Privacy Policy
Last updated: June 25, 2026
InvoiceDownloader (“we”, “us”) helps you export invoices from your payment provider. We built the product to handle as little of your data as possible. This policy explains what we collect and how we use it.
Your API key is processed in memory, not stored
When you paste a read-only API key, we use it only to fetch your invoices and build your export — in memory, for the duration of your request. We do not store it; the key lives only in your browser’s session storage and is gone when you close the tab. The one exception is monthly auto-export: if you enable it, we store that key encrypted (AES-256) so we can run the export on your behalf, and only for that purpose. You can disable auto-export or revoke the key at your provider at any time.
Information we collect
- API keys — in memory only, unless you enable auto-export (then stored encrypted at rest). We instruct you to use read-only keys scoped to invoices.
- Invoice data — streamed to you as a ZIP/CSV; we do not retain your invoices or PDFs.
- Account information — only if you sign in for auto-export or a subscription: your email and authentication (via Google Firebase) and your plan/subscription status.
- Payment information — handled by Stripe when you purchase; we never see your full card details.
- Waitlist — if you join a waitlist for a not-yet-live provider, we store your email and which provider you asked about.
- Server logs — standard request logs (IP, timestamp, user agent) from our host, for security and debugging.
How we use information
- To fetch and export your invoices.
- To run monthly auto-exports you enabled and email them to you.
- To process payments and manage your subscription.
- To prevent abuse and keep the service running.
We do not sell your data and do not use it for advertising.
Sub-processors and sharing
We share data only with the providers needed to run the service:
- Google Firebase — authentication and database (account, subscription, and the encrypted auto-export configuration).
- Stripe — billing for your InvoiceDownloader subscription or one-time purchase.
- Resend — sending auto-export and waitlist emails.
- Vercel — hosting and server logs.
- Your payment provider (Stripe, Paddle, Polar, Mollie, Lemon Squeezy, PayPal, Square) — we call their API with the key you provide to fetch your invoices.
We may also disclose information where required by law.
Data retention
- API keys: not retained (session only), except encrypted while auto-export is active.
- Invoice data: not retained.
- Account, subscription, and purchase records: kept while your account is active and as required for legal and accounting obligations.
- Waitlist emails: until the provider launches or you ask us to remove them.
Cookies and local storage
- We use your browser’s session storage to hold your API key for the current session only.
- Firebase sets authentication tokens if you sign in; Stripe sets cookies during checkout.
- We use no advertising or cross-site tracking cookies.
Security
All traffic is encrypted over HTTPS. Stored auto-export keys are encrypted with AES-256. The keys you use are read-only and scoped to invoices, so they cannot move money or change your provider account.
EU processing & international transfers
We aim to process data in the EU. Some sub-processors may process data outside the EU; where they do, appropriate safeguards (such as Standard Contractual Clauses) apply.
Your rights
Under the GDPR and CCPA you can request access to, correction of, or deletion of your personal data, and you can object to or restrict certain processing. Email us at patoinvests@proton.me and we’ll respond.
Children’s privacy
InvoiceDownloader is a business tool and is not directed at anyone under 16. We do not knowingly collect data from children.
Changes to this policy
We may update this policy; the “Last updated” date reflects the latest version. We’ll communicate material changes where appropriate.
Contact
Questions about privacy? Email patoinvests@proton.me.