Privacy Policy
A legal disclaimer
PRIVACY POLICY
Last Updated: 10 May 2026
This Privacy Policy explains how Invoice Be Beta (“Invoice Be Beta”, “we”, “us”, or “our”) collects, uses, stores, shares, and protects personal data when you use our website, mobile application, and related services available through Invoice Be Beta (the “Services”).
We are committed to protecting personal data in accordance with the UK General Data Protection Regulation (“UK GDPR”), the Data Protection Act 2018, and, where applicable, the EU General Data Protection Regulation (“EU GDPR”).
By accessing or using the Services, you acknowledge that you have read and understood this Privacy Policy.
1. DATA CONTROLLER
Invoice Be Beta is the data controller for personal data collected in connection with your use of the Services, except where we process personal data solely on behalf of our business users.
For privacy-related enquiries, please contact:
Email: support@invoicebebeta.com
2. DEFINITIONS
For the purposes of this Privacy Policy:
-
“Personal Data” means any information relating to an identified or identifiable natural person.
-
“Controller” means the entity that determines the purposes and means of processing personal data.
-
“Processor” means an entity that processes personal data on behalf of a controller.
-
“Processing” means any operation performed on personal data, including collection, storage, use, disclosure, or deletion.
-
“User” means any person or business using the Services.
-
“Customer” means an individual receiving invoices, reminders, receipts, or communications sent through the Services.
3. CATEGORIES OF PERSONAL DATA WE COLLECT
3.1 Information You Provide to Us
We may collect and process the following categories of personal data:
Business Account Information
-
Name
-
Email address
-
Encrypted or hashed password
-
Business name
-
Business logo
-
VAT number
-
Business address
-
Bank details
-
Invoice branding preferences, including colour selections
Payment & Subscription Information
-
Stripe connected account identifiers
-
Subscription status and billing information
-
RevenueCat subscription identifiers
Customer Communication Information
-
Customer names
-
Customer email addresses
-
Invoice communications
-
Payment reminders
-
Review request communications
Customer Review Information
-
Customer names
-
Ratings
-
Review text submitted through the Services
Technical & Device Information
-
Push notification tokens
-
Device information
-
App diagnostics and usage data
-
IP address
-
Browser and operating system information
3.2 Information Stored Locally on User Devices
The following information is stored locally on the user’s device and is not transmitted to our servers unless expressly initiated by the user:
-
Invoice data, including:
-
amounts,
-
line items,
-
due dates;
-
-
Customer address books;
-
Recurring invoice templates.
4. HOW WE USE PERSONAL DATA
We process personal data for the following purposes:
-
Providing and operating the Services;
-
Creating and managing user accounts;
-
Sending invoices, receipts, reminders, and related communications;
-
Facilitating payment processing;
-
Managing subscriptions and billing;
-
Delivering push notifications;
-
Responding to support requests and enquiries;
-
Maintaining security and preventing fraud, misuse, or unauthorised access;
-
Improving, maintaining, and developing the Services;
-
Complying with legal and regulatory obligations.
5. LEGAL BASIS FOR PROCESSING
Under UK GDPR and EU GDPR, we rely on one or more of the following lawful bases for processing personal data:
Contractual Necessity
Processing is necessary to provide the Services requested by users, including account creation, invoicing, payment processing, and subscription management.
Legitimate Interests
We process personal data where necessary for our legitimate interests, including:
-
securing and improving the Services;
-
preventing fraud and abuse;
-
communicating with users;
-
maintaining business operations.
We ensure that such interests are balanced against users’ privacy rights.
Legal Obligations
We may process personal data where necessary to comply with applicable laws, regulations, court orders, or governmental requests.
Consent
Where legally required, we rely on consent for specific processing activities. Users may withdraw consent at any time.
6. PROCESSING OF CUSTOMER DATA
Business users of Invoice Be Beta may use the Services to send invoices and related communications to their customers.
In this context:
-
the business user generally acts as the data controller;
-
Invoice Be Beta generally acts as a data processor on behalf of the business user.
When you receive an invoice, reminder, receipt, or review request from a business using Invoice Be Beta, your name and email address may be processed for the purpose of delivering that communication.
7. THIRD-PARTY SERVICE PROVIDERS
We use third-party service providers to support the operation of the Services.
Email Delivery — Resend
We use Resend to send transactional emails, including invoices, reminders, receipts, and review requests.
Personal data processed may include:
-
customer names;
-
customer email addresses;
-
email metadata and delivery logs.
Resend’s privacy policy is available at:
Payment Processing — Stripe
We use Stripe to process payments and manage connected accounts.
Stripe may process:
-
payment information;
-
billing details;
-
transaction data;
-
customer payment identifiers.
We do not store full payment card details on our servers.
Stripe’s privacy policy is available at:
Push Notifications — Expo
We use Expo to deliver mobile push notifications.
Expo may process push notification tokens and related technical delivery data.
Expo’s privacy policy is available at:
Subscription Management — RevenueCat
We use RevenueCat to manage app subscriptions and billing functionality.
RevenueCat does not process customer invoice content or invoice recipient data.
RevenueCat’s privacy policy is available at:
8. DATA STORAGE AND INTERNATIONAL TRANSFERS
The Services are hosted using infrastructure provided by Replit and associated cloud hosting providers, including infrastructure that may utilise Amazon Web Services (AWS).
As a result, personal data may be stored or processed in:
-
the United Kingdom;
-
the European Economic Area;
-
the United States.
Where personal data is transferred outside the UK or EEA, we take reasonable steps to ensure appropriate safeguards are implemented, including reliance on:
-
adequacy regulations;
-
standard contractual clauses;
-
contractual and technical safeguards implemented by service providers.
9. DATA RETENTION
We retain personal data only for as long as reasonably necessary to:
-
provide the Services;
-
fulfil contractual obligations;
-
comply with legal and regulatory obligations;
-
resolve disputes;
-
enforce agreements.
Retention periods may vary depending on the type of data and applicable legal requirements.
Where data is no longer required, we will securely delete or anonymise it.
10. DATA SECURITY
We implement reasonable technical and organisational measures designed to protect personal data against unauthorised access, disclosure, alteration, or destruction.
Security measures may include:
-
encrypted communications using HTTPS;
-
password hashing and encryption;
-
restricted access controls;
-
infrastructure-level security protections;
-
monitoring for suspicious activity.
However, no method of transmission or electronic storage is completely secure, and we cannot guarantee absolute security.
11. YOUR RIGHTS
Subject to applicable law, individuals may have the following rights regarding their personal data:
-
the right to access personal data;
-
the right to rectify inaccurate or incomplete data;
-
the right to request erasure of personal data;
-
the right to restrict processing;
-
the right to object to processing;
-
the right to data portability;
-
the right to withdraw consent;
-
the right to lodge a complaint with a supervisory authority.
Requests may be submitted to:
Email: support@invoicebebeta.com
In the United Kingdom, complaints may be made to the Information Commissioner’s Office (ICO):
Information Commissioner’s Office (ICO)
12. CHILDREN’S PRIVACY
The Services are not directed to children under the age of 13, and we do not knowingly collect personal data from children.
If we become aware that personal data has been collected from a child unlawfully, we will take reasonable steps to delete such information.
13. COOKIES AND ANALYTICS
We may use cookies and similar technologies to:
-
maintain user sessions;
-
remember preferences;
-
analyse usage and performance;
-
improve functionality and user experience.
Users may control cookies through browser settings where applicable.
A separate Cookie Policy may provide additional information.
14. AUTOMATED DECISION-MAKING
We do not engage in solely automated decision-making or profiling that produces legal or similarly significant effects on individuals.
15. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy from time to time.
Where changes are material, we may provide additional notice through the Services or by email.
The updated version will become effective upon publication with a revised “Last Updated” date.
16. CONTACT INFORMATION
For questions, requests, or concerns relating to this Privacy Policy or personal data processing, contact:
Invoice Be Beta
Email: support@invoicebebeta.com
Website: invoicebebeta.com