Privacy Policy
What we collect, why we collect it, where it lives, how it is protected, and the rights you have over it.
Last updated 20 August 2026
1. What this policy covers
This policy explains how WisoBooks ("we", "us") collects, uses and protects information when you visit our website or use the WisoBooks service (the "Service"). For your customers' and suppliers' data that you enter into the Service, you are the data controller and we act as your processor — we only process it to run the Service for you.
2. Information we collect
Account information — name, email address, company name, country and time zone when you register. Business data — the books you keep in the Service: contacts, items, invoices, bills, payments, bank statement lines, journals, attachments and reports. Billing information — your plan, subscription status and payment history. Card details are handled by our payment providers (e.g. Stripe/PayPal) and never touch our servers. Usage and device data — log data such as IP address, browser type, pages viewed and actions taken, used for security auditing and product improvement.
3. How we use information
We use your information to: provide and operate the Service; keep your account secure (login auditing, session controls, two-factor authentication); process subscription payments; respond to support requests; send service notices (e.g. invoices due, security alerts); and improve the product using aggregated, de-identified usage patterns. We do not sell your data or use your business data for advertising.
4. Where data lives and how it is protected
Your data is stored in secured cloud data centres, encrypted in transit (TLS) and at rest. Access within our team is role-restricted and audited. Every workspace (tenant) is logically isolated — your data is never visible to another customer. Backups are taken regularly and stored encrypted.
5. Sharing
We share data only with: (a) subprocessors that help us run the Service (hosting, email delivery, payment processing) under contracts that protect your data; (b) authorities when the law requires it; (c) your own team members and any accountant you invite into your workspace. That's it.
6. Cookies
We use strictly-necessary cookies for sign-in sessions, security (anti-forgery), and remembering your language/culture preference. We do not use third-party advertising cookies.
7. Retention
We keep your data while your account is active. After termination we retain it for a limited wind-down period (so you can export or reactivate), then delete or irreversibly anonymise it. You can configure additional data-retention rules inside the Service.
8. Your rights
Depending on your jurisdiction, you may have rights to access, correct, export, restrict or delete personal information we hold about you. You can exercise most of these directly in the Service (profile, export tools); for anything else, contact us and we will respond within 30 days.
9. Changes
If we make material changes to this policy we will notify you in-app or by email before they take effect.
10. Contact
Privacy questions or requests: contact us.