FixInvo Legal
Privacy Policy
Effective Date: May 1, 2025
Last Updated: April 24, 2026
This policy explains what we collect, why we collect it, how it is used, and which rights you have over your data.
1) Who We Are
FixInvo is operated as a micro SaaS product and acts as the data controller for personal information processed through the service.
- Business Name: FixInvo
- Website: fixinvo.com
- Email: hello@fixinvo.com
- Countries Served: US, UK, Canada, Australia
2) Information We Collect
We collect information you provide directly and technical information collected while you use the app.
- Account data such as email and authentication details.
- Business profile data such as business name, phone, address, tax data, and logo.
- Invoice and expense data that you create in the app.
- Voice input used for transcription and structured extraction.
- Usage, device, and server log data needed for reliability and security.
3) How We Use Information
- Provide and secure the service.
- Create and manage invoices on your behalf.
- Process voice input into invoice-ready structured fields.
- Manage subscriptions and plan limits.
- Send essential account and security emails.
- Comply with legal obligations and resolve disputes.
4) AI and Voice Processing
Voice recordings are captured in your browser, transferred securely, transcribed, and then discarded after processing. Extracted invoice data is saved to your account.
Important: do not include sensitive identifiers like bank account numbers, passport numbers, or government identifiers in voice notes.
5) Third-Party Services
Supabase
Database, authentication, and file storage provider. Data is stored in managed PostgreSQL and private object storage with row-level access controls.
OpenAI
Processes voice transcription (Whisper) and structured invoice extraction (GPT-4o-mini). API data is processed under OpenAI API terms.
LemonSqueezy
Payment processor for subscriptions. FixInvo receives subscription status updates and does not store card details.
Vercel
Hosting and request delivery platform. May process technical request metadata such as IP and timestamps.
6) Storage, Security, and Retention
- Data in transit is encrypted using HTTPS/TLS.
- Access is protected with authentication and row-level controls.
- Card numbers are never stored by FixInvo.
- Account data is retained while your account is active.
- After account deletion, data is removed within 30 days, with backups purged later.
7) Your Rights
You can request access, correction, deletion, and portability of your personal data. UK, EU, and California users also have additional statutory rights.
To submit a request, email hello@fixinvo.com with subject line Data Request.
8) Cookies and Local Storage
We use essential authentication cookies plus local/session storage for app preferences and draft data. We do not use advertising cookies or tracking pixels.
9) International Transfers
Data may be processed in countries outside your own. For UK and EU users, transfers use appropriate contractual safeguards provided by relevant processors.
10) Updates and Contact
We may revise this policy and will post updates with a revised date. For privacy questions, email hello@fixinvo.com. Typical response time is within 5 business days.
