Privacy Policy

Last updated: March 12, 2026

1. Information We Collect

When you create an account, we collect your email address and password (hashed). When you upload invoices, we process the CSV data you provide, which may include customer names, invoice amounts, due dates, and email addresses. We do not access your accounting software directly.

2. How We Use Your Information

We use your data to: provide the Cashgenius service (risk scoring, email generation, dashboard analytics), send transactional emails (account confirmation, password reset), and improve our AI models. We do not sell your data to third parties.

3. Data Storage & Security

Your data is stored on Supabase (PostgreSQL), hosted on AWS infrastructure. All data is encrypted in transit (TLS) and at rest. Passwords are hashed using bcrypt. We use row-level security policies to ensure users can only access their own data.

4. Data Retention & Deletion

You can delete your account and all associated data at any time by contacting support@Cashgenius.app. Upon deletion, all invoice data, customer data, and profile information is permanently removed within 30 days.

5. Third-Party Services

We use the following third-party services: Supabase (authentication & database), Resend (transactional email delivery), Groq (AI text generation for follow-up emails), and Vercel (hosting). Each service has its own privacy policy.

6. Cookies

We use essential cookies for authentication (session tokens). We do not use advertising or tracking cookies.

7. Contact

For privacy-related questions, email support@Cashgenius.app.