Privacy Policy
Last updated 2026-07-21. Plain English on purpose.
The short version
We use your shipping-invoice data for one thing: finding and filing refund money on your carrier account. We never sell it, never share it, never hold your money, and never ask for your carrier password. You can have it all deleted whenever you want.
What we collect
- Invoice data you send us (a CSV export from your carrier billing portal). We read it to find refundable charges.
- Business name and email you type into the audit form.
- Your name, email, and IP address at the moment you e-sign an authorization, so the signature is verifiable.
- Payment details through Stripe. Stripe stores your card, not us. We never see or store your full card number.
What we do with it
Only what you hired us for: audit your invoices, file refund and billing-dispute claims to the carrier on your behalf, and bill our fee. That is it. No advertising, no profiling, no resale.
Your carrier account: no password sharing
We do not ask for, want, or store your UPS or FedEx password. When you are ready to have us file, you add us as a limited user on your own carrier billing account, with permission only to view invoices and file disputes, never to pay or to change your account. You can remove us in one click, anytime, from your carrier account settings.
Where your money goes
Every refund is paid by the carrier directly into your own carrier account. We never receive, hold, or route your funds. Our fee is billed separately to your card, and only after a credit has already posted to your account.
What we never do
- Sell or rent your data to anyone.
- Share it, except with the carrier to file your claims and with Stripe to process payment.
- Store your carrier login credentials.
- Touch, hold, or move your money.
Keeping it safe
Any credentials or secrets are stored encrypted. Traffic to this site is encrypted in transit (TLS). Access to your data is limited to running your service.
Keeping and deleting your data
We keep your data only as long as we are running your service. When you end the service we delete stored credentials, and on request we delete your data within 30 days. Ask first and we will send you a copy of your audit history before anything is deleted. To request a copy or a deletion, email us at the address below.
Cookies and tracking
We do not use advertising or tracking cookies, and we do not build a profile of you. If you are the account owner and log in to the dashboard, we set one strictly necessary cookie so the login works; visitors browsing the site are set no cookies at all. Our traffic analytics are aggregate and cookieless. Because we set no non-essential cookies, there is no cookie banner to click through.
Our pages currently load fonts from Google Fonts, which means your browser contacts Google to fetch them. We are moving these fonts onto our own servers so no third party is contacted to view the site.
Your privacy rights
Wherever you live, you can ask us to show you the data we hold about you, correct it, delete it, or send you a copy. We will not charge you or treat you differently for exercising these rights. To make a request, email the address below and we will verify and respond, within 30 days for US state-law requests and within one month for GDPR requests.
- US state privacy laws (California and others): you have the right to know, access, correct, delete, and port your personal information, and to opt out of any sale or sharing. We do not sell or share your personal information, and we do not use it for cross-context behavioral advertising.
- EU / UK (GDPR): our legal basis is performing the service you asked for and our legitimate interest in running it. You may access, rectify, erase, restrict, port, or object to processing, and you may complain to your local data protection authority. We do not transfer your data outside the service, and we do not make automated decisions with legal effects about you.
Who we share data with
Only the parties needed to run your service. None of them are allowed to use your data for their own purposes, and none of them buy it from us. Here is the complete list, and what each one actually sees:
- The carrier (FedEx or UPS). Your claims, filed on your own carrier account, in your name.
- Stripe (payments, US). Your card and your billing contact. Stripe holds the card; we never see the full number.
- Resend (email delivery, US). The address we are writing to and the contents of that email, including your report link.
- Railway (hosting, US). Runs the app and stores the database, so your audits, findings, and signed authorizations sit on their infrastructure.
- Cloudflare (DNS, CDN, and email routing). Site traffic passes through them, and mail sent to our address is routed by them, so an invoice you email us passes through Cloudflare on the way.
- Google Fonts. Our pages currently load fonts from Google, so your browser contacts Google and Google sees your IP address. We are moving these fonts onto our own servers to stop that.
That is everyone. If we ever add a provider that touches your data, we update this list here first.
Contact
Questions, a data copy, or a deletion request: [email protected].
This policy explains how we handle your data. It is not the service contract; that is the Service Authorization you e-sign on your report.