Legal

Privacy Policy

Effective and last updated: August 24, 2026

Who we are

This Privacy Policy describes how Make Shi(f)t Happen and Desireé B. Stephens (“we,” “us,” “our”) handle information in connection with the website desireebstephens.com and the offerings available through it, including the newsletter, the Liberation Education Academy, community spaces, digital products, and appointment booking.

Questions, requests, or corrections can be sent to desiree@desireebstephens.com.

Information we may collect

  • Account and contact information — name, email address, password credentials managed by our authentication provider, and profile details you choose to add.
  • Newsletter and email information — email address, subscription and consent records, topic or segment preferences, and delivery events such as sends, opens, bounces, and unsubscribes.
  • Academy, course, and community information — enrollment and membership status, lesson and module progress, reflections or posts you submit, certificates or continuing-education records where applicable, and community interactions.
  • Booking details — the offering, date, time, duration, and format you select, along with the name, email address, and optional phone number you provide, and any intention or context you choose to share.
  • Optional access and accommodation needs — information you voluntarily submit in the access-needs field of a booking so a session can be made usable for you. This field is optional, and we use it only to prepare for and deliver your session.
  • Intake information — responses to intake, application, or inquiry forms for programs, the Liberation Journey, speaking and consulting inquiries, or school and organizational work.
  • Payment and transaction metadata — order and checkout records, amounts, currency, payment status, and identifiers returned by our payment processor. We do not receive or store your full payment card number.
  • Technical information — basic request and log data generated when your browser loads the site, used for security, reliability, and troubleshooting.

How we use information

We use information to:

  • provide, operate, and secure the website and the offerings you request;
  • create, confirm, reschedule, or cancel appointments and send the transactional messages that accompany them;
  • process payments and keep records of purchases and memberships;
  • deliver digital products, course access, certificates, and community features;
  • send the newsletter and related educational email when you have asked to receive it, with an unsubscribe option in every message;
  • respond to inquiries and support requests;
  • meet legal, accounting, and recordkeeping obligations, and to protect against fraud, abuse, and security incidents.

Service providers we rely on

We use a small number of providers to run the site. Each receives only the information needed for its function.

  • Stripe — payment processing and checkout. Payment card details are entered on Stripe’s hosted checkout and are processed by Stripe, not stored by us. We retain transaction metadata such as session and payment identifiers, amount, and status.
  • Google Calendar — booking availability and confirmed-appointment events for the site owner’s calendar. See the dedicated section below.
  • Zoom — virtual meeting rooms for online sessions where applicable.
  • Resend — delivery of transactional email (confirmations, reminders, account and password messages) and of newsletter email.
  • Supabase — the database, authentication, and file storage that back the site.
  • Lovable — application hosting and deployment infrastructure for the website.

Google Calendar and Google user data

The booking engine on this site connects to one Google account: the site owner’s. It does not connect to visitors’ Google accounts and does not ask visitors to sign in with Google.

Scopes requested. The application requests only two Google Calendar scopes:

  • calendar.freebusy — read free/busy status for an explicitly configured list of the site owner’s calendars.
  • calendar.events — create, update, and remove events for confirmed bookings on the designated booking calendar.

How the data is used. Free/busy information is used solely to determine genuine availability, so that publicly offered times do not conflict with existing commitments. Calendar free/busy always overrides the site’s published availability windows. Event access is used solely to create and manage the calendar entry for a confirmed booking, including removing or updating it when a booking is cancelled or rescheduled.

How the data is stored and retained. Free/busy results are used in memory at the moment availability is computed and are not written to our database. Access tokens are held only in server memory for the life of the process and are refreshed as needed; the offline refresh token and OAuth client credentials are stored as encrypted server-side secrets and are never sent to browser code. For each confirmed booking we store the identifier and status of the calendar event we created, together with the booking’s own date, time, and details, for as long as the booking record is retained. We do not copy, index, or archive the contents of any other calendar events.

How the data is shared and deleted. Google Calendar data is not shared with any third party. It is not sold, not used for advertising or advertising profiles, not transferred to data brokers or information resellers, and not used to develop, improve, or train generalized artificial-intelligence or machine-learning models. Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Access can be revoked at any time from the Google Account security settings; when access is revoked or the stored credentials are deleted, the site stops reading calendar data and stops publishing availability rather than guessing. Stored calendar event identifiers are deleted with the booking records that contain them.

Sharing and disclosure

We do not sell personal information. We share information only with the service providers listed above so they can perform their function for us, when you ask us to or otherwise consent, when required to comply with law or a valid legal request, or when necessary to investigate and address fraud, abuse, or a threat to the security of the site or its participants.

Cookies and site technologies

We use cookies and equivalent browser storage for functions the site needs to work: keeping you signed in, holding a booking or checkout in progress, remembering accessibility and display preferences, and recording your consent choices. We do not run advertising networks or cross-site advertising trackers on this site. Blocking or clearing this storage may sign you out or reset your preferences.

Security

We use reasonable administrative and technical safeguards, including encrypted connections, access controls, database-level authorization rules, and encrypted storage of credentials and secrets. No website or online service can be guaranteed to be completely secure, and we do not promise absolute security.

Retention and deletion

We keep information for as long as needed to provide the offering it relates to and to meet legal, tax, and recordkeeping obligations — for example, transaction and certificate records are kept longer than a routine inquiry. Newsletter subscription and suppression records are kept so that unsubscribe and do-not-contact choices continue to be honored. When information is no longer needed, it is deleted or de-identified.

Your choices and requests

You may request access to, correction of, or deletion of information we hold about you, ask questions about this policy, or withdraw consent for non-essential email at any time. Email desiree@desireebstephens.com and we will respond within a reasonable period. Some information must be retained where the law requires it. Newsletter recipients can also unsubscribe or update preferences using the link in any email.

Children

The website and its accounts are intended for adults. Materials created for use with children are purchased and administered by the adults, educators, and organizations who use them; we do not knowingly collect personal information directly from children through this site.

Changes to this policy

We may update this policy as the site and its offerings change, and will revise the date above when we do. If you have questions about anything here, please contact us.

The Liberation Method™

Created by Desireé B. Stephens

Education • Somatics • Community

Reclaim Memory.

Develop Consciousness.

Build Liberated Culture.

Liberation is a Lifestyle™

Intellectual Property

All frameworks, methodologies, and intellectual property, including Liberation is a Lifestyle™, The Liberation Method™, Reclaim Memory™, Develop Consciousness™, Build Liberated Culture™, The Seasonal Practice Cycle™, The Three Houses of Liberation™, The Bridge of Transmutation™, The Liberation Order™, The Liberation Diagnostic™, The Wound-to-Embodiment Framework™, The LIBERATE Framework™, and The LIBERATE Pathway™, are the proprietary work of Desireé B. Stephens and may not be reproduced, taught, or distributed without written permission.

© 2026 Desireé B. Stephens · Make Shi(f)t Happen, a Certified B Corporation
Selenite & Sage Healing Homestead Co., 501(c)(3), EIN 33-4417542
EventsResources & DownloadsContactPrivacyTermsConnect an AI assistant

You can leave at any time.