Privacy Policy
Last updated: June 27, 2026
This Privacy Policy explains how Invoara collects, uses, shares, and protects information when you use our invoicing, payment tracking, reminder, reconciliation, catalog, inventory, workspace, and recipient-portal services.
Information We Collect
We collect account and workspace information such as your name, email address, authentication identifiers, company or workspace name, branding settings, plan, subscription status, and invited-member details.
We collect business data you enter or generate in the product, including customers, recipients, invoice details, line items, due dates, notes, payment records, allocation history, refunds, reversals, disputes, reminder events, catalog items, inventory records, and support/admin audit events.
We may collect usage, device, log, attribution, analytics, and security information, including pages visited, actions taken, browser metadata, IP address, timestamps, errors, and referral or campaign parameters.
Stripe and Payment Data
Online payments and Invoara subscriptions are processed by Stripe. We store Stripe identifiers and status information needed to operate the product, such as connected account IDs, billing customer IDs, subscription IDs, invoice IDs, payment intent IDs, hosted invoice URLs, refund IDs, and dispute IDs. We do not store full card numbers.
How We Use Information
We use information to provide and secure the service, create and send invoices, support recipient portal access, reconcile payments, process subscriptions, send operational emails, trigger reminders, detect abuse, troubleshoot issues, improve the product, and provide customer support.
We also use aggregated and operational records to understand which workflows help customers get paid, such as reminder-attributed recovery, manual reconciliation activity, and inventory usage.
How We Share Information
We share information with service providers that help run Invoara, including hosting, database, authentication, analytics, email, CAPTCHA, payment, and communication providers. These include Vercel, Supabase, Stripe, Resend, and, if SMS is enabled in the future, Twilio. We may also share information when required by law, to protect rights and safety, or as part of a business transfer.
We do not sell personal information.
Customer and Recipient Information
Businesses using Invoara decide what customer and recipient information to enter and where to send invoice communications. Recipients may see invoice, issuer, payment-status, payment-history, and payment-link information associated with invoices addressed to their email.
Recipients who only view or pay invoices are not treated as paid workspace seats, and recipient information is not sold as a marketing lead list.
Retention and Security
We retain information for as long as needed to provide the service, meet legal and operational requirements, resolve disputes, preserve audit history, and support backups. We use technical and organizational safeguards designed to protect information, but no system can be guaranteed perfectly secure.
Your Choices
You can update many account, workspace, billing, branding, customer, catalog, inventory, and notification settings in the product. You may request help with access, correction, deletion, or export by contacting us. Some records may need to be retained for legal, security, accounting, or fraud-prevention reasons.
Contact
Questions about this Privacy Policy can be sent to support@invoara.com.