DeductFlow
Blog Open App

Privacy Policy

Effective Date: March 5, 2026 · Last Updated: June 18, 2026

The short version: DeductFlow keeps a working copy of your data on your device and securely backs it up to our servers so you never lose it and can use it across devices. Your data is encrypted in transit and at rest, isolated to your account, and never sold. We collect minimal analytics to improve the product.

1. Information We Collect

We collect different types of information depending on how you interact with DeductFlow:

1a. Data You Enter in the App

When you use the DeductFlow app, you may enter financial and operational data including expenses, income, mileage, active hours, property details, and other information related to your short-term rental business. This data is stored on your device for fast, offline access and is securely synced to our servers (hosted on Supabase) so it is backed up and available across your devices. It is encrypted in transit and at rest and is isolated to your account. We access it only to provide and support the service (for example, to sync, back up, or restore your data, or to help you with a support request) -- never to sell it or share it with advertisers.

Please avoid uploading documents that contain sensitive personal information you don't need for your records -- such as Social Security numbers, full bank or card numbers, or government IDs. DeductFlow is built for expense and receipt records.

Data TypeWhere It's StoredWho Can Access It
Expenses, income, mileage, time entriesYour device + our servers (encrypted, backed up)You; DeductFlow staff only as needed to operate or support the service
Property details and settingsYour device + our servers (encrypted)You; DeductFlow staff as above
Receipt images you uploadOur secure storage (private, per-account)You; DeductFlow staff as above
Plan status (free/pro)Our serversYou

1b. Information Collected Automatically

When you visit our website (deductflow.com), we may collect:

  • Analytics data: Page views, referral sources, general geographic region, device type, and browser type through standard web analytics
  • Referral parameters: If you arrive via a referral link, the referral code is stored in your browser's localStorage

We do not use this data to personally identify you or to access your financial records.

1c. Payment Information

If you purchase a Pro subscription, payment is processed entirely by Stripe, a PCI-compliant third-party payment processor. We do not collect, store, or have access to your credit card numbers, bank account details, or other payment credentials. Please review Stripe's Privacy Policy for information on how they handle your payment data.

1d. Email Address

If you voluntarily provide your email address (for example, through a newsletter signup, waitlist, or support request), we collect and store it for the purpose of communicating with you. You can unsubscribe from emails at any time.

2. How We Use Your Information

  • App functionality: Your locally stored data powers the features of the app on your device
  • Analytics: Aggregate, non-personal analytics help us understand how the product is used and where to improve
  • Communications: If you provide your email, we may send product updates, educational content, or support responses
  • Payment processing: To fulfill Pro subscription purchases through Stripe

3. What We Don't Do

We do not: sell your personal data, share your financial data with advertisers, access your data except as needed to operate, support, secure, or improve the service, use your data for automated decision-making or profiling, or share your email with third parties for marketing.

4. Data Storage and Security

Storage model. DeductFlow keeps a working copy of your data on your device for speed and offline use, and securely syncs it to our servers (Supabase) for backup and multi-device access. This means:

  • Your data is backed up -- clearing your browser no longer means losing it; it restores on next sign-in.
  • Your data syncs across the devices where you're signed in.
  • Your data is encrypted in transit and at rest, and access is restricted to your own account through database-level security rules.
  • You can export a full copy at any time, and request deletion (see Your Rights).

We restrict internal access to what's needed to run and support the service, and we maintain administrative and technical safeguards to protect your data.

5. Cookies and Tracking

The DeductFlow app does not use cookies. Our marketing website may use:

  • Essential cookies: Required for basic site functionality
  • Analytics cookies: To understand traffic patterns and improve the site (can be declined)

We do not use advertising cookies or retargeting pixels.

6. Third-Party Services

DeductFlow integrates with or links to the following third-party services:

  • Stripe: Payment processing for Pro subscriptions (Stripe Privacy Policy)
  • Netlify: Website hosting (Netlify Privacy Policy)
  • Google Fonts: Font delivery (Google Privacy Policy)
  • Supabase: Secure database, authentication, and file storage for your account data (Supabase Privacy Policy)

Each third-party service has its own privacy policy governing its handling of your data.

7. Children's Privacy

DeductFlow is not intended for use by individuals under the age of 18. We do not knowingly collect information from children. If you believe a child has provided us with personal information, please contact us and we will take steps to delete it.

8. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access: Request information about what data we hold about you
  • Deletion: Request deletion of the data we hold about you, including your synced app data, by contacting us or deleting your account
  • Correction: Request correction of inaccurate information
  • Portability: Export your data using the app's built-in export features
  • Opt-out: Unsubscribe from communications at any time

To exercise these rights, contact us at privacy@deductflow.com.

9. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect, the right to request deletion, and the right to opt out of the sale of personal information. We do not sell personal information.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. Continued use of the Service after changes constitutes acceptance of the updated policy.

11. Contact Us

For privacy-related questions or concerns:

  • Email: privacy@deductflow.com
DeductFlow

© 2026 DeductFlow. Built for STR hosts, by STR hosts.

Blog · Partners · Terms · Privacy · FAQ

Important Disclaimer: DeductFlow is a record-keeping tool only. We do not provide tax, legal, financial, or accounting advice. Always consult a qualified CPA, tax attorney, or licensed professional before making any tax-related decisions.