Privacy Policy
Last updated: June 18, 2026
1. Information We Collect
We collect information you provide when creating an account, such as your email address and password. We also collect API usage data including request timestamps, endpoints accessed, IP addresses, and response times for monitoring and improving our Service.
2. How We Use Your Information
We use your information to: (a) provide and maintain the Service; (b) monitor API usage and enforce rate limits; (c) communicate with you about your account, updates, and support; (d) improve and develop new features; (e) detect and prevent abuse or unauthorized access.
3. Data Storage & Security
Your data is stored securely using industry-standard encryption. Passwords are hashed and never stored in plain text. API keys are stored with encryption at rest. We implement security measures in line with best practices for SaaS applications.
4. Third-Party Services
We use the following third-party services: Supabase (database and authentication), Stripe (payment processing), Vercel (hosting and edge functions), and GitHub (open source repository). These services have their own privacy policies and data processing agreements.
5. Cookies
We use essential cookies for authentication and session management. We do not use tracking cookies or third-party advertising cookies. You can control cookie preferences through your browser settings.
6. Data Retention
We retain your account information for as long as your account is active. API logs are retained for up to 90 days. You may request deletion of your account and associated data by contacting us.
7. Your Rights (GDPR)
If you are in the European Union, you have the right to: access your personal data; rectify inaccurate data; request deletion of your data; restrict processing; data portability; and object to processing. To exercise these rights, contact us at info@vatrate.eu.
8. Data Controller
VATRate is operated by an independent developer. For privacy-related inquiries, contact: info@vatrate.eu.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or through the Service.