Privacy Policy
Last updated: January 2026
1. Introduction
Invoice Navigator ("we", "our", "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our website and services.
2. Data We Collect
2.1 Information you provide
- Email address (when you sign up or request a report)
- Company name (optional, for personalized reports)
- Business location and customer countries (for compliance analysis)
2.2 Invoice data
When you use our validator, we process your invoice file to validate it. We do NOT store the actual invoice content. We only store:
- A hash of the file (to prevent duplicate processing)
- Validation results (pass/fail, error codes)
- Anonymized metadata (format type, country codes)
2.3 Automatically collected data
- IP address (anonymized)
- Browser type
- Pages visited
- Time spent on pages
3. How We Use Your Data
- To provide our compliance analysis and validation services
- To send you your compliance reports
- To improve our services based on usage patterns
- To generate aggregate statistics (e.g., common validation errors)
4. Data Sharing
We do not sell your personal data. We may share data with:
- Service providers: Vercel (hosting), Supabase (database)
- Analytics: Plausible Analytics (privacy-focused, no cookies)
- AI Processing: Anthropic Claude (for PDF Converter feature only)
- Partners: Only if you explicitly request a partner introduction
4.1 AI Processing Disclosure
When you use our PDF Converter feature, your invoice data is processed by Anthropic's Claude AI to extract structured data from PDF invoices. This processing:
- Purpose: Extract invoice fields (dates, amounts, parties) from PDF format
- Processor: Anthropic, Inc. (US-based, GDPR-compliant sub-processor)
- Data location: Processed in US data centers (covered by EU-US Data Privacy Framework)
- Training: Your data is NOT used to train AI models (per Anthropic's API Terms of Service)
- Retention: Invoice content not stored; only extracted structured data retained
- Opt-out: Use our validator or fixer directly to avoid AI processing
Note: Our core validation and fixing features do NOT use AI processing. Only the PDF Converter feature sends data to Anthropic.
5. Your Rights (GDPR)
Under GDPR, you have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Object to processing
- Data portability
To exercise these rights, contact us at: privacy@invoicenavigator.eu
6. Data Retention
We retain your data for as long as necessary to provide our services:
- Account data: Until you delete your account
- Validation logs: 12 months (anonymized after 30 days)
- Analytics data: 24 months
7. Security
We implement appropriate security measures including:
- HTTPS encryption for all data in transit
- Encrypted database storage
- Regular security audits
- Access controls and authentication
8. Cookies
We use minimal cookies:
- Essential cookies for site functionality
- Theme preference (light/dark mode)
- Session cookies for logged-in partners
We do NOT use tracking cookies or third-party advertising cookies.
9. Contact
For privacy-related questions:
Email: privacy@invoicenavigator.eu
10. Changes
We may update this policy. Significant changes will be communicated via email or website notice.