Legal
Privacy Policy
Last updated 6 September 2026
This policy explains what Paymeify (www.paymeify.com) collects, why, and what you can do about it. If you use the Service, you agree to this policy.
1. Who we are
Paymeify is a web app for freelancers to track project milestones and collect payment. We are the data controller for account data you submit to us. Contact: hello@paymeify.com.
2. What we collect
- Account: name, email, password hash (or Google sign-in identifiers), and optional business name and UPI ID.
- Projects: project names, client names, milestone titles, amounts, dates, and the public token used in the client link.
- Payments: payment status, optional UPI reference the client typed, and webhook event IDs from Razorpay or Stripe. We store encrypted copies of gateway keys you paste in Settings. We do not store full card numbers.
- Technical: cookies needed to keep you signed in, and standard server logs (IP, user agent, timestamps) used to run and secure the Service.
Clients who open a project link do not create an account. Their browser may send a payment report or start checkout. We do not sell client contact lists — we typically never see a client email unless you typed it into a project field.
3. How we use it
- to operate your account, projects, and client portal
- to send login, confirmation, and password-reset email
- to mark milestones paid after a verified webhook or your confirmation
- to keep the Service secure and debug failures
We do not sell your personal data. We do not use it to advertise other people’s products.
4. Sharing
We share data only with:
- Infrastructure providers that host the app and database (currently Vercel and Supabase) under their terms.
- Payment providers you connect (Razorpay, Stripe) when a client pays through them. Their privacy policies apply to that checkout.
- Authorities if the law requires it.
Anyone you send a project link to can see the project and payment details on that page. That is by design.
5. Cookies
We use essential cookies for your session after you log in or sign up. We do not use advertising cookies or third-party ad trackers on the marketing site.
6. Retention
We keep account and project data while your account is open. You can delete projects from the app. To delete your account and remaining data, email hello@paymeify.com. We may keep minimal records if the law requires it (for example, webhook audit rows) for a limited time.
7. Security
Access to your projects is protected by your login and by row-level security in the database. Gateway secrets are encrypted at rest. Client links are unguessable tokens; they are still a secret — do not post them publicly.
8. Your rights
Depending on where you live, you may have rights to access, correct, export, or delete your personal data, or to object to certain processing. Email hello@paymeify.com. If you signed in with Google, you can also revoke access from your Google account.
9. Children
The Service is not directed at children under 18. We do not knowingly collect data from them.
10. International
Servers may be outside your country. If you use Paymeify from India or elsewhere, you understand your data may be processed in regions where our hosts operate.
11. Changes
We may update this policy. The “Last updated” date will change. The current version lives at www.paymeify.com/privacy.