Effective date: May 16, 2026
Privacy Policy
This policy describes how Biththi handles personal, organization, billing workflow, support, and security information.
1. Overview
This Privacy Policy explains how Biththi collects, uses, stores, and shares information when you visit the website, create an account, use the app, contact support, or interact with our emails and services.
By using Biththi, you agree to the collection and use of information described in this policy.
2. Information We Collect
Account information: name, username, email address, password credentials in hashed form, role, organization membership, primary-admin status, phone number, address, and account activity details.
Organization information: organization name, organization type, organization details, public organization code, plan status, subscription metadata, settings, business details, GST registration details, invoice preferences, and user management records.
Business records: invoices, customers, items, prices, tax fields, notes, terms and conditions, payment status, saved drafts, exported document data, audit history, and related operational records you enter or generate.
Support and contact information: public contact form submissions, in-app support messages, contact numbers, email addresses, issue descriptions, screenshots or attachments you provide, and related support communication.
Authentication and security data: OTP requests, verification status, password reset requests, login events, failed login attempts, session records, IP-related security metadata, timestamps, and audit logs.
Device and technical information: browser-provided request headers, cookies or local storage needed for sessions and preferences, theme preferences, and basic technical logs used to keep the service secure and reliable.
Operational metadata: we may collect usage counts, invoice counts, organization-level activity indicators, plan status, and similar service metrics to run, monitor, improve, and support Biththi.
3. How We Use Information
We use information to create and manage accounts, authenticate users, send OTPs and verification emails, provide invoice and customer management features, save organization settings, support plan workflows, and operate the app.
We use business records to display, store, export, print, and manage invoices, customers, items, audit history, dashboard metrics, and related app workflows requested by users.
We use support information to investigate issues, respond to questions, troubleshoot bugs, improve reliability, and provide help to authorized users.
We use security and activity data to prevent abuse, rate-limit sensitive flows, detect suspicious activity, protect sessions, maintain audit history, and comply with legal or operational requirements.
4. Legal Basis and Responsibility
Where applicable, we process information to provide the service you request, fulfill our contractual obligations, protect legitimate security and operational interests, comply with legal duties, and respond to user consent or direction.
You are responsible for ensuring you have the right to enter customer, employee, invoice, tax, and organization data into Biththi and for using the service in compliance with laws that apply to your business.
Biththi stores and processes data for convenience and workflow support. It should not be treated as your sole or final source of truth for legal, tax, accounting, financial, customer, or business records.
5. Cookies and Local Storage
Biththi uses essential cookies for authentication sessions and may use browser local storage for preferences such as theme behavior. These are used to provide core app functionality.
If we add analytics, marketing, or non-essential tracking technologies later, we will update this policy and provide any required notices or choices.
6. Email and Communications
We send transactional emails such as signup OTPs, verification links, password reset emails, welcome messages, plan notices, support responses, and user invitation emails.
Transactional emails are necessary for account security and service operation. You should not rely on email as the only copy of important business data.
7. Third-Party Providers
We may use third-party providers for hosting, database infrastructure, email delivery, authentication, payment workflows, storage, security, and related operational services.
These providers may process information only as needed to provide their services to us. Their processing is also subject to their own terms, policies, and security practices.
8. Sharing Information
We do not sell your personal information.
We may share information with service providers that help operate Biththi, with organization users according to their roles and permissions, with support personnel where needed to resolve issues, or when required by law, legal process, security obligations, or business transfers.
Information you enter into shared organization records may be visible to authorized users in the same organization according to app permissions.
9. Data Security
We use reasonable technical and organizational measures designed to protect information, including hashed passwords, session controls, same-origin protections, access controls, rate limiting, audit logs, and database-backed persistence.
No online service can guarantee perfect security. You are responsible for protecting account credentials, limiting user access, reviewing authorized users, and promptly reporting suspected unauthorized access.
10. Data Retention
We retain account, organization, invoice, customer, item, settings, audit, and support information for as long as needed to provide the service, comply with legal obligations, resolve disputes, maintain security, or support business continuity.
Inactive users may remain in organization records for audit, security, and operational history. Some logs or backups may persist for a limited period even after deletion or account changes.
11. Your Choices and Rights
Depending on your location, you may have rights to access, correct, delete, export, restrict, or object to certain processing of personal information.
Primary admins can manage many organization and user details inside Biththi. For requests that cannot be completed in the app, contact support at support@biththi.com.
We may need to verify your identity and authority before fulfilling privacy or account requests, especially for organization-level data.
12. Children
Biththi is intended for business and organization use. It is not intended for children, and users should not create accounts or submit personal information if they are not old enough to use the service under applicable law.
13. International Processing
Your information may be processed in locations where we or our service providers operate. Data protection laws in those locations may differ from the laws where you live or operate your business.
14. Changes to This Policy
We may update this Privacy Policy from time to time. The updated version will be posted on this page with a revised effective date.
Continued use of Biththi after an updated policy is posted means you acknowledge the updated policy.
15. Contact
For privacy questions or requests, contact support at support@biththi.com.