Privacy Policy

What data involy collects, why we collect it, who we share it with, and the rights you have over it.

Effective June 28, 2026Applies to involy.appinvoly is a product of ThinkOpen Inc.

In plain English: involy collects the minimum data needed to run the service. We do not sell your information, we do not share it with advertisers, and you can export or delete it at any time. Read on for the full picture.

Information we collect

We collect information in three ways: what you give us directly, what is generated as you use the service, and what flows in through third-party integrations you connect.

Account information

When you sign up, we collect your name, email address, and a securely hashed password (we never store your password in plain text). If you sign in through a single-sign-on provider (such as Microsoft Entra ID), we receive only the profile fields that provider sends us.

Business and client information

As you use involy, you enter information about your business and your clients: client names, billing addresses, contact details, invoice line items, amounts, notes, and proposal content. This data belongs to you — we hold it on your behalf to operate the service.

Financial and transaction data

involy records the payment amounts, dates, and statuses associated with invoices you send. When you connect online payments through Stripe, we receive confirmation events from Stripe (such as "payment succeeded") and store them alongside your invoices. We do not store full card numbers or bank account numbers — see the Payment data & Stripe section.

Usage and device data

When you access involy, our servers and analytics infrastructure automatically collect standard log data: your IP address, browser type and version, operating system, referring URL, pages visited, and timestamps. We use this to operate the service reliably and to understand aggregate usage patterns.

How we use information

We use the information we collect to:

  • Provide and improve the service — creating invoices and proposals, processing payments, generating your AI-powered financial summaries, and making the product better over time.
  • Send transactional communications — invoice notifications, payment confirmations, account security alerts, and your AI accountant weekly summary. These are necessary to operate the service and cannot be opted out of while you have an active account.
  • Provide customer support — responding to questions and resolving issues you report.
  • Maintain security and prevent fraud — detecting abuse, enforcing our Terms of Service, and protecting your account.
  • Comply with legal obligations — retaining records as required by applicable law, responding to valid legal requests.

We do not use your data for advertising targeting, sale to data brokers, or any purpose not listed above.

The AI accountant & your data

involy's AI features (the "Ask involy" assistant and the weekly AI accountant summary) are powered by Anthropic Claude. When you use these features, relevant portions of your financial data — such as invoice totals, expense categories, and cash-flow figures — are sent to Anthropic's API to generate your response.

Important:involy's integration with Anthropic is configured so that your data is not used to train Anthropic's models. Queries are processed via structured tool calls; we do not pass free-form user-controlled strings directly into prompts as a defense against prompt injection. Data sent to Anthropic is subject to Anthropic's Privacy Policy.

The AI provides informational responses based on the data you have entered. It is not a licensed accountant. See the "Not financial advice" section of our Terms of Service for the full disclaimer.

Payment data & Stripe

Online payment processing is handled by Stripe, Inc., a PCI-DSS Level 1 certified payment processor. When a client pays an invoice online, their card or bank details are entered directly into Stripe's secure checkout — involy never sees, transmits, or stores full card numbers, CVV codes, or bank account numbers.

involy receives from Stripe only the confirmation data needed to record a payment (amount, date, last-four digits for display, and status). Your Stripe connection is governed by Stripe's Privacy Policy.

Sub-processors we use

involy relies on the following third-party services ("sub-processors") to deliver the product. Each receives only the data necessary for their specific function.

VendorPurposeData involved
StripePayment processing (card & ACH)Client billing details; payment events. Full card data stays within Stripe only.
SupabasePostgreSQL database hostingAll application data at rest (accounts, invoices, expenses, clients).
VercelApplication hosting & edge deliveryRequest logs, session tokens in transit, server-rendered page output.
ResendTransactional emailRecipient email address, invoice/proposal content included in outbound emails.
AnthropicAI accountant featuresStructured financial summaries (totals, categories, dates). Not used for model training.

We periodically review our sub-processors and will update this table when we add or remove vendors.

Cookies

involy uses a small number of cookies and similar storage mechanisms, primarily to keep you signed in. We do not use advertising cookies or cross-site tracking. For full details, see our Cookie Policy.

How we share information

We do not sell your personal information. We do not share your data with advertisers, data brokers, or any third party for their own marketing purposes.

We share data only in these limited circumstances:

  • With sub-processors — as described in the table above, strictly for operating the service.
  • With your explicit instruction — for example, when you share an invoice link with a client.
  • For legal compliance — if we receive a valid subpoena, court order, or other binding legal process, we will comply and will attempt to notify you unless prohibited by law.
  • In a business transfer — if ThinkOpen Inc. is acquired or merges with another entity, your data may transfer as part of that transaction. We will provide notice before your data becomes subject to a materially different privacy policy.

Data retention

We retain your data for as long as your account is active. If you cancel your account, we will delete your personal data within a reasonable period (typically 90 days), except where we are required by law to retain records longer. Financial records (invoices, payment history) may be retained for up to seven years to satisfy applicable tax and accounting regulations — you may request an export before deletion.

You can request deletion of your account and associated data at any time by contacting privacy@involy.app.

Security

We use industry-standard safeguards: 256-bit AES encryption for data at rest and TLS 1.3 for all data in transit. Access to production systems is restricted to authorized personnel under a least-privilege policy. For the full picture, see our Security page.

No system is perfectly secure. If you discover a potential vulnerability, please report it responsibly to security@involy.app.

Your privacy rights

Regardless of where you are located, you can request at any time:

  • Access — a copy of the personal data we hold about you.
  • Correction — an update to inaccurate or incomplete data.
  • Deletion — removal of your account and personal data (subject to legal retention requirements).
  • Export — a machine-readable copy of your business data (invoices, clients, expenses).
  • Objection or restriction — to specific processing activities where applicable law provides this right.

California residents (CCPA / CPRA)

If you are a California resident, you have the right to know what categories of personal information we collect, the right to delete your personal information, the right to opt out of the sale or sharing of personal information (we do not sell or share it), and the right to non-discrimination for exercising your privacy rights. To submit a verifiable consumer request, contact privacy@involy.app.

EEA / UK residents (GDPR good-faith note)

involy is operated from the United States and is not yet formally certified under a specific EU adequacy mechanism. If you are located in the European Economic Area or the United Kingdom, you use the service with the understanding that your data is processed in the US. We take your GDPR rights seriously and will respond to access, rectification, erasure, and portability requests promptly. Our lawful basis for processing is primarily contract performance (operating the service you signed up for) and, where applicable, legitimate interests.

Children

involy is not directed at, and we do not knowingly collect personal information from, individuals under 18 years of age. If you believe a minor has provided us with personal information, please contact us at privacy@involy.app and we will delete it promptly.

Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will post the updated policy here and update the effective date at the top. For significant changes that affect how we use your data, we will also send a notice to the email address on your account at least 14 days before the change takes effect.

Your continued use of involy after a policy update constitutes acceptance of the revised terms. If you do not agree, you may cancel your account before the effective date.


Contact us

Questions about this document or your data? We read every message.

involy / ThinkOpen Inc.
5420 McConnell Ave, Los Angeles, CA 90066
Privacy: privacy@involy.app
Legal: legal@involy.app
Security: security@involy.app

This document is provided for transparency and is not legal advice. involy is in early access; we will post material changes here and, where required, notify you directly.