Privacy Policy
This describes exactly what QuickNvoice stores, why it is stored, and how to get rid of it. It covers the web app at this site and the QuickNvoice iOS and Android apps.
Effective August 4, 2026
The short version
- There is no advertising, no analytics product, no tracking pixels, and no third-party cookies.
- Your documents are not sold, rented, or used to train any model.
- You can delete your account and everything in it from inside the app at any time.
What we collect
Account information
When you create an account we store your email address and a confirmation timestamp. Passwords are handled and hashed by Supabase Auth. QuickNvoice never sees or stores your password.
Documents you create
Invoices, agreements, drafts, and your reusable business toolkit are stored so you can send, reopen, and reuse them. These records contain whatever you type, which usually includes your client's name and email address, your services and rates, and your agreement terms. You decide what goes into a document. Please only enter client details you are entitled to handle.
Signature records
When you or your client signs a document, we record the typed legal name, the email address entered on the signing form, the moment of signing, the consent version accepted, a fingerprint (hash) of the signed document, and the browser user agent. We also store a one-way hash of the signer's IP address. The raw IP address is never written to the database. These records exist so a signature can be tied to a specific version of a specific document.
Uploaded logos
Plus subscribers can upload a logo. The image is stored and served alongside the documents it appears on, which means anyone holding a link to one of those documents can view the logo.
Operational records
We keep short-lived rate-limit counters and idempotency records so that a retried request cannot create a duplicate document, and a log of subscription events received from RevenueCat. When an account is deleted, we retain a one-way hash of the former account identifier so a deleted account is not silently recreated. That hash cannot be reversed into your email address or your documents.
Who your data is shared with
QuickNvoice uses a small number of service providers. Each one receives only what it needs to do its job.
- Supabase provides authentication and the database that stores your account, documents, drafts, toolkit, logos, and signature records.
- Vercel hosts the web application and processes the requests your browser makes. Vercel generates standard server request logs.
- RevenueCat handles subscription entitlements and receives your account identifier and, at checkout, your email address. Payment card details go to the payment processor, never to QuickNvoice. We never see or store your card number.
- OpenAI receives the agreement text and project details you submit, and only at the moment a Plus subscriber presses the rewrite button. Nothing is sent to OpenAI unless you actively ask for a rewrite. Free accounts never reach this feature.
We do not sell personal information, and we do not share it for cross-context behavioral advertising.
Cookies and local storage
QuickNvoicesets no advertising or analytics cookies. Your sign-in session and your on-device business toolkit are kept in your browser's local storage so you stay signed in and do not have to retype your sender details. Clearing site data signs you out and clears the local toolkit. Fonts are served from this site rather than from a third-party font host.
How long things are kept
- Free client links stop resolving 30 days after they are created. Links to documents that have been signed remain reachable so both parties keep their record.
- Documents, drafts, toolkits, and logos are kept until you delete them or delete your account.
- Idempotency records expire after 24 hours. Rate-limit counters expire shortly after their window closes.
Your choices
You can edit or delete individual drafts and toolkit entries at any time. Deleting your account removes your account record, documents, drafts, toolkit, uploaded logos, and signature records, and then deletes your sign-in identity. For your protection this requires a recent sign-in. See the account deletion page.
Depending on where you live you may have rights to access, correct, export, or erase your personal information, and to object to certain processing. Write to moealomairi@gmail.com and we will respond.
When you are the one handling client data
If you use QuickNvoiceto invoice your own clients, you decide what client information to enter and how it is used. In that arrangement you are the controller of your clients' information and QuickNvoice is processing it on your behalf.
Children
QuickNvoice is a tool for working professionals and is not directed to children under 13. We do not knowingly collect their information.
Security
Traffic is encrypted in transit. Share links use random tokens, and only a hash of each token is stored, so the database does not contain the links themselves. Business data is reachable only through authenticated API routes that check ownership on the server. No system is perfectly secure, and we do not claim otherwise.
Changes
If this policy changes in a way that matters, we will update the effective date above and, for significant changes, tell you in the app.
Contact
Questions about privacy go to moealomairi@gmail.com.