Privacy Policy
Last updated: February 10, 2026
InvoiceTally ("we", "us", "our") operates invoicetally.com. This policy describes what data we collect, how we use it, and your rights.
Information we collect
Account information
When you sign up, we collect your email address and a password. If you subscribe to a paid plan, we collect billing information through our payment processor (Stripe). We do not store credit card numbers on our servers.
Invoice data
You provide invoice data by uploading CSV files, entering invoices manually, or uploading PDFs. This data typically includes invoice numbers, amounts, dates, and client names.
Bank transaction data
When you connect a bank account through Plaid, we receive transaction data including dates, amounts, and descriptions. We do not receive or store your bank login credentials — Plaid handles authentication directly.
Analytics data
We use Cloudflare Web Analytics, which collects anonymized, privacy-friendly analytics. No cookies are used for analytics, and no personally identifiable information is collected by this service.
If you join our waitlist or subscribe to updates, your email address is stored by Buttondown, our email service provider.
How we use your data
- Matching: We use your invoice and bank transaction data to automatically match payments to invoices. This is the core function of the service.
- Account management: Your email is used for login, password resets, and service-related communications.
- Product updates: If you opt in, we send product updates and tips via Buttondown.
- Improving the service: Anonymized, aggregated usage patterns help us improve matching accuracy and the user experience.
Bank data handling
Bank connections are managed through Plaid. We only access the transaction data needed for matching — we do not access your account balances, identity information, or any data beyond what is required. Bank data is encrypted in transit and at rest. You can disconnect your bank account at any time, and we will stop pulling new transactions.
Security
We use industry-standard security practices including HTTPS everywhere, encrypted data storage, and limited access controls. Your data is stored on infrastructure provided by reputable cloud providers with SOC 2 compliance.
Third-party services
We share data with the following third parties only as needed to operate the service:
- Stripe — payment processing
- Plaid — bank account connections and transaction data
- Buttondown — email communications
- Cloudflare — hosting, CDN, and privacy-friendly analytics
We do not sell your data to anyone.
Data retention
We retain your data for as long as your account is active. If you delete your account, we will delete your invoice data, bank transaction data, and matching results within 30 days. Some data may be retained longer if required by law or for legitimate business purposes (e.g., billing records).
Your rights
You can:
- Export your data at any time from your account settings
- Delete your account and all associated data
- Disconnect your bank account to stop data collection
- Unsubscribe from marketing emails with one click
If you are in the EU, you have additional rights under GDPR including the right to access, rectification, and data portability. Contact us to exercise these rights.
Cookies and local storage
We use localStorage to remember your theme preference (light or dark mode). We do not use tracking cookies. Cloudflare Web Analytics is cookie-free.
Changes to this policy
We may update this policy from time to time. We will notify you of significant changes by email or by posting a notice on the site. Continued use of the service after changes constitutes acceptance of the updated policy.
Contact
Questions about this privacy policy? Email us at privacy@invoicetally.com.