Saika · Privacy
Privacy Policy
Last updated: 2026-05-13.
Scope
This Privacy Policy describes how Saika ("we", "us") collects, uses, and
protects information when a salon owner or their staff uses the Saika
admin console at admin.kiosk.saika.app, the Saika in-shop
iPad kiosk, or visits this site.
Information we collect
- Account information — the email address a salon owner signs in with via Google (federated through AWS Cognito) and the display name returned by Google.
- Workspace and customer records — salon profile, staff records, service catalog, customer contact information, appointments, intake and survey answers, visit records, service/package sales records, receipt records, and photos that salon staff enter or attach inside their workspace.
- Device and enrollment data — enrolled shop-device identifiers, device names, access scopes, pairing events, and token refresh events used to keep salon devices connected to the correct workspace.
- Operational logs — request logs, error logs, and aggregated usage metrics from the application infrastructure. These do not contain customer-record contents.
- Email events — for pairing messages we send, we record delivery, bounce, and complaint events from our email provider so we can suppress future sending to addresses that hard-bounced or complained.
What we do not collect
- We do not use third-party advertising or analytics trackers on this site or in the admin console.
- We do not maintain a marketing email list and we do not send marketing email to anyone.
- We do not sell or rent personal information to anyone, and we do not share workspace data across salons.
How we use information
We use the information above to operate the service: authenticating salon-owner sessions, displaying workspace data back to the salon who entered it, sending the pairing email a salon owner initiates, and maintaining the technical health of the service. We do not use this information for any other purpose.
Retention
Workspace data is retained for as long as the salon's workspace is active. When a workspace is archived by its owner, workspace data is retained for 30 days for recovery and then permanently deleted. Email suppression records (for addresses that hard-bounced or complained) are retained indefinitely so we do not retry sending to an address that has signalled we should stop.
Storage and security
Saika runs on Amazon Web Services. Workspace data lives in encrypted-at-rest DynamoDB tables; uploaded files live in encrypted-at-rest S3 buckets. All network traffic is over TLS. Access to production systems is limited to a small set of operators with multi-factor authentication required.
Your rights
If you are an end customer of a salon that uses Saika, the salon is the controller of your data. Please contact that salon directly for access, correction, or deletion requests about your customer record. If you are a salon owner using Saika and need to access, export, or delete your workspace data, email support@saika.app from the email address that owns the workspace.
Contact
Questions about this policy can be sent to support@saika.app.