GoodLine Privacy Policy
Last updated: October 5, 2026
This policy covers Google account and calendar data processed by the GoodLine calendar connection for business appointment booking. GoodLine operates this app. For other GoodLine website, call and message data, read our general Privacy Policy. Contact hello@goodline.ai for privacy questions or requests.
Connected calendars and Google user data
The GoodLine app connects a business owner's calendar to the GoodLine appointment-booking pilot. Calendar access is optional and begins only when the owner opens their private connection link and authorizes access. The owner chooses the calendar for new appointments, calendars to check for conflicts and booking hours. GoodLine activates booking on the agreed phone line after setup and testing. Learn how the calendar connection works.
What we access and collect from Google
- Account identity. Your Google account email address and account identifier, so we can associate the authorization with your business and display which account is connected. Google handles sign-in; GoodLine does not receive your Google password.
- Calendar list. Calendar identifiers, names, primary-calendar status and ownership/access role, so you can choose where appointments go. We offer calendars you own as booking calendars.
- Availability. Busy start and end times in the calendars you select, to find open appointment slots. We use Google's free/busy API rather than reading the titles, descriptions, locations or guests of your existing events.
- Authorization. OAuth tokens and the permissions you granted, so we can maintain the connection and perform the scheduling actions you authorized.
- GoodLine appointments. We create events containing the caller's name, callback number, requested service, appointment time and booking reference. We read back events GoodLine creates to check that bookings, moves and cancellations succeeded. Those caller details originate from the appointment request.
How we use Google data
We use this data to identify the connected account, let you select calendars, check availability, create and verify appointments, and manage changes to appointments GoodLine made. Google grants permission to manage events on calendars you own; our workflow limits its changes to GoodLine's own events. During a call the receptionist can move or cancel that call's appointment; requests about appointments from earlier calls go to your team.
Existing Google event contents and Google credentials are not sent to our AI provider. The receptionist receives available appointment times derived from free/busy data and the booking outcome. Google Workspace API data is not used to develop, improve or train non-personalized or generalized AI or machine-learning models. We do not sell Google user data, use it for advertising, or use Google APIs for image or video generation.
GoodLine's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Storage, security and sharing
Our hosting provider, Amazon Web Services, processes calendar data to run the connection and booking service. Account identity, calendar selections, business settings and GoodLine booking records are stored in our encrypted cloud database. OAuth credentials are held separately in AWS Secrets Manager with encryption at rest and restricted service access. Requests to Google and between public services use HTTPS. Free/busy responses are processed to calculate slots; we do not keep a copy of your existing Google events.
Our AI provider, OpenAI, processes the available appointment times and booking outcome to help the receptionist respond to the caller. The business receives its booking details by calendar event and operational email and, when its owner has opted in, SMS; AWS and Twilio provide those delivery services. Connection failures and uncertain booking notices may include the connected account email and booking details for the authorized operator to resolve them. We share this information only as needed to provide the scheduling and support you requested, or where legally required. We do not share Google credentials with callers, the AI provider or other businesses. Authorized operators have access for necessary setup, support and security; calendar access is not used to browse unrelated event contents.
Retention, disconnecting and deletion
We retain account and connection settings while needed to operate and support your business's connection. Credentials remain available to the service while the connection is active. GoodLine's separate booking records are scheduled for deletion 90 days after the appointment; the database's automatic expiry process can take additional time to remove expired records. Appointments saved in your Google Calendar follow your own calendar retention choices.
You can disconnect using your private connection page, ask hello@goodline.ai, or remove GoodLine in your Google account connections. Disconnecting stops new bookings, requests revocation of the Google grant and clears the credentials available to GoodLine's booking service. Older encrypted secret versions may remain subject to AWS's managed version retention. Business settings and booking records remain under the retention rules above; you may request their deletion by email. Disconnecting does not cancel appointments already saved in your calendar.
For access, correction or deletion requests, email hello@goodline.ai with the business and connected account. We verify your authority before providing or deleting records. You can independently remove GoodLine's Google access immediately through your Google account settings.