InvoiceFlowby StackQuil

Privacy policy

Last updated 11 October 2026

This policy explains what StackQuil (“we”) collects when you use StackQuil InvoiceFlow and how it is used. Contact: contact@stackquil.co.in.

What we collect

  • Account data: your name, email and a salted hash of your password (we never store the password itself).
  • Business data you enter: business profile, clients, catalog items, quotations, invoices, payments and comments.
  • Client portal activity: when a share link is opened, view counts and times; for decisions, the name the client typed, their comment, the time, and a one-way hash of their IP address.
  • Technical data: a session cookie to keep you signed in and a workspace preference cookie. We don't use advertising or analytics trackers in the app.

How we use it

Only to provide the service: generating documents, sending emails you trigger (when email is configured), security (rate limiting, audit history) and support. We don't sell your data or your clients' data.

Sharing

Your documents are visible to members of your workspace and to anyone you give a share link to. Payment processing for paid plans is handled by Razorpay when enabled, under their privacy policy; we never receive card numbers.

Retention & deletion

Data is kept while your account exists. You can export everything as JSON and delete your account at any time; owned workspaces and their documents are then permanently deleted. Demo workspaces are deleted automatically after 24 hours. You may need to keep invoices for statutory periods — export them before deleting.

Security

Passwords are hashed with bcrypt; sessions and share links use cryptographically random tokens stored only as hashes; every query is scoped to your workspace on the server. No system is perfectly secure — please report issues to us.

Your rights

You can access, correct, export or delete your data from the app, or write to us for help.