Skip to content
Menu
At launch

Your clients are yours. So is their data.

Pommette never sells any data, never writes to your clients on its own behalf and never shows them to any other practice. Pommette is designed and built in France, your data is hosted in France and health answers are encrypted.

  • Built in France, hosted in France
  • Protected health data
  • No card numbers on our side
Who does what with the data: your practice, the data controller; Pommette, the processor; our payment, hosting and sending providers. A simplified diagram of everyone's role.

Who does what with the data

You are the controller of your clients' data; Pommette processes it on your behalf, under a GDPR-compliant data processing agreement.

The list of our own providers is public and you are notified of any change: a French host for hosting, in France; Twilio SendGrid for sending emails; Stripe for payments.

Our commitments

Built in France, hosted in France

Pommette is developed in France. Your data and your clients' data are hosted in France. Encrypted backups are made every night and kept for 30 days, in a second data centre in France.

Protected health data

Form answers are encrypted, with strictly limited access, and collected with your client's explicit consent.

No card numbers on our side

Payments go through Stripe, which is PCI DSS certified. Pommette never sees or stores card numbers.

Exportable data

You export your client list whenever you like, and you delete a client's data when she asks, within the six-year retention period required for the till.

Frequently asked questions

What happens to my data if I leave Pommette?

You export it before you go. It is then deleted within 30 days, except till data, which the law requires to be kept for six years.

Does Pommette send advertising to my clients?

Never. And if one day you send your own offers, your clients' consent is collected separately from their bookings.

Also worth a look

Your clients, in good hands