Privacy Policy
Last updated: May 2026
This Privacy Policy explains what information StoreRent collects from you, how we use it, and the choices you have. It applies to our website and any deployment of our software operated directly by us.
Information we collect
- Account information — name, email, phone, and company you provide on the signup or contact form.
- Business data — warehouses, customers, agreements, invoices, and other records you enter into the application.
- Usage data — IP address, browser type, pages viewed, timestamps. Used to keep the service secure and improve performance.
- Cookies — see the Cookies section below.
How we use information
- To operate, maintain, and improve the service.
- To respond to your support requests and contact-form messages.
- To send transactional emails (invoices, reminders, notifications) — never marketing without consent.
- To detect and prevent abuse, fraud, and security incidents.
Data sharing
We do not sell your data. We share information only with:
- Subprocessors we depend on (hosting, email delivery, payment processing) — bound by data-protection agreements.
- Law enforcement when legally compelled by valid order.
Cookies
We use a small number of cookies:
- Session cookies — required for login. Expire when you close the browser.
- Preference cookies — remember your language, timezone, and UI choices.
- CSRF token — security; prevents cross-site request forgery.
We do not run advertising or third-party tracking cookies.
Your rights (GDPR)
If you are in the EU/EEA, UK, or another jurisdiction with similar laws, you have the right to:
- Access the personal data we hold about you.
- Request correction or deletion.
- Object to or restrict processing.
- Receive a copy of your data in a portable format.
- Lodge a complaint with your supervisory authority.
To exercise any of these rights, contact us via the contact form. We respond within 30 days.
Data retention
We retain your account data for as long as your account is active. After cancellation, business records are kept for up to 90 days, then permanently deleted unless legal retention is required (e.g. tax records).
Security
We use TLS encryption in transit, encrypted storage at rest for sensitive fields (API keys, passwords), and audit logs on all administrative actions. No system is perfectly secure — please report vulnerabilities to our security team.
Changes to this policy
We may update this policy occasionally. Material changes will be announced via email and in-app notice at least 30 days before they take effect.
Contact us
Questions about this policy? Reach us through the contact form.