CalendarPA takes security seriously. Here's how we protect your data:
All data is encrypted in transit using HTTPS/TLS
OAuth tokens are encrypted at rest using AES-256-GCM
We never store your calendar provider passwords
Secure OAuth 2.0 for calendar connections
No password storage - we use your Google/Microsoft login
Session tokens are securely managed
Payment information is handled directly by Stripe, Square, or PayPal. CalendarPA never sees or stores your credit card details.
We only access calendar data necessary for availability checking
Invitee calendar data is never stored
You can disconnect calendars anytime
CalendarPA runs on Vercel's secure infrastructure with automatic security updates and monitoring.