Privacy Policy
Last updated: July 29, 2026 · Version 2026-08
Who we are
Invoe is a product of Victoria Winter Consulting LLC, a South Carolina limited liability company doing business as Invoe. We build tools that help multi-vendor retailers manage incoming inventory — tracking purchase orders, receiving shipments, and preparing products for sale.
Victoria Winter Consulting LLC (d/b/a Invoe)
1486 Indian St
Mount Pleasant, SC 29464
United States
support@invoeretail.com
Our role, and yours
Which privacy obligations apply depends on whose data it is, so it's worth being precise:
- For your business data — purchase orders, vendor records, product catalogs, receiving history — you decide what to collect and why. We process it on your instructions to run the Service. In GDPR terms you are the controller and we are a processor.
- For your account information — the names, email addresses, and phone numbers of you and your team, your SMS consent records, and how you use the app — we decide what to collect and why, so we are the controller.
Our Data Processing Addendum governs the first category. It applies automatically — there's nothing to sign — and includes the Standard Contractual Clauses for transfers out of the UK, Switzerland, and the EEA.
What we collect
- Account information — name, email address, password (stored hashed, never in readable form), and your role at the shop.
- Contact and SMS consent information — phone number, SMS opt-in status, consent source, consent timestamp, and the consent language shown when you opted in.
- Shopify store data — store domain, product catalog, inventory levels, and locations, synced through Shopify's API.
- Business data you create — purchase orders, vendor information, market trip notes, staged products, receiving logs, claims, invoices, and payables.
- Uploaded files — purchase order and invoice documents (PDFs, images, CSVs, spreadsheets) you upload for parsing.
- Billing information — App Store subscriptions are processed by Shopify; direct web subscriptions by Stripe. We never see or store your card number. We keep a record of your plan, payment status, and billing history.
- Operational and audit logs.We record activity in your account for security, support, billing accuracy, and dispute resolution — who did what and when, app and system events, billing state changes, publish history, and your acceptance of these policies (including the date, version, IP address, and browser). This is more than page-view analytics and we'd rather say so plainly than call it “basic analytics”.
- Website analytics — page views, referral source, and feature usage, subject to the consent rules below.
We do not receive your shoppers' personal information.This isn't just a promise — the permissions we request from Shopify don't include access to orders or customers, so that data never reaches us. Invoe works with your vendor, product, and inventory data.
Why we use it, and our legal basis
If you're in the UK, Switzerland, or the European Economic Area, the GDPR requires us to name a legal basis for each purpose:
- To provide the Service — PO tracking, receiving, publishing, reporting, accounting sync. Basis: performance of our contract with you.
- To parse your documents and draft product content. Basis: performance of our contract.
- To bill you and keep financial records. Basis: contract, and our legal obligations.
- To send transactional email — sign-in links, team invites, billing notices, security alerts. Basis: contract.
- To keep the Service secure, and to investigate problems and disputes — the logs described above. Basis: our legitimate interests in operating a secure and accountable service.
- To improve the product from usage patterns. Basis: legitimate interests, or your consent where required.
- To send product tips, updates, or SMS. Basis: your consent, which you can withdraw at any time.
Where your data is processed
Your data is stored and processed in the United States.Our database and file storage run in Supabase's us-east-2region (Ohio), and our application runs on Vercel's US infrastructure. Some of the providers listed below may process limited data in other regions.
If you're in the UK, Switzerland, or the EEA, that means your data is transferred outside your home country. Where such a transfer needs a safeguard, we rely on the European Commission's Standard Contractual Clauses (and the UK Addendum or Swiss equivalent as applicable) with the providers involved. Email us for a copy of the relevant terms.
How long we keep it
- Your business data and uploaded files — for as long as your account is active. If you cancel or uninstall, we revoke the store connection immediately and you have 30 days to export before we delete it. Deletion is permanent.
- Uploaded files not attached to any purchase order — deleted automatically after 30 days.
- Account and contact information — deleted with your account, subject to the exceptions below.
- Billing records — kept for up to 7 years, because tax and accounting rules require it.
- Your acceptance of these policies — kept for as long as we may need to show what was agreed, and after account deletion where a dispute is possible.
- Security and audit logs — typically up to 24 months.
- SMS consent and opt-out records — kept after opt-out, because we need them to honor the opt-out and to show consent was given.
- Anonymized or aggregated data that can no longer identify you or your business may be kept indefinitely.
You can request earlier deletion at any time — see Your rights below.
Who else processes your data
We use these providers to operate Invoe, and share only the minimum each needs:
- Shopify — Store connection, catalog sync, product publishing, and App Store billing (United States and Canada)
- Supabase — Database, authentication, and file storage — our primary data store (United States (us-east-2, Ohio))
- Vercel — Application hosting and content delivery (United States)
- Anthropic — Automated parsing of purchase orders and invoices, and drafting of product descriptions (United States)
- Stripe — Payment processing for direct web subscriptions (United States)
- Intuit (QuickBooks) — Accounting sync — vendors and bills, only if you connect it (United States)
- Resend — Transactional email — sign-in links, team invites, billing and security notices (United States)
- Brevo — Contact records, and product or lifecycle email (European Union)
- Upstash — Rate limiting, to keep the Service available and resist abuse (United States)
- Sentry — Error tracking and performance monitoring (United States)
The full breakdown — including exactly what data each one can see — is on our subprocessors page.
Each processes data under its own terms and our agreements with it. Before a new provider starts processing your data we'll update that page and give you at least 30 days' notice by email, and you can object — see our Data Processing Addendum.
We do not sell your personal information, and we do not share it for cross-context behavioral advertising. We have never done so. That includes SMS opt-in data and consent records, which are never shared with third parties for their own marketing.
Automated parsing and drafting
When you upload a purchase order or invoice, we send the document to Anthropic's Claude API to extract its contents. When you generate a product description, the product details are sent the same way. Results are stored with your records.
Your documents and content are not used to train models.We don't permit our providers to do so.
Automated output can be wrong, including in ways that look confident and plausible. Nothing is published to your store without you reviewing and confirming it — see section 5 of our Terms of Service.
Chrome Extension (“Invoe — Send PO”)
The Invoe Chrome extension lets curators capture a purchase order from a wholesale portal (Joor, Faire, NuORDER, MarketTime, Elastic Suite, etc.) and send it to their Invoe review queue without leaving the source tab. The extension is an optional, user-installed companion to the web app; you do not need it to use Invoe.
What the extension reads
- The visible text and page title of the tab you are viewing, only when you click the extension icon and press “Capture this PO.”
- Up to 20 product image URLs found on that same page. The extension's background service worker then fetches the image bytes from the vendor portal (anonymously, with no session cookies attached) so they can be attached to your captured PO.
- The page URL, hostname, and timestamp of the capture — recorded as provenance on the resulting PO so you can jump back to the original source page later.
What the extension does NOT read
- Anything on any tab you are not currently viewing.
- Anything before you click the icon — no background reading, no telemetry, no analytics.
- Form data, passwords, cookies, browsing history, or anything from sites outside the portal where you triggered the capture.
Where captured data goes
- Captured page content and images are sent only to your Invoe account, identified by a scoped API key you generate yourself inside Invoe (Settings → Developer settings).
- The capture is stored in your private Supabase Storage bucket, scoped to your account's client ID. Other Invoe accounts cannot read it.
- Images are stored privately and only ever served back to you via short-lived signed URLs (expire after one hour).
- We do not sell, share, or use captured data for any purpose other than running the parse + review + save flow you triggered.
Where the API key lives
- Stored in
chrome.storage.localon your device only. Never synced to any cloud account. - Scoped to the
extension:captureandextension:reviewpermissions — the key can post captures and run the review surface, but cannot read your existing POs, vendors, products, or settings. - Keys expire after 90 days by default. We email every owner on the account when a new key is generated, so unexpected keys are easy to spot.
- You can revoke any key instantly at
/dashboard/settings/developerinside Invoe.
The extension requests no <all_urls> access, no tab enumeration, no cookies, and no webRequesthooks. Full permissions justification is documented in the extension's public README.
Limited Use compliance
Invoe's use of information received from the “Invoe — Send PO” Chrome extension adheres to the Chrome Web Store User Data Policy, including its Limited Use requirements. Captured page content, product images, and page provenance are used solely to deliver the purchase order into your own Invoe review queue — the extension's single disclosed purpose. We do not use this data for any other purpose, do not sell or transfer it to third parties except as necessary to provide that feature, do not use it for advertising or creditworthiness, and do not permit humans to read it except with your explicit permission, to resolve a support issue you have raised, or where required by law.
Your rights
Wherever you are, you can ask us to:
- Access the data we hold about you and your business, or get a copy of it
- Correct anything inaccurate
- Delete your data
- Export your data in a standard format — you can do this yourself, any time, from the app
- Withdraw consent you previously gave, including for email or SMS
- Object to or restrict processing we base on legitimate interests
- Complain to your data protection authority. If you're in the EEA, UK, or Switzerland you can complain to your local supervisory authority; we'd appreciate the chance to put it right first.
If you're a California resident, you have these rights under the CCPA/CPRA, plus the right to know what we collect and why (set out above), the right to opt out of sale or sharing (we do neither), and the right not to be discriminated against for exercising them. We do not use or disclose sensitive personal information beyond what is necessary to provide the Service.
To exercise any of these, email support@invoeretail.com. We'll respond within 30 days, and we may need to verify who you are first — which usually just means replying from the address on the account. You may use an authorized agent. There's no charge.
How we protect your data
- Row-level security on every database table, so each account can only reach its own data
- Shopify access tokens stored server-side, restricted at the database level, and never sent to a browser
- Encryption in transit (HTTPS everywhere) and at rest
- Signature verification on every incoming webhook
- Signed, httpOnly session cookies
- Uploaded files kept in private storage, served only through short-lived signed links
- Least-privilege permissions on our Shopify app — notably, no ability to modify your storefront's code or theme
- An automated security audit that runs weekly, plus a nightly check that the database still refuses privileged operations to anonymous callers
No system is perfectly secure. If a security incident affects your data, we'll notify you without undue delay and in any case within 72 hours of confirming it. To report a security concern, email support@invoeretail.com.
Cookies and tracking
We use essential cookiesfor signing in and keeping you signed in. These can't be turned off without breaking the app, and they don't require consent.
We also use analytics cookies to understand how the product and website are used. How those are handled depends on where you are:
- EEA, UK, and Switzerland — nothing non-essential runs until you accept. If we can't determine your region, we treat you as if consent is required.
- Elsewhere, including the United States — analytics may run by default, and you can opt out at any time from the banner.
If your browser sends a Global Privacy Controlsignal, we treat that as an opt-out and don't run analytics — unless you afterwards make a different choice on this site using the banner, which we take as the more specific instruction. You can change your choice whenever you like, and an explicit choice always overrides the regional default.
Children
Invoe is a business tool and isn't directed at children. We don't knowingly collect personal information from anyone under 18. If you believe a child has given us information, email us and we'll delete it.
Changes to this policy
We may update this policy. Each version carries a version identifier and date. If a change is material, we'll notify active users by email or in the app before it takes effect, and ask you to acknowledge it.
Contact
Questions, requests, or complaints about privacy:
Victoria Winter Consulting LLC (d/b/a Invoe)
1486 Indian St
Mount Pleasant, SC 29464
United States
support@invoeretail.com