becoming a second report and supports rough distinct-contributor counts. It is not presented publicly as your identity.

Analytics and updates

Product analytics record coarse events such as landing, contribution start and successful contribution. Contribution amounts, provider names, neighborhoods, email addresses and contributor identifiers are not included in those event payloads. If you join product updates, your email is stored separately in the waitlist.

Listed/provider data

We do not need customer PII from salons. A provider feed should contain only the minimum fields needed for service-price evidence. The pilot does not ask salons for customer names, emails, phone numbers, card data or customer IDs.

Salon inquiries

If you submit a correction, confirmation or feed request, we store the salon name, request type and contact email, plus the optional contact name, official URL and message you provide. We use those details to review and reply to the inquiry; they are not published in the consumer price feed or sent in product analytics.