Privacy Policy
Effective August 25, 2026
This policy applies to the TintButler product website and early-access waitlist. TintButler is operated by Boswell Technologies, LLC. Individual TintButler shop tenants publish their own policies for customer quote, appointment, and service records.
Information we collect
The early-access form collects the email address and optional shop name you submit. The durable waitlist record does not contain your raw IP address. Infrastructure providers may process limited, short-lived request data needed to deliver and secure the website, prevent abuse, and diagnose failures. The current product site does not use advertising cookies.
How we use information
We use waitlist information to manage early access, respond about the product launch and onboarding, understand the types of shops interested in TintButler, secure the service, and comply with legal obligations. A successful form response means the record was saved; it does not claim that an email was already delivered.
Sharing and sale
We use narrowly scoped hosting, database, security, and communications providers to operate the service. They may process information only for the service being supplied. We do not sell waitlist information or share it with third parties for their own marketing.
Google Connector data
When a shop administrator connects Google, TintButler asks only for OpenID and email identity, Gmail send, and Calendar events permissions needed for the features the administrator enables. Gmail send lets TintButler send administrator-requested outbound messages; it does not read or import your Gmail inbox. Calendar access lets TintButler create, update, and remove calendar events created by or selected through TintButler; it does not import unrelated calendar content.
Active refresh authorization is encrypted at rest. Access tokens are short-lived and kept in process memory while an authorized action runs. Revoked or superseded Connector credential ciphertext and consumed or expired OAuth transactions are permanently removed within 24 hours. A complete encrypted logical backup set, including its database, media, checksums, and manifest, expires as one unit no later than 35 days after its authoritative completion time.
TintButler's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including its Limited Use requirements. We use Google user data only to provide and secure the prominent Connector features the user requests. We do not sell Google user data or use it for advertising, to determine creditworthiness, or to train generalized AI models. We limit processor transfers and human access to what is necessary to provide and secure those features, comply with law, or act with the user's affirmative consent.
An authorized user can inspect connection status, disconnect TintButler, or revoke access in the Google Account's third-party access controls. Contact us to access, correct, export, or delete Google Connector data TintButler controls. Disconnecting cannot delete messages or events already delivered to other systems, but it prevents TintButler from using the revoked connection again.
Retention and security
Waitlist records are kept while early access and launch follow-up remain relevant, and as needed for security, dispute, or legal obligations. Records are then deleted or de-identified. Access is restricted and reasonable technical and organizational safeguards are used, but no Internet system can promise absolute security.
Your choices
You can unsubscribe from product email at any time. To ask for access, correction, or deletion of your waitlist record, contact hello@tintbutler.com. We may verify the request before changing a record.
Children and changes
The product site is not directed to children under 13. Material changes will be posted here with a new effective date.