Privacy policy
Last updated: 2026-08-04
1. Controller
The data controller is Beauty Life Love International (“we”), operating from Riviera Maya, México. Contact: hello@beautylifelove.com.
2. Data we collect
- Identity & contact: name, email, phone / WhatsApp.
- Booking details: show/event, package, category, date, time, notes.
- Payment: deposit amounts and status via Stripe (we do not store card numbers).
- Technical: essential cookies, preferred language, device/browser data.
3. Purposes
- Manage reservations and beauty services (including FMG México).
- Process deposits and payments through Stripe.
- Send confirmations, reminders and operational messages.
- Comply with law and prevent fraud or abuse.
- Improve the site (aggregated analytics, if enabled with consent).
4. Legal bases
We process data to perform the service contract, on consent where required (non-essential cookies / marketing), and for legitimate interests in site security, under Mexico’s LFPDPPP and, where applicable, GDPR principles for EU/EEA residents.
5. Processors & third parties
- Stripe, Inc. — payment processing (PCI-DSS).
- Vercel Inc. — hosting and delivery.
- Google / Gmail SMTP — confirmation emails.
- Partner event organizers (e.g. FMG International) only as needed to coordinate on-site service.
6. International transfers
Some providers may process data outside Mexico. We use contractual safeguards and reasonable security measures.
7. Retention
We keep booking and billing data as long as needed to deliver the service, handle claims and meet tax duties (generally up to 5 years unless law requires otherwise). Operational server records may live in ephemeral platform storage until a dedicated database is connected; email and Stripe may retain transaction evidence under their own policies.
8. Your rights
You may request access, correction, deletion, objection, restriction or portability where applicable by emailing hello@beautylifelove.com. We respond within applicable legal timelines.
9. Children
Services are not directed to anyone under 18. We do not knowingly collect children’s data.
10. Security
We use HTTPS/TLS, security headers (CSP, HSTS, frame denial), input validation and sanitization, booking API rate limits, Stripe webhook signature verification, and production booking confirmation only after verified payment. We do not store card data. Responsible disclosure: security.txt. No system is 100% secure.
11. Changes
We may update this policy. The “last updated” date shows the current version.