Privacy Policy
Last updated: 7/15/2026
This Privacy Policy explains how The Breneman Group, LLC ("CoachCentral", "we") handles personal information in connection with the CoachCentral platform (the "Service").
1. Our two roles
CoachCentral serves independent professionals and businesses ("Providers") and their customers ("Clients"). For a Provider's own account and our operation of the Service, we act as a data controller. For the personal information a Provider enters or collects about their Clients and prospects through the Service, the Provider is the controller and we act as their processor, handling that information on the Provider's behalf. If you are a Client and want to exercise rights over data a Provider holds about you, contact that Provider; we will assist them as their processor.
2. Information we collect
- Account information — name, email address, password (stored only as a salted hash), and profile/business details you provide.
- Client and prospect information Providers enter — names, email addresses, phone numbers, notes, tags, lifecycle stage, and similar details, plus responses submitted through inquiry pages, forms, and lead magnets.
- Scheduling and delivery data — appointments, bookings, program enrollments, attendance, documents, and messages exchanged through the Service.
- Payment information — processed by Stripe. We receive payment metadata (amounts, status, the last part of a card, payout records) but do not collect or store full card numbers.
- Connected-service data — if a Provider connects a calendar (Google, Microsoft, Apple) or a video provider, we access the tokens and free/busy or meeting data needed to provide those features; connection tokens are stored encrypted.
- Technical and usage data — IP address, device and browser information, and log/telemetry data generated when you use the Service.
3. How we use information
- to provide, operate, secure, and improve the Service;
- to process payments and payouts through Stripe;
- to send transactional messages (receipts, invitations, reminders, confirmations);
- to send marketing or campaign email where permitted, subject to unsubscribe;
- to provide support and respond to requests; and
- to comply with law and enforce our terms.
4. How we share information
We do not sell personal information. We share it with service providers ("sub-processors") that help us run the Service, under contracts that limit their use of it, including:
- Stripe — payment processing and Connect payouts;
- Microsoft Azure — cloud hosting, database, and key management;
- Azure Communication Services — outbound email delivery;
- Daily.co — video meetings, when used;
- Google, Microsoft, Apple — calendar integration, when a Provider connects one;
- Google reCAPTCHA — spam/abuse protection on public forms.
We may also disclose information to comply with law, protect rights and safety, or in connection with a business transfer.
5. Cookies
We use strictly necessary cookies for sign-in/session management and security (including anti-forgery protection), and reCAPTCHA on public forms.
6. Email communications
We send transactional email that is necessary to provide the Service. Marketing and campaign email is sent only where permitted; you can unsubscribe using the link in those messages, and we honor suppression requests. Transactional messages (such as security and receipt emails) may still be sent after you unsubscribe from marketing.
7. Data retention
We retain personal information for as long as an account is active and as needed to provide the Service, then for the period required to meet legal, tax, accounting, and dispute-resolution obligations, after which it is deleted or anonymized.
8. Security
We use technical and organizational measures to protect personal information, including encryption in transit, logical tenant isolation between practices, encrypted storage of secrets and connection tokens, and access controls. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
9. Your rights
Depending on where you live, you may have rights to access, correct, delete, port, or restrict the use of your personal information, and to object to certain processing (including under GDPR and CCPA/CPRA). To exercise rights over your account data, contact us at support@coachcentral.net. If your data is held by a Provider as controller, contact that Provider.
10. Children's privacy
The Service is not directed to children under 18, and we do not knowingly collect their personal information.
11. Changes to this policy
We may update this policy from time to time. Material changes will be communicated through the Service or by email, with an updated "last updated" date above.
12. Contact
Privacy questions or requests: support@coachcentral.net