Privacy Policy

How PaidVora handles your data and your customers' data · Effective September 26, 2026 · Provided by JuriTech LLC

About this policy

PaidVora is provided by JuriTech LLC ("PaidVora", "we", "us"). This Privacy Policy explains how we collect, use, share, and protect information when you use the Service at paidvora.com, and how we handle information we process on behalf of our business customers.

There are two kinds of data involved. "Account Data" is information about you and your team, for which we are the controller. "Customer Data" is your business data — QuickBooks invoice and customer information, follow-up policies, approved email content, and customer replies — which we process only as a service provider acting on your instructions.

Information we collect

Account Data you give us: name, work email address, company or firm name, password, role in a workspace, billing information when you purchase a plan, and support communications.

Data from QuickBooks Online, with your authorization: overdue invoice details (amount, due date, status), customer names and billing email addresses, and payment-related status such as paid, voided, or deleted invoices. Access is read-only; we never modify your QuickBooks data.

Data from the emails the Service sends: delivery outcomes reported by our email provider (sent, delivered, bounced, delayed, complained, failed), and customer replies received at private reply addresses, including their sanitized text content.

Service usage data: log data, IP address, browser type, pages visited, and actions taken in the Service (such as approvals and policy changes), which are recorded in audit history.

How we use information

To provide the Service: sync overdue invoices, draft and deliver approved follow-up emails, route customer replies to the right case, and show you delivery status.

To operate and secure the Service: authenticate users, enforce workspace roles and isolation, prevent abuse, verify webhook authenticity, and keep audit trails.

To communicate with you: transactional email about your account, trials, billing, and service changes; product updates you can opt out of.

To improve the Service: aggregated, de-identified usage analytics. We do not use Customer Data to advertise, and we do not sell personal information.

Legal bases where the GDPR applies: performance of a contract (providing the Service), legitimate interests (security, fraud prevention, product improvement), and consent where specifically required.

Sharing and disclosures

We share information only with: service providers that help us operate the Service — cloud hosting, our email delivery provider, our payment processor, and error-monitoring tools — each bound by contract to process data only for us; Intuit, through the authorized QuickBooks Online interfaces you connect; and authorities, when required by law or to protect rights and safety.

If you connect a QuickBooks company through an accounting-firm workspace, the firm's members with the roles you grant can see that company's follow-up data within PaidVora.

We do not sell or rent personal information, and we do not share it for cross-context behavioral advertising.

Email sending and replies

Emails sent through the Service come from a PaidVora-managed sending address and include a private reply address unique to each case, so customer replies are matched only to the right case and never through subject lines or quoted text.

Customer reply content is sanitized (scripts, forms, embedded objects, remote images, tracking pixels, and unsafe links are removed) before it is stored and shown in your workspace.

Your customers may ask you to stop being contacted. The Service's stop-contact control blocks all further emails to that customer; you can also pause individual cases at any time.

Data retention

Account Data is retained while your account is active and for a reasonable period afterwards. Customer Data is retained while your workspace is active; after you close a workspace or your subscription ends, it is made available for export for at least 30 days and then deleted in line with our retention schedules, except where we must keep it longer for legal, security, or audit reasons.

OAuth credentials for QuickBooks and related secrets are encrypted at rest and are deleted when you disconnect the connection or close the workspace.

Security

We use administrative, technical, and physical safeguards designed to protect personal information, including encryption of credentials and secrets at rest, tenant isolation enforced in the database, signed webhook verification, role-based access, and audit logging of sensitive actions.

No system is perfectly secure. If we learn of a breach affecting your data, we will notify you as required by applicable law.

Your privacy rights

Depending on where you live, you may have rights to access, correct, delete, or export your personal information, to object to or restrict certain processing, and to lodge a complaint with a supervisory authority. California residents have additional rights under the CCPA/CPRA, including the right to know, delete, correct, and opt out of any sale or sharing of personal information — we do not sell or share personal information as those laws define it.

For Account Data, contact us at support@paidvora.com to exercise your rights. For Customer Data about your own customers, you are the controller: use the Service's controls (such as stop-contact and case deletion where available) or contact us and we will assist.

We will not discriminate against you for exercising any privacy right.

International transfers

PaidVora is operated in the United States. If you use the Service from outside the United States, your information will be transferred to and processed in the United States and other countries where our service providers operate. Where required, we rely on appropriate transfer mechanisms such as the EU Standard Contractual Clauses.

Children

The Service is intended for businesses and is not directed to children under 16. We do not knowingly collect personal information from children.

Changes to this policy

We may update this Privacy Policy as the Service evolves. If a change materially affects how we handle your data, we will notify you in advance through the Service or by email. The version in effect governs each use of the Service.

Contact

For privacy questions or requests, contact JuriTech LLC at support@paidvora.com.