Privacy Policy
What we collect, why we collect it, who else can see it, and how to make us delete it. Short version: your invoices stay yours, we read nothing, we sell nothing, and you can leave and take your data with you.
Last updated 7 October 2026
Before this page goes live
Replace the placeholders below with the operator’s real details, and have the text reviewed by a lawyer. Nothing below is legal advice.
- The operator's legal name, registered address and GSTIN, in the section below.
- The name and address of the data fiduciary if the operator is not the data fiduciary itself.
- The name of the hosting provider and the country its servers sit in, in clause 7.
- A lawyer's review. This describes the software honestly; it is not legal advice.
1.Who is responsible for your data
[OPERATOR LEGAL NAME], registered office [REGISTERED ADDRESS], GSTIN [GSTIN], operates RozanaBill and is the data fiduciary for the personal information held in your account.
You are the data principal for the personal information you enter — the names and addresses of your customers, the details of your suppliers, the phone numbers of your employees. You decide what you put in. We process it on your instructions to provide the service, and we are not free to use it for our own purposes.
2.What we collect
We collect only what the service needs in order to run:
- Your account. Your name, email address, and — if you set one — a username and password, stored only as a one-way hash. We cannot read your password, including if you ask us to.
- Your businesses. Each business on your login, its name, legal name and GSTIN.
- Your business data. Every document you create: invoices, quotations, purchase bills, delivery challans, credit and debit notes, payments, expenses, party and product records, stock, and your invoice templates. This is the substance of the service.
- Your uploads. Product pictures and your business logo, kept inside your own workspace.
- Your employees. The username, display name and role of each person you add to a business. Not their email — we do not require it.
- Technical records. The IP address, time and outcome of a sign-in attempt, kept so we can spot and block repeated password guessing.
3.What we do not collect
- No advertising identifiers, and no cross-site tracking cookies.
- No third-party analytics. We do not embed any.
- No access to your documents beyond storing them and handing them back to you.
- No contacts, photos, files or browsing history from your device. The service reads nothing outside its own storage.
4.Why we are allowed to hold it
Under the Digital Personal Data Protection Act, 2023 we hold your account and technical records to provide the service you asked for and to meet our legal duties. We hold your business documents on your instructions, for the same purpose. We do not rely on consent for either.
5.Where your data lives
Your workspace is stored on our server in [COUNTRY], under a database dedicated to this service. Every business on a login has its own separate workspace; two businesses on the same login cannot see each other’s documents, and we do not merge them.
A working copy is also kept in your own browser’s local storage so the service opens without a round trip. That copy is on your device, under your control, and is replaced from the server whenever you sign in.
We do not keep a second copy for ourselves. If you delete a business, its documents go with it.
6.Cookies and what is stored in your browser
The service sets three cookies, all of them necessary. There are no others.
vy_sessionkeeps you signed in. It holds a random token, not your identity, and it expires.vy_companyremembers which of your businesses you are working in, so separate accounts on one browser do not open each other’s books.vy_demomarks a browser that is looking at the public demonstration rather than their own books.
None of them is used to follow you anywhere else, and none is shared with anyone.
A few things are kept in your browser’s own storage rather than sent to us. They never leave your device, and clearing your browser data removes them:
vy_theme_appremembers whether you chose the light or dark theme in the app. It is a display preference and is never sent anywhere. The public website keeps its own separate setting and simply follows your device, so a choice you make while billing does not change a page you have not asked to change.vy_theme_sitewould hold such a choice for the website, should we ever offer one.gstbill.state.v1is the working copy of your workspace, so the app opens without waiting for the server. It is replaced from our copy each time you sign in.
7.Who else can see your data
- Your own employees. A person you add to a business sees what their role allows, which is what you set when you added them.
- Your own recipients. When you press send on a WhatsApp, SMS or email, that document leaves your device and goes to the provider you chose, under their terms, to the number or address on the document. We are not a party to that transfer — but the person you sent it to is, which is why you should check the number before you send.
- Our hosting provider. It stores the database and may access it to keep the service running, under contract and only on our instructions.
- Law enforcement or a regulator, where we are legally compelled to disclose, or where disclosure is necessary to establish or defend a legal claim.
- A buyer of the business. If we sell or transfer the service, your data goes with it. We will tell you before it happens.
We have never sold personal information, and we do not intend to.
8.How long we keep it
Your data is kept for as long as your account is open. When you delete a business, its documents are deleted at once. When you close your account, we delete your data within 30 days — unless we are legally required to keep some of it, such as a record of a tax invoice we issued.
We keep sign-in attempt records for a limited period for security, then delete them.
9.Getting your data back, or having it deleted
- Export. Ask us and we will send you an export of the documents for a business. You can also take your own copy at any time from the service.
- Correction. Edit it in the service. The service is the record of truth, so correcting it there corrects it everywhere.
- Deletion. Delete the business, or close your account. To have us delete your account instead, write to us and confirm.
- Withdraw from an employee. Remove the person from the business, which removes their login’s access at once.
To exercise any right that the service does not do for you on its own, write to us. We will respond within 30 days.
10.Security
Data is sent over HTTPS and stored in a database that only the service can reach. Passwords are stored salted and hashed, never in readable form. Access for support is by your request; we do not browse customer accounts to look around.
No system is perfectly secure. If a breach affects your data we will tell you and the relevant authority as the law requires.
11.Children
The service is for businesses and is not directed at anyone under 18. We do not knowingly collect information from a child. If you believe a child has given us information, write to us and we will delete it.
12.Changes
If we change this policy we will update the date at the top and, for a change that materially affects you, tell you by email or in the app before it takes effect.
Questions about this policy
To see your data, correct it, delete it, or ask a question about how it is handled — write to us. We would rather answer than have you wonder.