We are committed to protecting your privacy. This policy explains what data we collect, why we collect it, and how we use it.
Account information (name, email, phone, business name, password), business data (inventory items, supplier info, purchase orders), payment information (processed by payment partners), and communications you send us.
Usage data, device data (IP address, browser type, OS), server log data, and cookies (session tokens, preference cookies, analytics cookies).
We use your information to: provide and improve the Biltax platform, process payments, send transactional emails, provide customer support, send product updates (with your consent), detect fraud, comply with legal obligations, and analyse platform usage to improve our product.
We do not sell your personal data to third parties, ever.
We may share your information with service providers (AWS, SendGrid, Stripe/JazzCash), legal authorities when required by law, and in the event of a merger or acquisition. We do not share your business inventory data with any third party for advertising purposes.
We retain your data for as long as your account is active. Upon cancellation, you may export all data from Settings → Export Data. Personal information is deleted within 30 days of account closure. Data required for legal compliance may be retained for up to 7 years.
We implement: AES-256 encryption at rest, TLS 1.3 in transit, ISO 27001-certified cloud infrastructure (AWS), role-based access control, daily encrypted backups, and regular third-party penetration testing.
We use essential cookies (required for login), analytics cookies (self-hosted, opt-out available in account settings), and preference cookies (language, timezone). We do not use third-party advertising cookies or tracking pixels.
You have the right to: access your personal data, correct inaccurate information, request deletion, export your data (CSV/JSON), unsubscribe from marketing emails, and withdraw consent at any time. Email privacy@biltax.com to exercise these rights. We respond within 30 days.
Biltax is intended for businesses and individuals aged 18 and over. We do not knowingly collect personal information from children under 18. Contact privacy@biltax.com if you believe a minor has provided us their information.
We will notify all registered users by email at least 14 days before material changes take effect. Continued use of Biltax after changes constitutes acceptance of the revised policy.