Privacy Policy
Effective date: April 28, 2026
This policy explains how Appinvento collects, uses, shares, and protects your personal information when you use our website and services.
1. Information We Collect
We collect only the data necessary to provide and improve our services.
- Identity data: name, company name, and username
- Contact data: email address and billing contact details
- Technical data: IP address, browser type, device information, and log events
- Usage data: product interactions, session patterns, and feature usage analytics
- Transaction data: subscription and payment records processed by payment providers
2. How We Collect Information
- Directly from forms, account registration, and support requests
- Automatically through essential cookies, security logs, and consented analytics tools
- From trusted third-party services used for billing, analytics, and infrastructure
3. Purpose and Legal Basis (GDPR)
| Purpose | Legal Basis |
|---|---|
| Account creation and login | Contractual necessity |
| Billing and invoice compliance | Legal obligation |
| Product analytics and improvements | Consent and legitimate interests |
| Security monitoring and fraud prevention | Legitimate interests |
4. Third-Party Sharing
We share data only with service providers required to deliver the product. We do not sell personal information.
- Payment processors (for example, Lemon Squeezy): payment handling, subscriptions, and invoicing.
- Infrastructure providers: hosting, storage, and reliability.
- Analytics providers (for example, PostHog): product usage insights, only when consent is provided.
5. Data Retention
| Data Category | Retention Period |
|---|---|
| Account profile data | Up to 3 years after inactivity |
| Transaction and billing records | Up to 7 years for legal obligations |
| Analytics and event data | Up to 12 months |
6. GDPR Rights
If you are in the EEA/UK, you may request access, correction, deletion, restriction, objection, or portability of your personal data. We aim to respond within 30 days.
7. CCPA Rights
California residents may request to know, delete, or opt out of personal information sharing. We do not discriminate for exercising privacy rights. If a dedicated opt-out page is available, you can use it from the footer link.
8. Cookies and Tracking
We use essential cookies for security and session continuity. Analytics and marketing cookies are only enabled after your consent. You can manage cookie preferences through your privacy settings.
9. Security Measures
We implement industry-standard security practices including encryption in transit (HTTPS/TLS), encryption at rest where applicable, role-based access controls, and monitoring systems to protect user data.
10. International Transfers
Where data is transferred outside the EEA/UK, we rely on lawful transfer mechanisms such as Standard Contractual Clauses.
11. Policy Updates
We may update this policy from time to time. Material changes are communicated through the application or email, and the effective date above is updated.
12. Contact Us
For privacy requests, contact privacy@appinvento.io. You may also contact your local supervisory authority where applicable.
13. AI-Generated Content and User Inputs
Appinvento processes user prompts, inputs, and generated code to provide its services. This may include storing prompts, generated outputs, and project files.
We do not use your private project data to train external AI models unless explicitly stated. Data may be used internally to improve system performance, debugging, and quality assurance.
Users are responsible for ensuring they do not submit sensitive or confidential information unless necessary.
14. Project Visibility
Users can choose to make their projects public or private.
Public projects may be visible to other users and may be used as templates or examples within the platform.
Private projects are only accessible to the user and authorized collaborators. Users are responsible for managing visibility settings appropriately.
15. Collaboration Features
When you invite collaborators, limited account information (such as email and username) may be shared to enable collaboration.
Users are responsible for managing access permissions for their projects and workspaces.
16. Account Deletion
Users may request account deletion. Upon deletion, personal data will be removed or anonymized, except where retention is required for legal or compliance purposes.