Privacy

Privacy Policy

This Policy explains how personal data is collected, used, stored, disclosed, and protected when people visit YowSpare or use its web and mobile inventory management services. It is designed to give customers, users, and business partners a practical account of YowSpare's data practices.

Last updated
July 18, 2026
Document version
2.0
Product scope
Web and mobile

Privacy at a glance

These principles summarize our approach. The complete Policy below provides the details and qualifications.

  • Customer organizations retain control of the business data they submit.
  • We do not sell Customer Data or personal data for monetary consideration.
  • Role-based permissions determine who can access data within an organization.
  • Offline and session data can remain on a user's device until it is cleared.

1. Scope and responsible entity

This Policy applies to YowSpare websites, web applications, mobile applications, support channels, and related services that link to it (the "Service"). It does not govern a third-party product or website that publishes its own privacy notice.

The YowSpare contracting entity identified in the applicable Order Form, subscription confirmation, or invoice is responsible for the personal data it processes for its own purposes. Questions about the identity of the responsible entity or this Policy can be sent to the privacy contact listed below.

2. Our data-protection roles

For account administration, product security, contracting, billing, support, and operation of YowSpare's own websites, YowSpare generally determines why and how personal data is processed and acts as controller or an equivalent responsible party under applicable law.

For employee, supplier, inventory, and operational data submitted and managed by a Customer organization, the Customer generally determines the purpose and means of processing. YowSpare processes that data on the Customer's instructions as a processor or service provider. The Customer is responsible for its notices, legal basis, role assignments, and responses to requests from people represented in Customer Data.

3. Personal data we process

The data processed depends on the features used, the Customer's configuration, and the person's relationship with YowSpare. We aim to collect only data reasonably necessary for the purposes described in this Policy.

CategoryTypical examplesPrimary use
Account and identityName, business email, phone number, account identifiers, password and authentication records, verification and MFA status.Create accounts, authenticate users, recover access, prevent fraud, and communicate service information.
Organization and workforceOrganization, agency, department, job information, memberships, invitations, roles, permissions, and administrator actions.Maintain tenant context, administer access, support approvals, and enforce organization policies.
Inventory and operationsProducts, images, suppliers and contacts, stock levels, warehouses, bins, receipts, requests, approvals, work orders, quotations, and movement history.Deliver inventory workflows, trace operations, generate reports, and synchronize authorized records.
Files and communicationsProfile photos, organization logos, product images, attachments, support messages, and feedback.Display requested content, resolve support issues, and maintain business records supplied by users.
Commercial informationPlan, billing contact, order details, invoices, payment status, and tax information when paid services are enabled.Administer subscriptions, process payments through providers, maintain accounts, and meet financial obligations.
Device and usageIP address, browser or device information, language, timestamps, request identifiers, application events, errors, and security logs.Operate, secure, diagnose, support, and improve the Service.
Local and offline dataSession token, selected organization and agency, preferences, cached application files, drafts, notes, and locally available workflow records.Maintain the session and business context, support preferences, improve responsiveness, and enable selected offline workflows.

4. Where data comes from

We receive data directly from users during registration, authentication, profile updates, uploads, forms, support exchanges, and day-to-day inventory operations. Organization owners and administrators may also provide information when they create an organization, invite a user, assign a role, configure a department, or import operational records.

The Service automatically receives limited technical information from browsers, mobile devices, servers, and network requests. We may also receive data from the shared core-services platform, payment and identity providers, or integrations that the Customer chooses to enable.

5. Why we use personal data

We process personal data to provide and administer the Service, authenticate users, maintain organization context, execute inventory workflows, synchronize records, provide support, manage subscriptions, communicate operational notices, secure the platform, investigate incidents, comply with law, and improve reliability and usability.

Depending on applicable law and context, processing is based on performance of a contract, steps requested before entering a contract, compliance with legal obligations, legitimate interests in operating and protecting a business service, consent where required, or the Customer's documented instructions. When consent is the basis, it may be withdrawn for future processing.

6. Organization access and visibility

YowSpare is a multi-organization business service. Organization owners and authorized administrators can access and manage information associated with their organization, including user identity, membership, role, department, agency, activity, and operational records, according to configured permissions.

A Customer may monitor, export, correct, retain, or delete business records as allowed by the Service and applicable law. Users should direct employment or organization-specific privacy questions to their organization first. YowSpare will assist the Customer where required by the applicable agreement and law.

7. Device storage and offline use

The current web client uses browser local storage to retain an authentication token and selected tenant, organization, and agency identifiers so that the user's session and business context can continue. It may also store language and theme preferences, locally selected image references, settings, operational drafts, notes, quotations, planning records, workflow state, and similar feature data. The progressive web application may cache application resources for reliability.

Locally stored data can remain on a device until the user signs out, the application replaces it, the browser evicts it, or the user clears application data. Some drafts and caches may remain after sign-out. Users should avoid shared or unmanaged devices, secure the device with an access code, install security updates, and clear site or application data before transferring a device. Mobile clients may use comparable device storage as described by their platform-specific disclosures.

8. How data is disclosed

We disclose personal data only where reasonably necessary to operate the Service, follow Customer instructions, complete a transaction, protect rights and security, or comply with law. We do not sell Customer Data or personal data for monetary consideration.

  • Within the Customer organization, to owners, administrators, and users authorized by role and context.
  • To infrastructure, core-platform, file-storage, identity, email, support, and payment providers acting under contractual obligations.
  • To integrations and external services enabled or requested by the Customer.
  • To professional advisers, auditors, regulators, courts, or public authorities when reasonably necessary or legally required.
  • In connection with financing, reorganization, merger, acquisition, or asset transfer, subject to appropriate confidentiality and data-protection measures.

9. International processing and data location

YowSpare and its providers may process data in countries where they or their infrastructure operate. Those countries may have different privacy laws. Where applicable law requires safeguards for an international transfer, we use contractual, organizational, or other recognized transfer mechanisms appropriate to the processing.

A specific data-residency commitment applies only when it is stated in an Order Form or data processing agreement. Enterprise customers can request information about material subprocessors and available transfer arrangements through the privacy contact.

10. Retention and deletion

We retain personal data only for as long as reasonably necessary for the purpose for which it was collected, to provide the Service, follow the Customer's instructions, protect the platform, resolve disputes, enforce agreements, and meet legal, tax, accounting, or audit obligations. Retention depends on the type of record, plan, Customer configuration, contractual commitments, and applicable law.

When data is no longer required, it is deleted, anonymized, or isolated from routine use. Deletion from backups and distributed systems may occur on a delayed cycle. Local browser or mobile data is controlled from the user's device and may need to be cleared separately. Contractual export and deletion arrangements for Customer Data are described in the applicable Order Form or data processing agreement.

11. Data security

YowSpare uses technical and organizational measures designed to protect personal data against unauthorized access, disclosure, alteration, loss, and destruction. Measures are selected according to the nature of the data and risk and may include access controls, tenant and organization context, authentication safeguards, logging, backups, secure development practices, and incident response procedures.

No service or transmission method is completely secure. Customers and users share responsibility for strong credentials, multi-factor authentication when available, accurate role assignments, secure endpoints, careful exports, and prompt reporting of suspicious activity. If an incident triggers a legal notification duty, YowSpare will notify affected parties in accordance with applicable law and contractual obligations.

12. Privacy rights and requests

Subject to applicable law, a person may have rights to request access, correction, deletion, restriction, objection, or portability of personal data, to withdraw consent, and to lodge a complaint with a competent authority. These rights can be limited where another person's rights, security, legal privilege, recordkeeping duties, or other lawful exceptions apply.

Requests about Customer-controlled organization data should normally be sent first to the relevant organization administrator. Requests about YowSpare-controlled data can be sent to tdjotio@gmail.com. We may verify identity and authority before acting. Authorized agents must provide evidence of their mandate.

13. Cookies, local storage, and analytics

YowSpare may use cookies and equivalent technologies that are necessary for security, request handling, language, display preferences, and application functionality. The current web application primarily uses local storage for session and product context as described above and uses application caches to support progressive web and offline behavior.

YowSpare does not currently use third-party advertising cookies in the application. If non-essential analytics, advertising, or cross-site tracking technologies are introduced, this Policy and any required consent controls will be updated before they are used where consent is required.

14. Automated recommendations and children

The Service may generate operational indicators or recommendations, such as stock or reorder insights. These features support human decisions and are not intended to make solely automated decisions that produce legal or similarly significant effects about a person. Customers remain responsible for reviewing recommendations before acting.

YowSpare is a business service and is not directed to children. A Customer must not create accounts for minors or submit children's personal data unless it has a lawful, documented reason and has configured appropriate protections. Contact us if you believe a child's data was submitted without proper authorization.

15. Policy changes and contact

We may update this Policy as the Service, providers, or legal requirements change. The date and version at the top identify the current notice. For a material change, we will provide reasonable notice through the Service, by email, or by another appropriate channel before the change takes effect when required.

Applicable privacy and cybersecurity laws depend on the contracting entity, the deployment, and the locations of affected individuals. These may include the GDPR and other national or regional frameworks. Questions, rights requests, and privacy complaints can be sent to the contact below.

Related documents

Read the contractual terms governing the Service and the overview of YowSpare's security approach.

Privacy questions and requests

Contact us to exercise a privacy right, ask about processing, request subprocessor information, or report a concern. Please do not include passwords or sensitive inventory records in your first message.

Contact privacy

tdjotio@gmail.com