Haven privacy

Privacy Policy

How Naper Trading LLC collects, uses, and protects information in Haven.

Last updated: August 21, 2026

Information we collect

We collect information you provide when you create an account, configure a business, contact support, or opt in to transactional text messages. This can include your name, email address, business details, phone numbers, appointment information, and SMS consent records.

How we use information

Naper Trading LLC uses information to provide Haven, verify account and phone ownership, answer calls, support appointment workflows, send requested service notifications, protect the platform, and respond to support requests. We do not sell personal information or use SMS consent as a condition of purchasing Haven services.

Google Calendar and Google Workspace data

When you choose to connect a Google Calendar, you initiate the connection through Google's authorization flow. Haven may receive and store the Google account identity and selected calendar information needed to establish and maintain your authorized connection. Haven stores the OAuth credentials or tokens needed to maintain that connection and uses Google Calendar data to check staff or therapist availability and to create, update, or cancel appointment events requested through Haven.

Calendar access is used only for the user-facing Haven functionality described above. You can disconnect a calendar from Haven and revoke access from your Google account settings at any time. Haven does not sell Google Workspace data, use it for advertising, or use it to determine creditworthiness or for lending purposes.

Google Workspace Data and Artificial Intelligence / Machine Learning

Haven uses artificial intelligence services to understand requests and generate responses for its receptionist and scheduling features. When necessary to provide those user-requested features, limited Google Workspace data or derived scheduling context may be processed by the third-party AI services disclosed below.

AI providers and routing

Haven currently integrates directly with the OpenAI API and directly with the Google Gemini API. Haven does not use an external multi-model aggregator, model marketplace, or third-party model hub to process Google Workspace API data. Haven's internal model-routing component is a Haven-operated routing component that connects directly to configured AI providers; it is not a third-party aggregator or model hub.

No generalized AI/ML training

Haven does not use, transfer, sell, or permit the use of raw, aggregated, anonymized, or derived Google Workspace API user data to develop, train, retrain, fine-tune, or improve generalized, foundational, or non-personalized artificial intelligence or machine learning models.

OpenAI API

Haven uses the OpenAI API as a third-party AI service. OpenAI states that API inputs and outputs are not used to train or improve OpenAI models by default unless the customer explicitly opts into data sharing. Haven does not opt in to voluntary data sharing of Google Workspace API data for generalized model training or improvement. This integration uses the OpenAI API Platform, not a ChatGPT consumer subscription.

Google Gemini API Paid Tier

Haven uses the Google Gemini API. Google Workspace-related data processing through Gemini is restricted to a billing-enabled Paid Tier configuration. Haven does not use the Gemini Free Tier for Google Workspace API user data. Haven only permits Workspace-related routing to Gemini under configurations whose applicable paid-service terms do not allow submitted content to be used for generalized model or product improvement.

No voluntary training contribution

Haven does not voluntarily submit Google Workspace API data as model feedback, evaluation data, fine-tuning data, training datasets, shared datasets, or other data intended to improve generalized third-party artificial intelligence or machine learning models.

Self-hosted and offline models

Haven currently does not use self-hosted or offline AI models to process Google Workspace API user data.

Google API Services User Data Policy — Limited Use

Haven's use and transfer to any other app of information received from Google Workspace APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Data protection and security

Haven uses administrative and technical safeguards designed to protect sensitive information. Data transmitted between your browser, Haven, Google APIs, and authorized service providers is sent over encrypted HTTPS/TLS connections. Google OAuth access and refresh credentials are encrypted before they are stored, and provider credentials and application secrets are kept server-side rather than exposed to the browser.

Access to account, calendar, and appointment data is restricted through authenticated tenant and location access controls. Haven limits access to information needed to operate and support the requested service and retains information only as needed for the purposes described in this policy, legal obligations, dispute resolution, and security. Users can disconnect Google Calendar and revoke Haven's Google access at any time.

Transactional SMS

If you opt in, Haven may send one-time verification codes and notifications about changes to your registration status, such as submission, review, approval, requests for additional information, or unsuccessful registration. Message frequency varies. Msg & data rates may apply. Reply STOP to opt out and HELP for help. Mobile information and SMS consent information will not be shared with, sold to, or provided to third parties or affiliates for marketing or promotional purposes.

Sharing and retention

We share information only with service providers that help operate Haven, such as hosting, communications, Google Calendar, scheduling, and approved AI service providers, and only as needed to provide the requested Haven features. These providers may process information only for the applicable services and subject to the data-use restrictions described above. We retain information for as long as needed for the purposes described here, legal obligations, dispute resolution, and security.

Your choices

You may stop SMS messages by replying STOP, request help by replying HELP, disconnect Haven from Google Calendar, revoke Google access from your Google account settings, or contact us about account and privacy questions at info@whistail.com. You can review the SMS consent flow at haven.whistail.com/sms-opt-in.