Privacy Policy
Last Updated: December 22, 2025
Introduction
At Bowen Island Tattoo Shop, we value your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you visit our website and use our services.
By using our website, you consent to the practices described in this policy. If you do not agree with our policies, please do not use our website.
Information We Collect
Personal Information
We may collect the following personal information when you use our services:
- Name and contact information (email address, phone number)
- Appointment details and preferences
- Payment information (processed securely through Square)
- Tattoo request details and reference images you upload
- Communication history with our studio
Automatically Collected Information
When you visit our website, we automatically collect certain information through cookies and similar technologies:
- Browser type and version
- Device information (type, operating system)
- IP address (anonymized)
- Pages visited and time spent on pages
- Referral source
Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your browsing experience, analyze site traffic, and understand user behavior. You have full control over which cookies you accept.
Cookie Categories
Essential Cookies
Always ActiveThese cookies are necessary for the website to function properly and cannot be disabled.
| Cookie Name | Purpose | Duration |
|---|---|---|
| sb-*-auth-token | Authentication and session management | 1 year |
| csrf-token | Security protection against CSRF attacks | 4 hours |
| bowen-cookie-consent | Stores your cookie preferences | 1 year |
Analytics Cookies
OptionalThese cookies help us understand how visitors interact with our website, allowing us to improve user experience.
| Cookie Name | Purpose | Duration |
|---|---|---|
| _ga | Google Analytics - distinguishes users | 2 years |
| _ga_* | Google Analytics - persists session state | 2 years |
| __vercel_* | Vercel Analytics - performance monitoring | Session |
Note: Google Analytics is configured with IP anonymization enabled to enhance privacy.
Marketing Cookies
OptionalWe do not currently use marketing or advertising cookies. This category is reserved for future use and will require your explicit consent if implemented.
Want to change your cookie preferences? You can manage your choices at any time.
How We Use Your Information
We use the collected information for the following purposes:
- To provide and maintain our tattoo services and website functionality
- To process appointments and payment transactions
- To communicate with you about your bookings and requests
- To send appointment reminders and confirmations
- To improve our website and user experience
- To analyze website traffic and usage patterns (with your consent)
- To comply with legal obligations and protect against fraud
Data Sharing and Third Parties
We do not sell your personal information. We may share your data with trusted third-party service providers who assist us in operating our website and conducting our business:
- Square: Payment processing (PCI-compliant)
- Supabase: Authentication and database hosting
- Cloudinary: Secure image storage and delivery
- Google Analytics: Website analytics (only with your consent)
- Vercel: Website hosting and performance monitoring
These third parties are contractually obligated to protect your data and use it only for the purposes we specify.
Your Privacy Rights
Depending on your location, you may have the following rights regarding your personal information:
GDPR Rights (European Users)
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent at any time
CCPA/CPRA Rights (California Users)
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of the sale or sharing of personal information
- Right to non-discrimination for exercising your rights
- Right to correct inaccurate personal information
Global Privacy Control (GPC)
We automatically honor Global Privacy Control signals. If your browser sends a GPC signal, we will automatically disable analytics and marketing cookies.
Data Security
We implement industry-standard security measures to protect your personal information:
- SSL/TLS encryption for all data transmission
- Secure authentication through Supabase
- CSRF protection on all state-changing operations
- Regular security audits and updates
- PCI-compliant payment processing through Square
- Limited access to personal data on a need-to-know basis
While we strive to protect your personal information, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce our agreements. Cookie consent records are retained for at least 5 years as required by GDPR.
Children's Privacy
Our services are not intended for individuals under 18 years of age (19 in some jurisdictions). We do not knowingly collect personal information from minors. If you believe we have inadvertently collected information from a minor, please contact us immediately.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by posting the new policy on this page and updating the "Last Updated" date. Significant changes may also trigger a new cookie consent banner.
Contact Us
If you have questions about this Privacy Policy, wish to exercise your privacy rights, or have concerns about how we handle your personal information, please contact us:
Bowen Island Tattoo Shop
Bowen Island, BC, Canada
Email: info@bowenislandtattoo.com
Phone: (123) 456-7890
This privacy policy is effective as of December 22, 2025 and applies to all information collected through our website and services.