Privacy Policy
Last updated: March 2026
Avoxaa ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and the choices you have regarding your data when you use the Avoxaa app.
1. Information We Collect
Account information: When you create an account we collect your full name, email address, and password (stored as a secure hash — we never see it in plain text).
Business profile: Business name, address, phone number, email, tax number, logo image, and preferred currency that you enter in the app.
Client data: Names, emails, phone numbers, and addresses of your clients that you add manually.
Document data: Invoices, quotes, estimates, and receipts you create, including line items, prices, notes, and payment terms. Documents are stored locally on your device and are not uploaded to our servers.
Usage data: Basic diagnostic information such as crash reports to help us improve the app. We do not track your activity for advertising purposes.
2. How We Use Your Information
• To create and manage your Avoxaa account.
• To sync your profile and client data across devices via our cloud service.
• To send password reset and email verification messages.
• To investigate and fix technical issues.
• To respond to your support requests.
We do not sell, rent, or share your personal information with third parties for marketing purposes.
3. Data Storage and Security
Your account and client data are stored securely using Supabase, a cloud database provider with industry-standard encryption in transit (TLS) and at rest (AES-256). Documents, catalog items, and settings are stored locally on your device using encrypted local storage and are not transmitted to our servers.
We implement row-level security on all cloud-stored data, meaning each user can only access their own records. No Avoxaa employee can read your business documents or client data.
4. Third-Party Services
Supabase (supabase.com): Handles user authentication and cloud storage of profiles and client records. Supabase is SOC 2 Type II compliant.
Google Sign-In: If you choose to sign in with Google, Google shares your name and email address with us. Google's privacy policy applies to that interaction (policies.google.com/privacy).
Sign in with Apple: If you choose to sign in with Apple, Apple may share your name and email (or a private relay address) with us. Apple's privacy policy applies (apple.com/legal/privacy).
5. Data Retention
We retain your account and cloud-stored data for as long as your account is active. If you delete your account, your profile and client data are permanently deleted from our servers within 30 days. Locally stored data (documents, items) is removed when you uninstall the app.
6. Your Rights
Depending on your location, you may have the right to:
• Access the personal data we hold about you.
• Request correction of inaccurate data.
• Request deletion of your account and associated data.
• Export your data in a portable format.
To exercise any of these rights, contact us at privacy@avoxaa.com. We will respond within 30 days.
7. Children's Privacy
Avoxaa is intended for users who are 16 years of age or older. We do not knowingly collect personal information from children under 16. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.
8. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page and, where the changes are significant, notify you via email or an in-app notice. Your continued use of Avoxaa after changes become effective constitutes your acceptance of the revised policy.
9. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us:
Email: privacy@avoxaa.com
Website: avoxaa.com/privacy