Privacy
Privacy Policy
This Policy explains how personal data is collected, used, stored, disclosed, and protected when people visit YowSpare or use its web and mobile inventory management services. It is designed to give customers, users, and business partners a practical account of YowSpare's data practices.
- Last updated
- July 18, 2026
- Document version
- 2.0
- Product scope
- Web and mobile
Privacy at a glance
These principles summarize our approach. The complete Policy below provides the details and qualifications.
- Customer organizations retain control of the business data they submit.
- We do not sell Customer Data or personal data for monetary consideration.
- Role-based permissions determine who can access data within an organization.
- Offline and session data can remain on a user's device until it is cleared.
1. Scope and responsible entity
This Policy applies to YowSpare websites, web applications, mobile applications, support channels, and related services that link to it (the "Service"). It does not govern a third-party product or website that publishes its own privacy notice.
The YowSpare contracting entity identified in the applicable Order Form, subscription confirmation, or invoice is responsible for the personal data it processes for its own purposes. Questions about the identity of the responsible entity or this Policy can be sent to the privacy contact listed below.
2. Our data-protection roles
For account administration, product security, contracting, billing, support, and operation of YowSpare's own websites, YowSpare generally determines why and how personal data is processed and acts as controller or an equivalent responsible party under applicable law.
For employee, supplier, inventory, and operational data submitted and managed by a Customer organization, the Customer generally determines the purpose and means of processing. YowSpare processes that data on the Customer's instructions as a processor or service provider. The Customer is responsible for its notices, legal basis, role assignments, and responses to requests from people represented in Customer Data.
3. Personal data we process
The data processed depends on the features used, the Customer's configuration, and the person's relationship with YowSpare. We aim to collect only data reasonably necessary for the purposes described in this Policy.
| Category | Typical examples | Primary use |
|---|---|---|
| Account and identity | Name, business email, phone number, account identifiers, password and authentication records, verification and MFA status. | Create accounts, authenticate users, recover access, prevent fraud, and communicate service information. |
| Organization and workforce | Organization, agency, department, job information, memberships, invitations, roles, permissions, and administrator actions. | Maintain tenant context, administer access, support approvals, and enforce organization policies. |
| Inventory and operations | Products, images, suppliers and contacts, stock levels, warehouses, bins, receipts, requests, approvals, work orders, quotations, and movement history. | Deliver inventory workflows, trace operations, generate reports, and synchronize authorized records. |
| Files and communications | Profile photos, organization logos, product images, attachments, support messages, and feedback. | Display requested content, resolve support issues, and maintain business records supplied by users. |
| Commercial information | Plan, billing contact, order details, invoices, payment status, and tax information when paid services are enabled. | Administer subscriptions, process payments through providers, maintain accounts, and meet financial obligations. |
| Device and usage | IP address, browser or device information, language, timestamps, request identifiers, application events, errors, and security logs. | Operate, secure, diagnose, support, and improve the Service. |
| Local and offline data | Session token, selected organization and agency, preferences, cached application files, drafts, notes, and locally available workflow records. | Maintain the session and business context, support preferences, improve responsiveness, and enable selected offline workflows. |
4. Where data comes from
We receive data directly from users during registration, authentication, profile updates, uploads, forms, support exchanges, and day-to-day inventory operations. Organization owners and administrators may also provide information when they create an organization, invite a user, assign a role, configure a department, or import operational records.
The Service automatically receives limited technical information from browsers, mobile devices, servers, and network requests. We may also receive data from the shared core-services platform, payment and identity providers, or integrations that the Customer chooses to enable.
5. Why we use personal data
We process personal data to provide and administer the Service, authenticate users, maintain organization context, execute inventory workflows, synchronize records, provide support, manage subscriptions, communicate operational notices, secure the platform, investigate incidents, comply with law, and improve reliability and usability.
Depending on applicable law and context, processing is based on performance of a contract, steps requested before entering a contract, compliance with legal obligations, legitimate interests in operating and protecting a business service, consent where required, or the Customer's documented instructions. When consent is the basis, it may be withdrawn for future processing.
6. Organization access and visibility
YowSpare is a multi-organization business service. Organization owners and authorized administrators can access and manage information associated with their organization, including user identity, membership, role, department, agency, activity, and operational records, according to configured permissions.
A Customer may monitor, export, correct, retain, or delete business records as allowed by the Service and applicable law. Users should direct employment or organization-specific privacy questions to their organization first. YowSpare will assist the Customer where required by the applicable agreement and law.
7. Device storage and offline use
The current web client uses browser local storage to retain an authentication token and selected tenant, organization, and agency identifiers so that the user's session and business context can continue. It may also store language and theme preferences, locally selected image references, settings, operational drafts, notes, quotations, planning records, workflow state, and similar feature data. The progressive web application may cache application resources for reliability.
Locally stored data can remain on a device until the user signs out, the application replaces it, the browser evicts it, or the user clears application data. Some drafts and caches may remain after sign-out. Users should avoid shared or unmanaged devices, secure the device with an access code, install security updates, and clear site or application data before transferring a device. Mobile clients may use comparable device storage as described by their platform-specific disclosures.
9. International processing and data location
YowSpare and its providers may process data in countries where they or their infrastructure operate. Those countries may have different privacy laws. Where applicable law requires safeguards for an international transfer, we use contractual, organizational, or other recognized transfer mechanisms appropriate to the processing.
A specific data-residency commitment applies only when it is stated in an Order Form or data processing agreement. Enterprise customers can request information about material subprocessors and available transfer arrangements through the privacy contact.
10. Retention and deletion
We retain personal data only for as long as reasonably necessary for the purpose for which it was collected, to provide the Service, follow the Customer's instructions, protect the platform, resolve disputes, enforce agreements, and meet legal, tax, accounting, or audit obligations. Retention depends on the type of record, plan, Customer configuration, contractual commitments, and applicable law.
When data is no longer required, it is deleted, anonymized, or isolated from routine use. Deletion from backups and distributed systems may occur on a delayed cycle. Local browser or mobile data is controlled from the user's device and may need to be cleared separately. Contractual export and deletion arrangements for Customer Data are described in the applicable Order Form or data processing agreement.
11. Data security
YowSpare uses technical and organizational measures designed to protect personal data against unauthorized access, disclosure, alteration, loss, and destruction. Measures are selected according to the nature of the data and risk and may include access controls, tenant and organization context, authentication safeguards, logging, backups, secure development practices, and incident response procedures.
No service or transmission method is completely secure. Customers and users share responsibility for strong credentials, multi-factor authentication when available, accurate role assignments, secure endpoints, careful exports, and prompt reporting of suspicious activity. If an incident triggers a legal notification duty, YowSpare will notify affected parties in accordance with applicable law and contractual obligations.
12. Privacy rights and requests
Subject to applicable law, a person may have rights to request access, correction, deletion, restriction, objection, or portability of personal data, to withdraw consent, and to lodge a complaint with a competent authority. These rights can be limited where another person's rights, security, legal privilege, recordkeeping duties, or other lawful exceptions apply.
Requests about Customer-controlled organization data should normally be sent first to the relevant organization administrator. Requests about YowSpare-controlled data can be sent to tdjotio@gmail.com. We may verify identity and authority before acting. Authorized agents must provide evidence of their mandate.
14. Automated recommendations and children
The Service may generate operational indicators or recommendations, such as stock or reorder insights. These features support human decisions and are not intended to make solely automated decisions that produce legal or similarly significant effects about a person. Customers remain responsible for reviewing recommendations before acting.
YowSpare is a business service and is not directed to children. A Customer must not create accounts for minors or submit children's personal data unless it has a lawful, documented reason and has configured appropriate protections. Contact us if you believe a child's data was submitted without proper authorization.
15. Policy changes and contact
We may update this Policy as the Service, providers, or legal requirements change. The date and version at the top identify the current notice. For a material change, we will provide reasonable notice through the Service, by email, or by another appropriate channel before the change takes effect when required.
Applicable privacy and cybersecurity laws depend on the contracting entity, the deployment, and the locations of affected individuals. These may include the GDPR and other national or regional frameworks. Questions, rights requests, and privacy complaints can be sent to the contact below.
Related documents
Read the contractual terms governing the Service and the overview of YowSpare's security approach.
Privacy questions and requests
Contact us to exercise a privacy right, ask about processing, request subprocessor information, or report a concern. Please do not include passwords or sensitive inventory records in your first message.
Contact privacytdjotio@gmail.com