Privacy

What we collect, and what happens to it.

Short version: only what the form asks for, only to do the thing you asked for, and not for longer than that needs.

01What we collect, and only when you give it

The contact form collects your name, email address, the reason you selected and your message. The booking form additionally collects a phone number if you supply one, the location you want to meet at, any notes you add, and the slot you selected.

Both forms record technical data alongside the submission: your IP address, your browser's user agent string, and a randomly generated identifier stored in a cookie on your device. This is used to rate-limit submissions and to stop the forms being flooded. It is not used to track you across other websites, and we do not run third-party analytics or advertising trackers.

We do not ask for and will not store payment card details. Payment happens in person at the session.

02Why we hold it

To answer you, to arrange and run the appointment you asked for, to send the verification code that proves the address is yours, and to send booking confirmations and reminders. That is the whole list.

We do not sell your data, share it with advertisers, or pass it to any law enforcement body as a matter of course. If we ever received a lawful order compelling disclosure we would comply with that order and nothing broader.

03Email verification, and why we send it

Before a booking request reaches us, we email a short code to the address you gave. This confirms the address works and that it is yours, which stops the form being used to send unwanted mail to other people.

That email also carries a link marked to the effect of 'I did not expect this'. Clicking it stops us contacting that address again about the request. Verification codes and their links expire after 15 minutes; the opt-out link does not expire.

04How long we keep it

Unverified booking requests are deleted shortly after their verification window closes. Verified requests that we decline, and requests for slots that pass without being confirmed, are deleted once the date has gone by. Records of completed appointments are kept while they are needed for our own business records.

Contact form messages are kept until they are dealt with and for a reasonable period afterwards. Rate-limiting records - the IP address, cookie identifier and timing needed to spot abuse - are short-lived and cleared automatically.

Nothing is kept indefinitely by default, and stored fields have hard size limits so the forms cannot be used to dump large amounts of data on our systems.

05Where it lives

On our own server, in our own database. It is not held by a third-party booking platform or CRM. Outbound email is sent through a transactional email provider, which necessarily processes the message and the recipient address in order to deliver it.

06Reviews

If you leave a review after a session, we may publish it on this site. Reviews are read before publication - primarily to catch abusive content - and we will not publish your full name, email address or vehicle details unless you have put them in the review text yourself. Ask us and we will remove or amend your review.

07Your choices

Ask us for a copy of what we hold about you, ask for it corrected, or ask for it deleted, and we will do it. Email busuinessinquiries@diepio.org from the address in question.

There is no marketing list to unsubscribe from, because we do not run one. The only email you will receive from us is about a request you made.

08Cookies

One cookie, holding a random identifier used for rate limiting and to keep your place in a booking. There is no advertising cookie and no cross-site tracking, which is why this site has no cookie banner asking you to accept anything.

Admin sessions use a separate cookie that expires 15 minutes after the browser is closed.


Bookings can be made up to 30 days ahead, which also bounds how far forward any of this data reaches. Questions about anything here go to busuinessinquiries@diepio.org. See also the legal page.