← Dunner

Privacy Policy

Last updated: May 27, 2026

This Privacy Policy explains how Dunner (“Dunner,” “we,” “us,” or “our”) collects, uses, and protects information when you use our invoice follow-up service (the “Service”). By using the Service, you agree to the practices described here.

1. Information We Collect

We collect the following categories of information:

  • Account information — your name, email address, and password (stored in hashed form), plus your sender name, reply-to address, and email signature.
  • Invoice and client data — information you enter or import, including client names, client email addresses and phone numbers, invoice numbers, amounts, and due dates.
  • Payment information — billing handled by Stripe. We receive limited subscription and transaction metadata from Stripe but do not store full card numbers.
  • Communications data — logs of the escalation emails and messages sent on your behalf, for audit and troubleshooting purposes.
  • Usage and device data — analytics about how you use the Service, collected via Google Analytics and standard server logs (e.g. IP address, browser type).

2. How We Use Information

  • To provide and operate the Service, including sending escalation communications to your clients on your instruction.
  • To process payments and manage your subscription.
  • To provide customer support and respond to your requests.
  • To monitor, secure, and improve the Service.
  • To comply with legal obligations.

We do not sell your personal information or your clients' personal information.

3. Client Data and Your Responsibility

When you upload client contact details, you act as the controller of that data and Dunner acts as a processor on your behalf. You are responsible for ensuring you have a lawful basis to provide that information to us and to contact your clients. We process client data only to deliver the follow-up communications you configure.

4. Service Providers (Sub-processors)

We share information with trusted third parties only as needed to run the Service:

  • Supabase — database hosting and authentication.
  • Resend — sending escalation emails.
  • Twilio — sending SMS messages (where available).
  • Stripe — subscription billing and client payment processing.
  • Google Analytics — usage analytics.
  • Our hosting provider — running the application infrastructure.

These providers are bound to use the information only to perform services for us. We may also disclose information if required by law or to protect our rights.

5. Cookies and Analytics

We use cookies and similar technologies for authentication (keeping you signed in) and for analytics via Google Analytics. You can control cookies through your browser settings, though disabling them may affect functionality.

6. Data Retention

We retain your account and invoice data for as long as your account is active. After you delete your account, we delete or anonymize your data within a reasonable period, except where we are required to retain it for legal, tax, or accounting purposes.

7. Security

We use industry-standard measures to protect your data, including encryption in transit and access controls. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.

8. Your Rights

Depending on your location, you may have the right to access, correct, export, or delete your personal information, and to object to or restrict certain processing. You can manage most of your data directly in the app, or contact us to exercise these rights. We will respond within the timeframe required by applicable law.

9. International Transfers

Your information may be processed in countries other than your own, including the United States. Where required, we rely on appropriate safeguards for such transfers.

10. Children

The Service is not directed to anyone under 18, and we do not knowingly collect personal information from children.

11. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or through the Service. The “Last updated” date above reflects the most recent revision.

12. Contact

For privacy questions or requests, email us at privacy@dunner.io.