Privacy

What this application holds, and what it does with it.

Treatment Records is the internal record-keeping system of Electrolysis by Leora, a licensed electrolysis and laser hair removal practice in Pikesville, Maryland. It is used by the practice’s own staff. It is not offered to anyone else and has no public sign-up (what this is).

Google account information

The application uses Google in two separate ways, and they are kept separate on purpose: signing in does not grant access to anybody’s calendar, and connecting a calendar is a second, deliberate step that a member of staff takes for themselves and can undo.

Signing in

Staff sign in with a Google account. Google tells the application the email address and basic profile of whoever signed in; that address is compared against the practice’s staff list, and anyone not already on it is refused. No long-lived Google credential is kept for sign-in.

openidemailprofile

To learn which member of staff is signing in. Nothing is read from the Google account beyond the address and name it presents.

Connecting a calendar

A member of staff may connect a Google Calendar so that the practice’s schedule and their own do not have to be kept in two places. This is optional. The list of calendars on the account is fetched so that one can be chosen from a list rather than typed.

https://www.googleapis.com/auth/calendar.readonly

To list the calendars on the account so one can be picked, and to read the times on it that are already busy, so the practice’s schedule does not offer a slot when the person is elsewhere. Event titles, descriptions, locations, attendees and attachments are not stored.

https://www.googleapis.com/auth/calendar.events

To create and update the events for that person’s own appointments at the practice, and to remove them when an appointment is cancelled. Only events this application created are changed.

Both directions are off unless the practice turns them on, and they are two separate switches. Connecting a calendar records which one to use; it does not by itself send anything to Google or read anything from it.

Bringing photographs across from the old system

The practice’s previous software kept treatment photographs in a Google Drive folder. Moving them into this application is a one-off transfer that Leora authorises separately, with its own consent screen, and can revoke as soon as it is finished. It is never bundled with connecting a calendar.

https://www.googleapis.com/auth/drive.readonly

To read the specific folder of treatment photographs belonging to the practice, and copy it into this application’s own storage. Nothing is written to or deleted from Drive.

What is stored, and for how long

Connecting a calendar or the Drive folder stores one credential — the token Google issues so the connection survives without asking again — together with the email address of the account and which permissions were granted. The credential is encrypted before it is written down, and is only decrypted in memory at the moment a request is made to Google. It is deleted when the connection is disconnected.

Information obtained through these permissions is used only to run the practice’s schedule and records. It is not sold, not used for advertising, not used to train any model, and not shared with anyone outside the practice. Use of information received from Google APIs follows the Google API Services User Data Policy, including the Limited Use requirements.

Anyone who has connected an account can disconnect it in the application, and can independently revoke it at myaccount.google.com/permissions, which stops all further access immediately.

Client information

The practice keeps, for each client: their name, the name they prefer to be called, contact details, the intake and consent forms they completed, what was treated at each appointment and by whom, photographs where they have agreed to them, and what was charged and paid.

This is health information about named people and it is treated as such. It is used to provide treatment, to keep the records a licensed practice is required to keep, to arrange and remind clients of appointments, and to bill. Clients are sent promotional messages only where they have separately agreed to receive them, and can stop them at any time.

Records are kept for at least as long as Maryland law requires of a health practice, and longer for clients treated as minors. Photographs can be deleted on request without deleting the treatment record they belong to.

Client information is never sold. It is shared only with the services the practice needs to operate — its booking and card payment provider, its email and text message providers, and the providers hosting the application and storing its files — each of which receives only what that job requires, and with an insurer only when a client asks for a receipt to submit themselves.

Text messages

Clients who give the practice a mobile number may be sent text messages about their own care: a link to the intake and medical history form to complete before a first appointment, reminders and confirmations of appointments, and replies from staff to something the client has asked.

No mobile information is shared with third parties or affiliates for marketing or promotional purposes. Information is shared with the practice’s text message provider only so far as sending the message requires. Text messaging opt-in data and consent are excluded from every other kind of sharing described on this page, and are not shared with anyone.

Message frequency varies. Message and data rates may apply. Reply STOP to any message to stop them, or HELP for help; you can also call the practice on 410-514-5000. Stopping texts does not affect an appointment that is already booked, and the practice will still be able to reach you by telephone.

Agreeing to reminders about an appointment is a separate decision from agreeing to hear about offers, and the practice records them separately along with the exact wording agreed to and the date. Promotional texts are sent only to clients who have specifically agreed to them.

How it is protected

  • Access requires a Google sign-in on an address Leora has added, and what each member of staff can see depends on their role.
  • Google credentials are encrypted before storage; everything travels over HTTPS.
  • Photographs are served only to a signed-in member of staff, or through a link the practice has issued deliberately, and cannot be embedded elsewhere.
  • The application loads no advertising, no analytics and no third-party scripts. A page showing a client’s record makes no request to anybody else’s server.
  • Actions that change a record are logged with who made them.

Getting in touch

To ask what is held about you, to correct it, or to ask for it to be deleted, contact the practice through byleora.com.

Last updated 10 September 2026.