Policy
Google Integration
Public information about how authorized Lash Her contractors use Google Sign-In and Google Calendar with the private Lash Her booking application.
Last updated July 29, 2026
The Lash Her application is a private booking administration application operated by Lash Her by Nataliea. It helps authorized Lash Her contractors access tools, select the calendars used for booking, assess availability, identify potential scheduling conflicts, and add confirmed customer appointments to Google Calendar.
This information page is public so that contractors, customers, and Google reviewers can understand the integration. The application itself is restricted to approved users. Public booking customers do not sign in with Google and do not grant Lash Her access to their Google Accounts.
Google Sign-In
Authorized contractors may use Google Sign-In to authenticate and associate an approved Lash Her contractor account with their Google Account.
For contractor sign-in, Lash Her requests the openid, profile, and email permissions. These permissions provide a stable Google Account identifier, primary email address, email-verification status, name, and profile image where available. Lash Her uses this information to:
- confirm the contractor's identity;
- match the Google Account to an approved Lash Her contractor record;
- enforce the contractor member’s assigned access and role; and
- display basic account information within the application.
Google Sign-In does not by itself give Lash Her access to Google Calendar. Contractor authorization is also controlled by Lash Her; possessing a Google Account does not create a contractor account or grant access.
Optional Google Calendar connection
An authorized contractor member may separately choose to connect Google Calendar. The Calendar connection requests:
- openid and email, to identify the Google Account being connected;
- calendar.calendarlist.readonly, to retrieve calendar identifiers, labels, access roles, and primary-calendar status so the contractor member can select an appropriate booking calendar; and
- calendar.events, to read and create events on calendars available to the connected Google Account.
The Google consent screen describes calendar.events broadly because it permits event access across calendars available to the account. Lash Her’s application uses the permission for the assigned booking calendar or calendars selected through Lash Her’s application controls.
Calendar information Lash Her processes
The selected calendar can contain both Lash Her and non-Lash-Her events. For availability assessment and potential-conflict checks, Lash Her uses event identifiers, event titles, start times, and end times from the assigned calendar during the requested scheduling window. Lash Her uses the event timing returned by Google to assess whether a booking time is available. It also searches for identifiers attached to Lash Her-created booking events to avoid creating duplicate events.
The current Calendar API requests do not limit Google’s responses through partial-response field masks. Depending on the calendar, event, and Google response, Lash Her’s server may therefore receive additional metadata such as calendar descriptions and time zones, and event descriptions, locations, status, visibility, recurrence, organizers, attendees, conferencing, attachments, reminders, and extended properties. The application extracts the calendar identifiers, labels, access roles and primary status, and the event identifiers, titles, start times and end times that it uses. It does not intentionally retain the additional fields as booking records.
When a booking is confirmed, Lash Her creates a new appointment event in the assigned Google Calendar. That event may contain:
- the customer’s name, email address, and phone number;
- the booked service, appointment start and end time, and time zone;
- the customer’s booking intake questions and answers;
- selected add-on or payment-status wording;
- internal booking, order, and payment-provider references; and
- the customer as an event attendee so Google can send the Calendar invitation or update.
The current integration creates Lash Her booking events but does not automatically update or delete an existing Google Calendar event when an appointment is later changed or cancelled. Existing events may remain until an authorized user changes or removes them in Google Calendar.
Lash Her does not modify unrelated Calendar events. It does not use Google user data for advertising, sell it, provide it to data brokers, or use it to train generalized artificial-intelligence or machine-learning models.
Storage, sharing, and security
Lash Her stores the connected Google Account identifier and email address, granted scopes, calendar connection and assignment details, and identifiers for Lash Her booking events as needed to operate and secure the booking system.
OAuth credentials created through the current employee Calendar connection are stored server-side using encryption and are available only to systems that need them to operate or secure the integration. Google information may be processed by hosting, database, cache, and security service providers acting on Lash Her’s instructions. Lash Her personnel do not read unrelated Calendar event data except where the contractor expressly authorizes access to specific data for a support request, where necessary to investigate fraud, abuse, or a security incident, or where required by law.
Lash Her does not disclose Google user data to advertising platforms, data brokers, or information resellers.
Google user data is not transferred as part of a sale, merger, acquisition, or other change of control without the explicit prior consent required by Google’s policies.
Lash Her’s use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Retention and disconnection
Google Sign-In identifiers and contractor profile information are retained while needed to administer the contractor account, enforce access, maintain security and audit records, and meet legal obligations.
A Calendar credential is normally retained while the Calendar connection remains active. When an authorized user disconnects the Calendar connection, Lash Her removes the locally stored credential and attempts to revoke it with Google. The connected account details, granted-scope history, calendar assignments, audit records, and identifiers of booking events already created may be retained while needed for booking operations, security, recordkeeping, dispute handling, or legal obligations.
Disconnecting prevents future Calendar access through that stored credential. It does not automatically:
- delete appointment events already created in Google Calendar;
- delete Lash Her booking, payment, or customer records;
- delete all connection or audit metadata; or
- prevent Google Sign-In if the contractor member still has an approved contractor account.
An authorized contractor can disconnect an eligible Calendar connection through the Lash Her contractor account controls. A connection that is still the active destination for bookings may first need to be reassigned. Contractors may also remove Lash Her’s access from their Google Account connections.
To request access to, correction of, or deletion of Google-derived information held by Lash Her, contact lashher@lashher.com. Requests may require identity verification and may be limited where information must be retained for security, contractual, tax, dispute, or other legal reasons.
Privacy, terms, and support
For complete information about Lash Her’s collection, use, disclosure, safeguards, retention, and individual choices, read the Privacy Policy.
Use of the website and application is also subject to the Terms and Conditions.
Questions about the integration or a Google authorization can be sent to lashher@lashher.com.