The short version
If you read nothing else, these are the four promises behind how we handle your data:
- Encrypted, on trusted infrastructure. Your data lives on Cloudflare's network — the same infrastructure behind a huge share of the world's busiest sites — and travels over encrypted (HTTPS) links.
- Every business is walled off. Each business's data is sealed in its own space. One business can never reach another's — it's built into how every request works.
- We never see card numbers. Payments go straight to Stripe. We don't store your card number, we don't see it, and it never touches our database.
- NZ-built, your data is yours. We're a New Zealand business, we follow the NZ Privacy Act, and we'll never sell your data. You can export or delete it any time.
Where your data lives
Suddenly Sorted runs on Cloudflare's global edge network — the same infrastructure that protects a large share of the world's busiest websites. Your bookings, customer details and settings are stored in Cloudflare D1, a managed database that sits behind that network.
Every connection travels over an encrypted (HTTPS) link, so information moving between a customer's phone, your dashboard and our servers can't be read in transit.
In plain terms: your business's information is held on serious, well-defended infrastructure and scrambled while it travels — not sitting on a laptop under someone's desk.
Every business is walled off from every other
When you sign in, we hand your browser a signed token that quietly says "this is your business." From that moment on, every single thing the system fetches — a booking, a customer, a setting — is filtered by your business identity, taken from that signed token.
Crucially, that identity comes from the signed token and never from anything the browser asks for. So there's no "change the number in the web address and peek at someone else's salon" — the request simply can't reach data that isn't yours.
This isn't assumed — it's checked. Our most recent internal security review specifically tested this and found no way for one business to reach another's data. It's also covered by automated tests that run on every release.
We never see your card numbers
When you pay for a plan, your card details go straight to Stripe — one of the world's most trusted payment companies — and are handled entirely on their secure systems. We don't store your card number, we don't see it, and it never touches our database.
That means the part of payments that matters most is looked after by a company whose entire job is keeping card data safe.
The same is true when a customer pays a booking deposit: that payment is handled by Stripe too, so their card number never reaches us either.
The AI, and the short list of who else touches your data
Sally's replies are generated by Anthropic's Claude, a leading AI provider. When a customer chats, the messages in that conversation are sent to Anthropic to write the reply, then come straight back. Anthropic does not use your data to train its models, and we never sell it.
Beyond that, a short, named list of trusted providers helps run the service — each doing one job, nothing more:
- Cloudflare — hosting, database and the edge network your data sits on.
- Anthropic — generates Sally's chat replies (US-based).
- Stripe — processes card payments (we never see the card number).
- Resend — sends your confirmation and reminder emails.
- Google — the map, your business listing, and (if you connect it) your calendar.
- Meta — carries the Instagram and Facebook Messenger conversations, if you connect those channels.
A short list of well-known providers, each doing one job. The AI writes the replies but doesn't keep or learn from your data. If this list ever changes, we update this page.
Messages from Instagram & Facebook
If you connect your social channels, Sally answers Instagram DMs and Facebook Messenger alongside your website chat, from one inbox. Those messages are handled the same way as every other conversation: kept in your business's own walled-off space, carried over encrypted links, and used only to answer the customer and take a booking. We don't sell them, and they're never shared with another business. The message data itself passes through Meta's platforms under their own terms; on our side it's treated as your data, and you can export or delete it like anything else.
A sign-in built to resist break-in attempts
These are specific, enforced protections — not vibes:
- It slows attackers down and locks them out. Too many sign-in attempts in a short window and the account locks — so automated password-guessing simply doesn't get anywhere.
- No timing hints. Behind the scenes we use constant-time checks for sensitive comparisons — in plain terms, we don't leak tiny clues that could help an attacker guess a secret.
- Payment notifications can't be faked or replayed. Messages that confirm a payment are verified and anything stale or replayed is rejected.
- Your private notes stay private. Notes you keep against a client are never exposed to the assistant or to other businesses.
How we keep it that way
This is where "we built it carefully" stops being a slogan and becomes something we can show you:
- 708 automated checks run on every change;
- 89 real booking scenarios tested against the live system;
- 0 critical or high issues in our latest security review.
Before any change goes live, it has to pass our automated test suite — the same checks every time, so a careless mistake gets caught before it ever reaches you. We also run a thorough internal security review of our own code. The most recent one found the system well-defended with no critical or high-severity issues, and we tightened a few things further off the back of it. We keep doing this as the product grows.
Your privacy, your control
We're a New Zealand business and we handle personal information in line with the NZ Privacy Act. The data we hold is there to run your bookings and help you serve your customers — nothing more.
We keep your bookings and customer details for as long as you're a customer, so your history and reminders keep working; chat transcripts are kept so Sally can do her job and you can review conversations. You're in control:
- Export — take your bookings and client list with you, any time.
- Delete — ask us to remove a customer's details, or your whole account, and we'll do it (bar anything the law requires us to keep, like tax records).
- Leave — cancel any time and your data comes with you. We're not a marketplace; your clients are yours, not ours.
If a serious data breach ever happened, we'd tell you promptly and follow the NZ Privacy Act. The full detail of what we collect and why lives in our Privacy Policy.
Being straight with you
Trust is built on what we're honest about, not just what we're proud of.
What we promise
- We're a small, deliberate NZ team — we'd rather build fewer things and look after your data carefully than move fast and break trust.
- We will never sell your data, or your customers' data, to anyone. That's not our business and never will be.
- If you ever have a security question, a real person reads it and replies.
What we're not (yet)
- We're not yet certified to a formal standard like SOC 2 or ISO 27001 — those are big-company processes. We're honest about that.
- The security work on this page is real and ongoing — not a badge we bought. We'd rather show you how it works than wave a certificate.
Last updated · September 2026