Privacy policy
This policy describes how billitero (“we”, “us”) collects, uses, and shares personal data when you use our website and service at billitero.com.
1. Who is responsible
The data controller for personal data processed through billitero is the operator of the service. For privacy-related requests, contact us at [email protected].
2. Data we collect
Depending on how you use billitero, we may process:
- Account data — such as name, email address, password (stored in hashed form), and billing identifiers provided by our payment provider.
- Business and billing profile — information you provide about your business for invoicing and your account, such as business or trading name, registered and correspondence addresses, company or tax registration numbers (for example VAT, company registration, or similar identifiers), bank details you choose to add (such as IBAN, BIC/SWIFT, or account numbers where supported), and other fields you enter in settings or on documents generated in the app. If you operate as a sole trader or similar, some of this information may also relate to you personally.
- Service data — information you add to the product (for example clients, invoice details, schedules, and messages you send through the app).
- Technical data — such as IP address, browser type, device information, and approximate location derived from IP, where available.
- Support communications — content you send when you contact us.
3. How we use data and legal bases (GDPR)
Where the GDPR applies, we rely on the following bases as appropriate:
- Performance of a contract — to provide, secure, and improve the service you signed up for.
- Legitimate interests — for example to keep our systems secure, prevent abuse, and understand aggregate product usage, where not overridden by your rights.
- Consent — where required for non-essential cookies and similar technologies (see below).
- Legal obligation — where we must comply with applicable law.
4. Cookies and similar technologies
We use cookies and similar storage on your device where permitted by law. Cookies are small text files stored on your browser. You can control cookies through your browser settings; blocking some cookies may affect how the service works.
4.1 Essential cookies (strictly necessary)
We use cookies that are essential to operate the application, including to maintain your authenticated session after you log in (for example session identifier cookies tied to our framework). These cookies are necessary for security and core functionality (such as keeping you logged in and protecting forms with CSRF tokens). Without them, sign-in and key features may not work reliably.
Essential cookies are used based on our legitimate interest in providing a secure, working service, and where applicable to perform our contract with you.
4.2 Analytics cookies (Google Analytics)
We use Google Analytics to understand how visitors use our website and product (for example pages viewed, general geography, and device type). Google Analytics may set cookies on your device and collect information such as IP address (which may be truncated or processed according to Google’s settings), identifiers, and usage events.
Analytics cookies are not strictly necessary for the app to function. Where required by law, we will only activate non-essential analytics after you have given appropriate consent (for example through a cookie banner or preference center, if we offer one in your region).
Google’s processing is described in Google’s documentation and policies, including Google’s Privacy Policy. You can also use Google’s browser add-on and other tools to limit analytics collection as described by Google.
5. Sharing and processors
We share data with service providers who help us run billitero (for example hosting, email delivery, payments, and analytics). They may process data only on our instructions and where contractually required to protect it. Google operates as an independent controller for certain Google Analytics processing in line with its policies.
6. International transfers
If personal data is transferred outside the UK or EEA, we use appropriate safeguards where required (such as standard contractual clauses or equivalent mechanisms), unless a valid derogation applies.
7. Retention
We keep personal data only as long as needed for the purposes described in this policy, including legal, accounting, and security requirements. Session cookies typically expire when you log out or after a limited period of inactivity.
8. Your rights
Depending on your location, you may have rights to:
- Access, correct, or delete your personal data;
- Restrict or object to certain processing;
- Data portability, where applicable;
- Withdraw consent where processing is based on consent, without affecting the lawfulness of processing before withdrawal;
- Lodge a complaint with a supervisory authority.
To exercise rights, contact [email protected]. You can also manage some information directly in your account settings.
9. Security
We implement appropriate technical and organizational measures designed to protect personal data. No method of transmission or storage is completely secure.
10. Children
billitero is not directed at children under 16, and we do not knowingly collect their personal data.
11. Changes
We may update this policy from time to time. We will post the updated version on this page and adjust the “Last changed” date at the top.
12. Contact
Questions about this policy: [email protected].