1. Introduction
PayStream Pro (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our financial management platform, including our website, mobile applications (iOS and Android), and related services (collectively, the “Services”).
By using PayStream Pro, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, phone number, business name, and billing address
- Financial Information: Invoice data, expense records, customer information, and payment details
- Communication Data: Messages you send through our platform, support inquiries, and feedback
2.2 Information Collected Automatically
- Device information (browser type, operating system, device identifiers, device model)
- Log data (IP address, access times, pages viewed)
- Usage information (features used, actions taken within the platform)
- Cookies and similar tracking technologies
- Mobile device information (operating system version, unique device identifiers, mobile network information)
- Push notification tokens (if you opt in to push notifications)
2.3 Information We Do NOT Collect
- We do not use the Apple Advertising Identifier (IDFA) or any device advertising identifier
- We do not track you across third-party apps or websites for advertising or marketing purposes
- We do not use App Tracking Transparency (ATT) tracking, as our app does not engage in cross-app or cross-site tracking
3. Third-Party Services
We integrate with trusted third-party services to provide our platform's functionality. Each third-party partner is contractually required to protect your data to the same standard described in this Privacy Policy and in accordance with applicable data protection laws.
3.1 Stripe (Payment Processing)
We use Stripe to process payments securely. When you make or receive payments through PayStream Pro, Stripe collects and processes payment information in accordance with their Privacy Policy. We do not store complete credit card numbers on our servers.
3.2 Plaid (Bank Account Connectivity)
We use Plaid to securely connect your bank accounts for transaction imports and account verification. Plaid accesses your bank credentials directly and provides us only with transaction data and account information necessary for our services. Your bank login credentials are never stored on our servers. For more information, see Plaid's Privacy Policy.
3.3 Twilio (SMS Communications)
We use Twilio to send SMS notifications, including payment reminders and account alerts.
🔒 SMS Data Protection Commitment:
We want to be absolutely clear about our SMS practices:
- We NEVER store SMS message content beyond the immediate delivery process
- We NEVER sell, share, or distribute SMS data to any third parties for marketing or any other purpose
- SMS data is used solely for delivering notifications you have opted into
- You can opt out of SMS communications at any time by replying STOP or updating your notification preferences
3.4 Push Notifications
Our mobile application may send push notifications for payment alerts, invoice updates, and account notifications. You can manage push notification preferences at any time through your device settings or within the app.
3.5 Third-Party SDK Privacy
Our mobile application may include third-party software development kits (SDKs) for functionality such as analytics and crash reporting. We ensure that all third-party SDKs comply with applicable privacy requirements, including Apple's App Store Guidelines, and we maintain up-to-date privacy manifests for all integrated SDKs. No third-party SDK in our app tracks users across other apps or websites for advertising purposes.
4. How We Use Your Information
- Provide, maintain, and improve our Services
- Process transactions and send related notifications
- Send invoices, payment reminders, and account alerts via email, SMS, or push notification
- Respond to your comments, questions, and support requests
- Monitor and analyze usage patterns to improve user experience
- Detect, prevent, and address technical issues and fraud
- Comply with legal obligations
5. Data Sharing and Disclosure
We do not sell your personal information. We may share your information only in the following circumstances:
- Service Providers: With third-party vendors who assist in providing our services (Stripe, Plaid, Twilio). All service providers are contractually obligated to protect your data consistent with this Privacy Policy and are prohibited from using your data for their own purposes.
- Legal Requirements: When required by law, subpoena, or legal process
- Business Transfers: In connection with a merger, acquisition, or sale of assets
- With Your Consent: When you have given explicit permission
6. Data Security
We implement industry-standard security measures to protect your information:
- SSL/TLS encryption for all data in transit
- Encryption at rest for sensitive data
- Regular security audits and vulnerability assessments
- Access controls and authentication requirements
- Secure data centers with physical security measures
While we strive to protect your information, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.
7. Data Retention
We retain your information for as long as your account is active or as needed to provide services. We may retain certain information as required by law or for legitimate business purposes, such as:
- Financial records (typically 7 years for tax purposes)
- Legal compliance documentation
- Dispute resolution records
8. Your Rights and Choices
You have the following rights regarding your personal information:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and associated data (see Section 8.1 below)
- Opt-Out: Unsubscribe from marketing communications
- SMS Opt-Out: Reply STOP to any SMS message or update preferences in your account settings
- Push Notification Opt-Out: Disable push notifications through your device settings or within the app
- Data Portability: Request your data in a portable format
To exercise these rights, contact us at privacy@paystreampro.net.
8.1 Account Deletion
You may delete your account at any time directly within the PayStream Pro app by navigating to Settings > Account > Delete Account. Upon requesting account deletion:
- Your account will be deactivated immediately
- Your personal data will be deleted within 30 days, except where retention is required by law (e.g., financial records retained for tax compliance purposes as described in Section 7)
- You will receive a confirmation email once your data has been fully deleted
You may also request account deletion by contacting us at privacy@paystreampro.net.
9. California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):
- Right to Know: You may request details about the categories and specific pieces of personal information we have collected about you
- Right to Delete: You may request deletion of your personal information, subject to certain exceptions
- Right to Opt-Out of Sale: We do not sell your personal information. We do not share your personal information for cross-context behavioral advertising
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights
To exercise these rights, contact us at privacy@paystreampro.net or call (888) 581-3532.
10. Children's Privacy
PayStream Pro is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
11. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your information in compliance with applicable data protection laws.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the “Last Updated” date. For material changes, we will also notify you via email or in-app notification. Your continued use of the platform after changes constitutes acceptance of the updated policy.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us: