Legal
Privacy Policy
Last updated: April 11, 2026
At AIO Inventory, your privacy is important to us. This policy explains what data we collect, how we use it, and the choices you have. We never sell your data and we never share it with third parties without your explicit consent.
1. Information We Collect
- Account information: When you sign up, we collect your name, email address, and password (stored as a bcrypt hash).
- Organization data: Business name, logo, country, currency preference, and any team member details you add.
- Product and inventory data: All products, stock levels, categories, and related information you enter into the platform.
- Order and transaction data: Sales orders, purchase orders, customer records, and supplier records you create.
- Usage data: Pages visited, features used, session duration, and error logs — collected to improve the product.
- Device and browser data: IP address, browser type, and operating system for security and fraud prevention.
2. How We Use Your Information
- To provide and operate the AIO Inventory platform and all its features.
- To send transactional emails such as account confirmation, password reset, and billing receipts.
- To send SMS notifications you have enabled in your account settings (low stock alerts, new order alerts).
- To improve and develop new features based on aggregate, anonymised usage patterns.
- To enforce our Terms of Service and detect or prevent fraud and abuse.
- To comply with legal obligations and respond to lawful requests from authorities.
3. Data Storage and Security
- All data is stored on AWS infrastructure with encryption at rest (AES-256) and in transit (TLS 1.3).
- Customer data is logically isolated per organisation — no cross-tenant data access is possible.
- We maintain automated backups and follow the principle of least privilege for all internal access.
- We conduct regular security reviews and dependency vulnerability scans on every build.
- In the event of a data breach, we will notify affected users within 72 hours in accordance with GDPR.
4. Data Sharing
- We do not sell your personal data to any third party, ever.
- We share data only with sub-processors necessary to operate the service (e.g., AWS for hosting, Stripe for payments, Twilio for SMS). All sub-processors are bound by data processing agreements.
- We may disclose data if required by law, court order, or government authority.
- If AIO Inventory is acquired or merged, your data may be transferred as part of that transaction. We will notify you in advance.
5. Cookies
- We use strictly necessary cookies to keep you logged in and maintain your session securely.
- We use analytics cookies (with your consent) to understand how the product is used in aggregate.
- We do not use advertising or tracking cookies.
- You can manage your cookie preferences at any time. See our Cookie Policy for full details.
6. Your Rights (GDPR & Privacy Laws)
- Access: Request a copy of all personal data we hold about you.
- Rectification: Correct any inaccurate personal data.
- Erasure: Request deletion of your account and all associated data.
- Portability: Export all your organisation's data in CSV format at any time from within the app.
- Objection: Object to processing of your data for certain purposes.
- To exercise any of these rights, contact us at privacy@aioinventory.com.
7. Data Retention
- We retain your data for as long as your account is active.
- If you cancel your account, we retain your data for 30 days in case you wish to reactivate.
- After 30 days, all your data is permanently deleted from our systems.
- Audit logs may be retained for up to 12 months for security and compliance purposes.
8. Changes to This Policy
- We may update this Privacy Policy from time to time. We will notify you of material changes via email at least 14 days before they take effect.
- Continued use of AIO Inventory after the effective date constitutes acceptance of the updated policy.
9. Contact
- If you have any questions about this Privacy Policy or how we handle your data, please contact us:
- Email: privacy@aioinventory.com
- Or use the contact form at aioinventory.com/contact