Privacy First

Privacy Policy

We believe in complete transparency about how we collect, use, and protect your personal information. This policy explains our privacy practices in clear, understandable language.

Last updated: March 21, 2026
8 min read
GDPR & CCPA Compliant

Minimal Data Collection

We only collect data that's essential for providing our invoicing services.

Bank-Level Security

Your data is protected with 256-bit SSL encryption and industry-leading security measures.

Full Control

Access, update, export, or delete your data anytime through your account settings.

Table of Contents

Quick Actions

Overview

Welcome to Fakturify! We're committed to protecting your privacy and being transparent about our data practices. This Privacy Policy explains how we collect, use, share, and protect your personal information when you use our invoicing platform.

This policy applies to all Fakturify services, including our web application, mobile apps, and any related services. By using Fakturify, you agree to the collection and use of information in accordance with this policy.

Contact Information

Data Controller: Fakturify

Location: Denmark

Email: hello@fakturify.dk

Data We Collect

We follow the principle of data minimization, collecting only what's necessary to provide our services effectively.

Account Information

  • Name and email address
  • Company details (name, address, VAT number)
  • Payment information (processed securely by Stripe)
  • Profile preferences and settings

Invoice Data

  • Client information you add
  • Invoice content and line items
  • Payment tracking data
  • Invoice templates and customizations

Usage Information

  • Features you use and how often
  • Error logs and performance data
  • Device and browser information
  • IP address and general location (country level)
  • Email tracking data (opens, clicks, delivery status)
  • Template usage and interaction patterns
  • Analytics and reporting data

How We Use Your Data

We use your personal information only for legitimate business purposes that directly benefit you or are necessary for our service operations.

Service Delivery

Creating and managing your invoices, processing payments, and providing customer support.

Legal Basis: Contractual necessity

Account Management

Managing your account, authentication, and maintaining your preferences and settings.

Legal Basis: Contractual necessity

Communication

Sending service updates, security alerts, and responding to your inquiries.

Legal Basis: Legitimate interest

Product Improvement

Analyzing usage patterns to improve our platform and develop new features.

Legal Basis: Legitimate interest

Security & Fraud Prevention

Protecting your account and our platform from unauthorized access and fraudulent activity.

Legal Basis: Legitimate interest

Legal Compliance

Meeting our legal obligations, including tax reporting and regulatory requirements.

Legal Basis: Legal obligation

Data Sharing & Third Parties

We work with carefully selected third-party service providers to deliver our services. All partners are bound by strict data protection agreements and are only allowed to process your data for specific purposes.

Supabase

Trusted Partner
Purpose:Database hosting and authentication services
Data Shared:Account information, invoice data, analytics data
Location:United States (with EU data residency options)
Safeguards:SOC 2 compliant, GDPR-compliant data processing agreement

Stripe

Trusted Partner
Purpose:Payment processing and subscription management
Data Shared:Payment information, billing details, subscription data
Location:United States and European Economic Area
Safeguards:PCI DSS compliant, EU-US Data Privacy Framework participant

Stripe Connect

Trusted Partner
Purpose:Direct payment processing to user accounts
Data Shared:Payment information, business details for connected accounts
Location:United States and European Economic Area
Safeguards:PCI DSS compliant, EU-US Data Privacy Framework participant

Vercel

Trusted Partner
Purpose:Application hosting and content delivery
Data Shared:Usage data, IP addresses, performance metrics
Location:Global with EU data centers
Safeguards:ISO 27001 certified, GDPR-compliant infrastructure

Resend

Trusted Partner
Purpose:Email delivery and tracking services
Data Shared:Email content, recipient addresses, delivery status
Location:United States and European Union
Safeguards:SOC 2 compliant, GDPR-compliant email processing

Data Security

We implement industry-leading security measures to protect your data against unauthorized access, alteration, disclosure, or destruction.

Encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256) using industry-standard encryption protocols.

Access Controls

Strict access controls ensure only authorized personnel can access your data, with all access logged and monitored.

Regular Security Audits

We conduct regular security assessments and penetration testing to identify and address potential vulnerabilities.

Incident Response

We have a comprehensive incident response plan and will notify you of any security breaches within 72 hours.

Backup & Recovery

Regular encrypted backups ensure your data can be recovered in case of system failures or disasters.

Employee Training

All team members undergo regular security training and sign confidentiality agreements.

Your Privacy Rights

You have comprehensive rights regarding your personal data. We make it easy to exercise these rights through your account settings or by contacting us directly.

Access Your Data

Your Right

Request a copy of all personal data we hold about you in a portable format.

How to exercise: Available in Account Settings → Privacy → Export Data

Correct Your Data

Your Right

Update or correct any inaccurate or incomplete personal information.

How to exercise: Available in Account Settings → Profile

Delete Your Data

Your Right

Request deletion of your personal data (subject to legal retention requirements).

How to exercise: Available in Account Settings → Privacy → Delete Account

Data Portability

Your Right

Receive your data in a structured, machine-readable format for transfer to another service.

How to exercise: Available in Account Settings → Privacy → Export Data

Restrict Processing

Your Right

Limit how we process your personal data in certain circumstances.

How to exercise: Contact hello@fakturify.dk

Object to Processing

Your Right

Object to processing based on legitimate interests, including direct marketing.

How to exercise: Available in Account Settings → Privacy → Communications

Withdraw Consent

Your Right

Withdraw consent for any processing that requires it (won't affect past processing).

How to exercise: Available in Account Settings → Privacy

Cookies & Tracking

We use cookies and similar technologies to enhance your experience, remember your preferences, and analyze how our service is used. You have full control over these settings.

Essential Cookies

Required
Purpose:Required for the website to function properly
Examples:Authentication, security, user preferences
Retention:Session or 1 year

Analytics Cookies

Optional
Purpose:Help us understand how users interact with our platform
Examples:Usage statistics, feature adoption, performance metrics
Retention:Up to 26 months

Functional Cookies

Optional
Purpose:Remember your preferences and settings
Examples:Theme preference, language, dashboard layout
Retention:1 year

Managing Cookie Preferences

You can control cookie settings through your browser or our cookie preference center.

International Data Transfers

As a global service, we may transfer your data internationally. We ensure all transfers are protected by appropriate safeguards as required by applicable privacy laws.

Data Processing Locations

Primary:United States (Supabase hosting)
Backup:European Union (Vercel EU data centers)
CDN:Global (nearest to you)
Analytics:EU and US (anonymized)

Transfer Safeguards

  • Standard Contractual Clauses (SCCs) with all third-party processors
  • EU-US Data Privacy Framework participation where applicable
  • Additional technical and organizational measures
  • Regular compliance assessments and audits

Children's Privacy

Our service is designed for business use and is not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16 without appropriate parental consent.

If We Discover Child Data

If we become aware that we have collected personal information from a child under 16 without verification of parental consent, we will take steps to remove that information from our servers promptly.

If you believe we might have information from or about a child under 16, please contact us immediately athello@fakturify.dk.

Data Retention

We retain your personal information only as long as necessary to provide our services and comply with legal obligations.

Account Information

Retention PeriodUntil account deletion + 30 days
ReasonService provision and user support
After DeletionPermanently deleted except for legal obligations

Invoice Data

Retention Period7 years after creation
ReasonTax and accounting compliance requirements
After DeletionMay be retained for legal compliance

Payment Information

Retention PeriodUntil subscription ends + 7 years
ReasonBilling disputes and tax requirements
After DeletionPermanently deleted (handled by Stripe)

Email Tracking Data

Retention Period26 months
ReasonEmail delivery analytics and user engagement tracking
After DeletionPermanently deleted or anonymized

Analytics Data

Retention Period26 months
ReasonService improvement and user experience optimization
After DeletionPermanently deleted or anonymized

Support Communications

Retention Period3 years after case closure
ReasonCustomer service and quality assurance
After DeletionPermanently deleted

Policy Changes

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.

How We Handle Updates

  • We'll update the "Last Modified" date at the top of this policy
  • For minor changes, we'll notify you through the platform
  • For material changes, we'll email you at least 30 days in advance
  • Continued use of our service after changes constitutes acceptance

Contact Us

We're here to help with any questions or concerns about your privacy. Don't hesitate to reach out using any of the methods below.

Email Support

Privacy Questions & Support:
hello@fakturify.dk
Response Time:
Within 1 business day

Additional Support

Live Chat:
Available in your dashboard
Help Center:
Visit Help Center

Ready to Experience Privacy-First Invoicing?

Join thousands of businesses who trust Fakturify with their invoicing needs. Create professional invoices with complete privacy protection.

Get Started