Privacy Policy
🔒 Our commitment: We will never sell, rent, or share your personal data with third parties for marketing purposes. Your data belongs to you — always.
1. Who We Are
InvoicePilot is a billing and invoicing platform for freelancers and agencies, based in India. If you have any questions about this policy, please contact our support team — we respond within 1 business day.
2. What We Collect
Account information
- Email address (for login and notifications)
- Password (hashed — we cannot see your actual password)
- Subscription plan and billing status
Business & invoice data you enter
- Your business name, logo, and contact details
- Client names, emails, and billing addresses
- Invoice numbers, line items, amounts, due dates, and payment status
This data is yours. We only store it to power the Service.
Technical data (automatically collected)
- IP address and browser type (for security only)
- Pages and features you use (anonymised — to improve the product)
- Error logs to help us fix bugs faster
3. How We Use Your Data
- Running and operating the InvoicePilot service
- Keeping your account secure and authenticated
- Sending transactional emails — invoice confirmations, payment receipts, password resets
- Responding to your support requests
- Detecting and preventing fraud or abuse
- Improving the product using anonymised, aggregated usage patterns
4. Payments
Pro plan payments are processed by Razorpay. InvoicePilot never sees or stores your card details — all payment information is handled securely by Razorpay. We only receive confirmation that a payment was successful.
5. Data Security
- All data is encrypted in transit (HTTPS / TLS)
- Passwords are hashed — never stored in plain text
- Database hosted on Supabase with encryption at rest
- Access to production data is strictly restricted to core team only
No system is 100% immune to breaches. If we ever discover an incident affecting your data, we will notify you by email within 72 hours and explain what happened and what we're doing about it.
6. Data Retention
- Your data is kept for as long as your account is active
- If you request account deletion, all your data will be permanently removed within 30 days
- Payment records may be retained for legal and accounting purposes as required by Indian law
7. Cookies
We use only essential cookies — nothing more:
- Authentication cookies — to keep you logged in
- Session cookies — to maintain your session state
We do not use advertising cookies, analytics trackers, or any third-party tracking pixels. No cookie banners needed — because we don't track you.
8. Your Rights
You have full control over your data:
- Access — request a copy of your personal data at any time
- Correction — ask us to fix inaccurate information
- Deletion — request removal of your account and all associated data
- Portability — export your invoices and client data any time from your dashboard
- Objection — object to certain types of processing
To exercise any of these rights, just contact our support team. We will respond within 7 days.
9. Children
InvoicePilot is not intended for anyone under 18. We do not knowingly collect data from minors. If we become aware of such data, we will delete it promptly.
10. Changes to This Policy
If we make significant changes, we will notify you by email at least 14 days before they take effect — so you always have time to review before anything changes.
11. Questions?
Privacy questions are important to us. Contact our support team — we're a small team and we read every message.
