We doing business as "Invoice Maker", ("Invoice Maker.", "we", "us") has created this Privacy Policy ("Privacy Policy") in order to set out how we collect, use, and disclose personal information through our Website and in the course of providing our Invoice Maker software-as-a-service platform (the "Platform") and related services (collectively, the "Services").
The privacy of our users is of great importance to us. By using our mobile application or using the Services in any manner, you acknowledge that you accept the practices and policies outlined in this Privacy Policy and you hereby consent to the collection, use and disclosure of your Personal Information in accordance with this Privacy Policy.
This Privacy Policy covers our collection, use and disclosure of information about identifiable individuals and information which can be used to identify an individual ("Personal Information"). Personal Information may be collected about users and visitors to the Website, as well as our customers and their end users who use the Services.
This Privacy Policy covers the activities of Invoice Maker only. This Privacy Policy does not apply to the practices of companies that we do not own or control, including our customers who may use the Services to collect Personal Information of third parties. If you submit any Personal Information to Invoice Maker or the Platform, you are responsible for ensuring that you have obtained the necessary authorizations and consents from the relevant individuals in order to make such Personal Information available to us for use in accordance with this Privacy Policy.
"Personal Data" means any information about an identified or identifiable individual and any device information that may be linked with an identifiable individual. We collect and process the following types of information. Note: Specific Personal Data elements listed are provided for example only and are subject to change. We may create anonymous records from Personal Data for certain business purposes of Invoice Maker and our Affiliates as defined below. Any information that is anonymized or aggregated is no longer Personal Data and we may indefinitely use it, share it and retain it for any reason.
"Contact Data": Personal Data about you used to contact you. For example: your name, company name, title, email address, physical address, phone number, or mobile phone number.
"Profile Data": Personal Data related to a free or paid Customer account on our Services. For example: business name, phone number, mobile phone number, e-mail address, website, physical address and basic business and industry information, employer, colleague names, username, password, and credit card account information.
"User Data": Personal Data of a Customer's Users utilized by Invoice Maker on behalf of Customers to send invoices and/or estimates to and provide associated services to a Customer's Users. For example: User name, Contact List, User postal address, User email address and Image. User Data may be entered by Customes utilizing our Services or by Users using our Services to do business with Customers on webpages we host on behalf of those Customers.
NOTE: By entering User Data into our systems via the Sites and/or Services, you understand that Invoice Maker is acting as a data processor providing services to you. You represent and warrant that you have the requisite authority to provide such Personal Data to us, and that the disclosure does not violate any applicable law or regulation, including but not limited to the Payment Card Industry Data Security Standard (PCI DSS), the Health Insurance Portability and Accountability Act (HIPAA), the California Consumer Privacy Act of 2018 (CCPA), the Personal Information Protection and Electronic Documents Act (PIPEDA), the EU General Data Protection Regulation (GDPR) or the UK General Data Protection Regulation (UK GDPR).
"Invoice & Estimate Data": Any data included in an invoice or estimate created, transmitted, stored and/or viewed via the Services, and any data related to the payment status of an invoice or acceptance status of an estimate. Any data entered by Users as part of viewing or paying an invoice or estimate is considered Invoice & Estimate Data, as is any data entered by a Visitor in any online invoice, estimate, or client form accessible from the Sites. This includes any such data not classified as "User Data," for example: items purchased, services utilized, discount rates, amounts due or overdue, shipping address and contact information, and any data entered in a free-form or custom field.
"Billing Data": When you subscribe to a plan for our Services we collect information about your or your business' payment methods, such as credit or debit card numbers, bank account numbers, and billing address.
"Support & Inquiry Data": We collect information that you provide to us, such as when you create an account, submit a support ticket, engage in an online chat, email or call our sales or service team, enroll your mobile number for SMS messaging campaigns, respond to an in-product offer, when you comment to a blog, or when you email, call, write, fax or otherwise initiate contact with Invoice Maker regarding our Sites and/or Services. We record your contact information and support & inquiry details in our customer relationship management system and support ticketing system.
"Device Data": When you download and use a Mobile App we may collect certain information automatically, such as the type of mobile device you use, your unique device ID, the IP address of your mobile device, your mobile phone number, your mobile operating system, the type of mobile internet browsers you use, geolocation information and information about the way you use the Mobile App.
"Performance & Log Data": Information created by your use of our Sites and Services. For example: your IP address, browser type, operating system, command line information, diagnostic information related to the Sites (i.e. crash activity reports), the referring webpage, pages visited, date, your geolocation, your mobile carrier, your device and application IDs and search terms. Note that depending on the law of your country of residence, your IP address may legally be considered personally identifiable information.
"Cookies": A cookie is a small amount of data generated by a website and saved by your web browser. Its purpose is to remember information about you, similar to a preference file created by a software application. In some cases, Cookies and similar automated data collection technologies may be used to collect personal information, or information that becomes personal information if we combine it with other information.
"Other Data": Any other information that an individual provides to us. For example: survey responses, blog comments, or other communications submitted to Invoice Maker.
We collect your Personal Data through our Sites and Services. Our Sites are public, any information that is disclosed on our Sites may appear on search engines, or other publicly available platforms and may be "crawled," searched and used by unaffiliated third parties. Please do not post any information that you do not want to reveal publicly.
Providing the Services: We process your Personal Data when you sign up for and use our Services with a free or paid account. For example, we use your Contact Data, and Profile Data to configure your account, your templates, and your user credentials, and to communicate with you as it relates to your use of the Services. If you provide a mobile phone number to us as part of your Profile Data, you are explicitly granting us permission to call or send text messages (which may be sent using an auto-dialer) related to your use of the Sites and Services to that number, which we may do at our discretion. We use User Data and Invoice & Estimate Data to enable Customers to utilize the Services to send invoices and estimates, to manage customer relationships, and to enable Users to view and pay invoices, to view and approve estimates, and to otherwise do business with Customers via the Services. We may share this Contact Data, Profile Data, and Invoice & Estimate Data with our service providers and partners to the extent necessary to provide you with the Services.
Invoice & Estimate Processing: We use User Data and Invoice & Estimate Data to create and transmit invoices and estimates on behalf of Customers via the Services. User Data and Invoice & Estimate Data may be used to communicate with a User on behalf of a Customer regarding an invoice or estimate.
Payment Processing: We use Billing Data to collect monthly subscription and usage fees associated with the Services as applicable. We use vaulted credit numbers to process authorized one-time transactions and to automatically process payments as part of recurring subscription payment schedules.
Customer Service: When you contact us through the Sites or Services, including submitting a "contact us" or other online inquiry form, subscribing to the Services, submitting a review, contacting customer support team, utilizing the chat function on our Sites, subscribing to a newsletter or blog, entering a contest, registering for a demo or webinar, completing an online survey or any other means, we may record your Contact Data and your Support & Inquiry Data in our customer relationship management system and use your Personal Data to respond to you. If you provide a mobile phone number to us, you are explicitly granting us permission to send text messages to that number to respond to your request and to contact you at that number via an auto-dialer, which we may do at our discretion.
Marketing: We may use your Personal Data including Contact Data and Support & Inquiry Data to keep you updated about our products and services and send you promotional material about Invoice Maker and as permitted by applicable law, on behalf of our parent company, affiliates, subsidiaries, joint ventures, or other companies under common control with us (collectively, "Affiliates") and partner companies. Promotional materials may include marketing communications, online surveys, notifications regarding our events and webinars and those of our Affiliates and partners. If you provide a mobile phone number to us, you are explicitly granting Invoice Maker permission to send text messages, recorded messages, and/or use an auto-dialer to contact that number for marketing and promotional purposes, which we may do at our discretion. This consent is not a condition of purchasing Invoice Maker Services. You may opt-out of our marketing communications at any time.
Site Experience: We may use Profile Data and Device Data to tailor your experience on the Sites, provide content that we think might be of interest, and to display content according to your stated preferences.
Research & Development: We may use Cookies and Performance & Log Data, for functional purposes, to improve the performance and usability of our Sites, and to analyze how users interact with the Services and Direct Payment Services.
Cookies & Similar Tech: When you access the Sites or Services or open one of our HTML emails, we may automatically record Performance & Log Data and Device Data, set Cookies, or use web beacons, pixel tags, click-stream tracking and similar automated data collection technologies. We use this Personal Data for essential and functional purposes including for site administration, to improve the performance and usability of the Sites and Services, and to analyze how users interact with the Sites and Services. On certain portions of our Sites and Services, we may collect Personal Data through these technologies for advertising, remarketing or other similar purposes.
Security & Enforcement: We process your Personal Data to enhance the security of our Sites and Services and to combat spam, malware or other security risks. This may include monitoring your activities on our Sites and Services. Without processing your Personal Data for such purposes, we may not be able to ensure the security of our Sites and Services. We may also process Personal Data to monitor, investigate, prevent and mitigate any alleged or actual prohibited, illicit or illegal activities or violations of our services and agreements with you. We may use your Personal Data to enforce agreements with third parties and collect fees based on your use of our Services.
Additional Processing: If we process Personal Data in connection with your use of the Sites or Services in a way not described in this Policy, this Policy will still apply generally (e.g. with respect to Your Rights and Choices) unless otherwise stated when you provide Personal Data.
Information we collect may be shared with a variety of parties depending upon the purpose for and context in which that information was provided. In all cases where we share Personal Data with third parties, we will use a "minimum necessary" standard to disclose only that information required for satisfying the purpose of or performing the service for which the information is disclosed. We generally transfer Personal Data as follows:
Consent: We will share your Personal Data in accordance with your consent for us to do so.
Customers: When Users make a purchase from a Customer using our Direct Payment Services, we may share Personal Data with that Customer except where that disclosure is prohibited by law, regulation or other obligations.
Service Providers: In connection with our general business operations, to enable certain features, and in connection with our other legitimate business interests, we may share your Personal Data with service providers or sub-processors who provide certain services or process data on our behalf. Our contracts with these service providers dictate that they only use your information in connection with the services they perform for us and you consent to our sharing of information with these parties by using our Sites, Services or Direct Payment Services subject to this Policy.
Affiliates: In order to streamline certain business operations, develop products and services that better meet the interests and needs of our customers, and inform our customers about relevant products and services, we may share a Customer's or Visitor's Personal Data with any of our current or future Affiliates. Customers and Visitors hereby agree to our sharing some or all of your information and Personal Data with our Affiliates. We never share User Data with Affiliates.
Third-Party Partners: When you complete an online inquiry form to which you were referred by a third-party partner, any information collected through the Invoice Maker hosted online inquiry form may be shared with the referring third party partner. We may share your Personal Data with third parties for marketing or adverting purposes, as permitted by law. For example, when you sign up for a webinar co-hosted by us and a third-party partner, we may share your Personal Data with the third-party partner. Third party partners may use your Personal Data for their own purposes subject to their own privacy policies.
Third-Party Integrated Services: Invoice Maker provides the ability to integrate the Services with certain third-party payment processing and other ("Integrated Services"). When you establish a connection between our Services and an Integrated Service, Invoice Maker may share all data in your account with the Integrated Service including data regarding User Data. Although, Invoice Maker facilitates the Integrated Services, Invoice Maker does not control the policies or procedures of third parties providing the Integrated Service. Third party providers of Integrated Services may collect, use, and share data and personal information subject to their own policies and procedures. You should consult such third party's terms and privacy policies for their use of your information. You acknowledge that the use of Integrated Service is at your own risk. You are responsible for ensuring that your use of Integrated Services is compliant with all applicable laws. Invoice Maker may provide Personal Data to Integrated Service providers for their marketing purposes, if you have not opted out of such disclosure.
Business Transactions: Your Personal Data may be processed in the event of a business transaction, such as a merger, acquisition, liquidation, or sale of all or a portion of our assets. For example, Personal Data may be disclosed (subject to confidentiality restrictions) during the due diligence process for a potential transaction or may part of the assets transferred, in such case the acquiring company will possess any rights granted to us under this Policy.
Legal Disclosures: In limited circumstances, we may, without notice to you or your consent, access and disclose your Personal Data, any communications sent or received by you, and any other information that we may have about you to the extent we believe such disclosure is legally required, to prevent or respond to a crime, to investigate violations of our Terms of Service, End User Terms, or in the vital interests of us or any person or entity. Note, these disclosures may be made to governments that do not ensure the same degree of protection of your Personal Data as your home jurisdiction. We may, in our sole discretion (but without any obligation), object to the disclosure of your Personal Data to such parties.
We retain Personal Data for so long as necessary to service the purpose(s) for which your Personal Data was processed and for a reasonable time thereafter, or as necessary to comply with our legal obligations, to resolve disputes or enforce our agreements. While retention requirements can vary by jurisdiction, we generally apply the retention periods noted below:
Services Usage: We will retain Personal Data for as long as a Customer remains an active user of our Services and for a reasonable time thereafter, to serve the purpose(s) for which the Personal Data was processed. We may store any information about your activity on our Services, including Contact Data, Profile Data, Invoice & Estimate Data, Billing Data, Support & Inquiry Data, and any Other Data created, posted or shared by you while using our free or paid Services for as long as we deem it necessary or until you provide specific instructions to delete it, which may be indefinitely, or where a valid business reason exists for such storage such as retaining a comprehensive transaction history, maintaining the integrity of our systems and logs or for the establishment or defense of legal claims, audit and crime prevention purposes.
User Data: We may store on behalf of Customers, for as long as a valid business reason exists, which may be indefinitely, any Personal Information, including but not limited to Invoice & Estimate Data, collected about a User or other individual, whether entered directly into our systems by the User or whether entered by an authorized Customer via the Services.
Note that Customers control any consumer data we collect and process on their behalf, whether that Personal Data is entered by a consumer User via the Services or whether it is entered by a Customer via the Services, and it is up to the Customer to determine how long they will store their Users' Personal Information in our systems.
Site Activity: We may store any information about your activity on our Sites or any Other Data created, posted or shared by you on our Sites for as long as we deem it necessary or until you provide specific instructions to delete it, which may be indefinitely, or where a valid business reason exists for such storage such as maintaining the integrity of our systems and logs or for the establishment or defense of legal claims, audit and crime prevention purposes.
Marketing: We store information used for marketing purposes indefinitely until you unsubscribe or provide specific instructions to delete it. When you unsubscribe from marketing communications, we add your contact information to our suppression list to ensure we respect your unsubscribe request.
Cookie Data: We retain any information collected via cookies, clear gifs, flash cookies, webpage counters and other technical or analytics tools up to one year from the expiry of the cookie or date of collection. Cookies owned by third parties may have other retention periods.
Invoice Maker processes and stores its data, including Personal Information, on servers located in the United States.
By submitting Personal Information or otherwise using the Services, you agree to this transfer, storing or processing of your Personal Information in the United States. You acknowledge and agree that your Personal Information may be accessible to law enforcement and governmental agencies in the United States under lawful access regimes or court order.
Service Providers and Business Partners. We may from time to time employ third parties to perform tasks on our behalf and we may need to share Account Information and other Personal Information with them to provide certain services. Unless we tell you differently, such third parties do not have any right to use the Personal Information we share with them beyond what is necessary for them to provide the tasks and services on our behalf. The third parties we currently engage includes third party companies and individuals employed by us to facilitate our services, including the provision of database management, payment processing and customer relationship management tools, including the Sub-Processors.
Business Transfers. If our business (or substantially all of our assets) are acquired by a third party, or if we go out of business, enter bankruptcy, or go through some other change of control, Personal Information may be made available or otherwise transferred to the new controlling entity, where permitted under applicable law.
With Your Consent. If we need to use or disclose any Personal Information in a way not identified in this Privacy Policy, we will notify you and/or obtain consent as required under applicable privacy laws.
As Required by Law. We may disclose your Personal Information to third parties without your consent if we have reason to believe that disclosing this information is necessary to identify, contact or bring legal action against someone who may be causing injury to or interference with (either intentionally or unintentionally) our rights or property, other users, or anyone else (including the rights or property of anyone else) that could be harmed by such activities. Further, we may disclose Personal Information when we believe in good faith that such disclosure is required by and in accordance with the law.
We also reserve the right to access, read, preserve, and disclose any information as we reasonably believe is necessary to:
satisfy any applicable law, regulation, legal process or governmental request.
detect, prevent, or otherwise address fraud, security or technical issues.
The above may include exchanging information with other companies and organizations for fraud protection and spam/malware prevention. Notwithstanding the general terms of this policy, the collection, use, and disclosure of Personal Information may be made outside of the terms herein to the extent provided for in any applicable privacy or other legislation in effect from time to time, or pursuant to court orders.
You have the right to access the Personal Information we hold about you in order to verify the Personal Information we have collected in respect to you and to have a general account of our uses of that information. Upon receipt of your written request, we will provide you with a copy of your Personal Information, although in certain limited circumstances, and as permitted under law, we may not be able to make all relevant information available to you, such as where that information also pertains to another user. In such circumstances we will provide reasons for the denial to you upon request. We will endeavor to deal with all requests for access and modifications in a timely manner.
We will make every reasonable effort to keep your Personal Information accurate and up to date, and we will provide you with mechanisms to update, correct, delete or add to your Personal Information as appropriate. As appropriate, this amended Personal Information will be transmitted to those parties to which we are permitted to disclose your information. Having accurate Personal Information about you enables us to give you the best possible service.
The legal basis on which Invoice Maker relies to process Personal Information (known as "Personal Data" under the EU General Data Protection Regulation) are consent, fulfillment of our contracts with customers, as well as pursuit of legitimate business activities.
Where we collect Personal Data directly from the data subjects, such as our customers, and make decisions in regards to processing such Personal Data, we act as the data controller. Otherwise, where we process Personal Data on behalf of third parties (such as when our customers use the Services to process Personal Data of their clients), we are the data processor.
If you are a resident of the EEA, you have certain data protection rights. Invoice Maker takes reasonable steps to allow you to correct, amend, delete, or limit the use of your Personal Data. If you wish to be informed of what Personal Data we hold about you and if you want it to be removed from our systems, please contact us using the contact information set out below. Note that where we act as the data processor on behalf of our users, you will be required to contact the data controller directly to exercise your rights.
In certain circumstances, where we act as data controller, you have the following data protection rights:
Request access to your Personal Information (commonly known as a "data subject access request"). This enables you to receive a copy of the Personal Information we hold about you where we are the data controller and to check that we are lawfully processing it.
Request correction of the Personal Information that we hold about you. This enables you to have any incomplete or inaccurate information we hold about you corrected, though we may need to verify the accuracy of the new information you provide to us.
Request erasure of your Personal Information. This enables you to ask us to delete or remove Personal Information where there is no good reason for us continuing to process it. You also have the right to ask us to delete or remove your Personal Information where you have successfully exercised your right to object to processing (see below), where we may have processed your information unlawfully, or where we are required to erase your Personal Information to comply with local law. Note, however, that we may not always be able to comply with your request of erasure for specific legal reasons which will be notified to you, if applicable, at the time of your request.
Object to processing of your Personal Information where we are relying on a legitimate interest (or those of a third party) and there is something about your particular situation which makes you want to object to processing on this ground as you feel it impacts on your fundamental rights and freedoms. You also have the right to object where we are processing your Personal Information for direct marketing purposes. In some cases, we may demonstrate that we have compelling legitimate grounds to process your information which override your rights and freedoms.
Request restriction of processing of your Personal Information. This enables you to ask us to suspend the processing of your Personal Information in the following scenarios: (a) if you want us to establish the information's accuracy; (b) where our use of the information is unlawful but you do not want us to erase it; (c) where you need us to hold the information even if we no longer require it as you need it to establish, exercise or defend legal claims; or (d) you have objected to our use of your information but we need to verify whether we have overriding legitimate grounds to use it.
Request the transfer of your Personal Information to you or to a third party. We will provide to you, or a third party you have chosen, your Personal Information in a structured, commonly used, machine-readable format. Note that this right only applies to automated information which you initially provided consent for us to use or where we used the information to perform a contract with you.
Withdraw consent at any time where we are relying on consent to process your Personal Information. However, this will not affect the lawfulness of any processing carried out before you withdraw your consent. If you withdraw your consent, we may not be able to provide certain services to you. We will advise you if this is the case at the time you withdraw your consent.
Please note that we may ask you to verify your identity before responding to such requests. You have the right to complain to a Data Protection Authority about our collection and use of your Personal Data. For more information, please contact your local data protection authority in the EEA. If you wish to exercise any of the rights set out above, please contact us using the contact details below.
This section provides additional details about the Personal Information we collect about California consumers and the rights afforded to them under the California Consumer Privacy Act (the CCPA).
For more details about the Personal Information Invoice Maker has collected over the last 12 months, please see the section "Information you provide us" above. We collect this Personal Information for commercial purposes described above. Invoice Maker does not sell (as that term is defined in the CCPA) the Personal Information we collect.
Subject to certain limitations, the CCPA provides California consumers the right to request to know more details about the categories or specific pieces of Personal Information we collect (including how we use and disclose this Personal Information), to delete their Personal Information, to opt out of any "sales" of Personal Information that may be occurring, and to not be discriminated against for exercising these rights.
California consumers may make a request pursuant to their rights under the CCPA by contacting us at the contact information below. We will verify your request using the information associated with your account, if available, including email address. Government identification may be required. Consumers can also designate an authorized agent to exercise these rights on their behalf.
We may amend this Privacy Policy from time to time. Use of Personal Information we collect is subject to the Privacy Policy in effect at the time such information is collected, used or disclosed. If we make material changes or changes in the way we use Personal Information, we will notify you by posting an announcement on our Website or sending you an email prior to the change becoming effective. You are bound by any changes to the Privacy Policy when you use the Website or Services after such changes have been first posted.
Questions regarding this Privacy Policy or Invoice Maker's privacy practices should be directed to our Privacy and Data Protection Officer:
Attention: Privacy and Data Protection Officer
Email: privacy@invoice2maker.com
Last Updated: 2023-08-03