IB InvoiceBound

Privacy

Privacy policy

Last updated 31 August 2026.

This describes what InvoiceBound collects, why, and who else is involved. It is written to be read rather than to be defended, so it says plainly where your data actually goes.

Who we are

InvoiceBound is invoicing software for people who do the work themselves. You can reach us at support@invoicebound.com about anything in this policy, including a request to see or delete your data.

You do not need an account

InvoiceBound works fully without signing in. Used that way, your invoices, estimates, clients, items and expenses are stored on your device and are not sent to us. We cannot see them, and we have nothing to hand over about you because we hold nothing.

Signing in is optional. It exists so your work can sync between devices, be opened in the web app, and so you can take card payments. Once you sign in, the records below are stored on our servers as well as on your device — that is the whole point of syncing, and it is the moment the rest of this policy starts to apply.

What we collect, and why

WhatWhenWhy
Your name and email address Only if you sign in with Apple or Google To identify your account and show you which account you are in. If you use Apple's Hide My Email, we receive the relay address, not your real one.
Your business profile — business name, contact details, address, tax id, logo, payment instructions Only if you sign in It appears on the invoices you send, and it syncs so it is the same on every device.
Your invoices, estimates, clients, line items, expenses, payments and any receipt or job photos you attach Only if you sign in To sync them between your devices and the web app, and so they survive losing a phone.
Session tokens Only if you sign in To keep you signed in without asking for a password. Stored hashed on our side, and in the keychain on your device.
Anything you type into a support message, and the email address you give us Only if you contact support So we can reply.

We use this data to run the service: to show you your own records, to sync them, to answer support requests, to keep accounts secure, and to process payments and subscriptions through the companies named below. We do not sell it, and we do not use it for advertising.

What we do not collect

As of the date above, InvoiceBound contains no analytics SDK, no advertising SDK, and no device or advertising identifier. We do not track you across other apps or websites. If that ever changes, we will update this page and the date on it before shipping the change.

Payments

Getting paid by your clients. If you switch on card payments, you connect your own Stripe account. Stripe collects what it needs to verify you and move money, and it holds your payout details and your payment history — we never see or store your customers' card numbers. That relationship is between you and Stripe, under Stripe's privacy policy.

Paying us. Subscriptions are sold through Apple's In-App Purchase. Apple handles the transaction and we never see your card details. We use RevenueCat to tell us whether your subscription is active; RevenueCat receives an account identifier and the subscription status, not your payment details.

Who else is involved

  • Apple — Sign in with Apple, and In-App Purchase for subscriptions.
  • Google — Sign in with Google, if you choose it.
  • Stripe — card payments from your clients, through your own connected Stripe account.
  • RevenueCat — subscription status only.
  • Cloudflare — hosts this website, our API, the database your synced records live in, and the storage your logos, receipts and photos live in.

Each of these handles data under its own privacy policy. We share with them only what the job requires, and with nobody else except where the law requires it.

Where your data is kept, and for how long

Synced records are stored on Cloudflare's infrastructure. We keep them for as long as your account exists, because they are the records you are asking us to keep. Support messages are kept while we deal with them and for a reasonable period afterwards.

Deleting a record in the app removes it from your devices and marks it deleted on our servers so it does not come back on the next sync.

Your rights

  • Delete your account. In the app: Settings › Account › Delete Account. This deletes your account and every record we hold for it — your businesses, clients, documents, expenses, payments, uploaded logos, receipts and photos, and your sign-in sessions. It is immediate and it cannot be undone.
  • Delete only the data on this device, keeping your account, from the same screen.
  • Ask us for a copy of what we hold, or for a correction, at the address above.

Deleting your InvoiceBound account does not close your Stripe account. That account is yours, it holds your payout history and your own obligations to your customers, and only you can close it — we disconnect it from InvoiceBound and leave the rest to you. Cancelling a subscription is done through Apple, in Settings › Apple Account › Subscriptions.

Children

InvoiceBound is a tool for running a business and is not directed at children under 13. We do not knowingly collect data from them. If you believe a child has given us data, write to us and we will remove it.

Changes to this policy

If we change how we handle your data, we will update this page and the date at the top. Material changes will be called out in the app rather than left here to be discovered.

Contact

support@invoicebound.com