Influno
Privacy Policy
Last updated: Sep 16, 2026
Version 2. Adds disclosures for the Influno mobile app (iOS and Android) — push notifications, photo access, biometric sign-in, and mobile analytics — alongside the commitments in the previous version.
The short version
- Your workspace data - deals, contacts, invoices, contracts, content - is yours. We process it only to run the service for you, on the web and in the mobile app.
- We never sell your data, and we never use one customer's business data to benefit another.
- You can export your full workspace or deactivate your account at any time, yourself, from Settings.
What we collect
- Account information - name, email, password hash (or Google sign-in identity), and optional two-factor settings.
- Workspace content you create - deals, brands and contacts, invoices, contracts and signatures, content items, tasks, comments, and uploaded files.
- Payment metadata - invoice and payout records, amounts, and references. Card and bank details are handled by our payment processors (Stripe or Razorpay) and never touch our servers. When we send an invoice to Razorpay to collect a payment, we share the payer's name, contact details, and the invoice amount - the minimum needed to process the charge.
- Operational logs - request logs with timestamps and IP addresses, kept for security and debugging.
- Usage analytics - if enabled, aggregate product-usage events. The web app uses Google Analytics 4; the mobile app uses Firebase Analytics, a separate Google product which also derives an approximate (city-level) location from IP address as part of its standard event collection. No workspace content is ever sent to either.
- Device and push notification identifiers (mobile app only) - when you enable notifications in the mobile app, we store a device push token (and platform: iOS or Android) so we can deliver the alerts you've asked for. It's removed when you sign out.
How we use it
To operate the product: rendering your dashboards, sending the invoices and reminders you schedule, reconciling payments, notifying your team, and providing support when you contact us. We also use aggregate, de-identified usage signals to improve the product.
Who we share it with
Only the processors required to run the service, under their own contractual safeguards:
- Payments - Stripe (international) or Razorpay (India) for collecting invoice payments.
- Email - our transactional email provider, for invoices, reminders, and notifications you trigger.
- File storage - S3-compatible object storage for contracts, PDFs, and media.
- Error reporting - crash diagnostics (when enabled) to keep the service reliable.
- Push notification delivery - Expo and, in turn, Apple/Google's own push services, solely to deliver the notifications you've enabled on the mobile app.
We do not sell personal data, and we do not share it with advertisers or data brokers.
Connected integrations (Google, Microsoft, Slack, WhatsApp)
Influno offers optional integrations you connect yourself from Settings, on the web or in the mobile app. Each is off by default, authorized by you, requests the minimum access its feature needs, stores its access tokens encrypted at rest, and can be disconnected at any time - which deletes the stored tokens. We never use integration data for advertising and never sell it.
- Google (Calendar + Gmail) - two-way syncs your Influno content deadlines with your Google Calendar, and reads the sender, subject, and a short snippet of new inbox messages to detect inbound business inquiries and create leads. We don't fetch full email bodies, and we never send, delete, or modify your mail - or any calendar event other than the deadline events Influno itself creates.
- Microsoft (Outlook Calendar + Mail) - the same two features over Microsoft Graph: deadline sync with your Outlook calendar, and reading inbound message headers and preview text to create leads. Read-only for mail; we only manage the events we create.
- Slack - posts your business alerts (new leads, issued invoices, payments, signed contracts) to the channel you choose and answers the "/influno" slash command. We do not read your Slack conversations.
- WhatsApp (Meta) - if you connect a WhatsApp Business number, creates leads from inbound messages and sends the messages you initiate to your clients. Content is processed only to provide these features.
Google API Services - Limited Use. Influno's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Data accessed through Google Calendar and Gmail is used solely to provide the calendar-sync and lead-capture features above; it is not transferred to others except as needed to provide those features (or with your consent, for security, or to comply with law), is never used for advertising, is never sold, and is not read by humans except where you request support, for security, or where the law requires it.
The Influno mobile app (iOS & Android)
The mobile app provides the same workspace features as the web app, with a few permissions specific to a phone:
- Photo library - if you upload a creator avatar or brand logo, the app asks for photo-library access to pick the image, which is then uploaded to our file storage like any other workspace file.
- Biometric sign-in (Face ID / fingerprint) - an optional convenience to unlock the app on your device. It's handled entirely by your device's operating system - Influno never receives or stores any biometric data.
- Push notifications - see "What we collect" and "Who we share it with" above for the device token and delivery details.
- Calendar sync - if you've connected Google or Microsoft Calendar, the mobile app can trigger and display the same two-way deadline sync described under "Connected integrations."
How it's protected
- Every workspace is isolated with database row-level security - tenant separation is enforced by the database, not just application code.
- Access is governed by deny-by-default roles and permissions, with optional two-factor authentication on every sign-in method.
- Money and legal events are written to an append-only audit log.
- Data is encrypted in transit (TLS) and at rest with our infrastructure providers.
Your rights (GDPR / CCPA aligned)
- Export - download a complete copy of your workspace from Settings at any time.
- Correction - edit your account and workspace data directly in the product.
- Deletion - deactivate your account or workspace from Settings; deactivation blocks all access immediately and is reversible for a grace period before permanent removal, so a mistake can't destroy your records.
- Objection & access requests - email us and we'll respond within 30 days.
Cookies & local storage
The web app uses local storage for your session tokens and preferences (like your theme); the mobile app stores the equivalent session data on-device using your OS's secure storage. Analytics cookies (web) are set only if site analytics is enabled. There is no third-party advertising tracking on the web or in the mobile app. See our Cookie Policy for the full list.
Children
Influno is a business tool and isn't directed at children under 16. We don't knowingly collect their data.
Changes & contact
If this policy changes materially, we'll notify workspace owners by email before the change takes effect. Questions or requests: contact@influno.app.
Version history
| v2 | Current | Sep 16, 2026 |
| v1 | Superseded | Jul 5, 2026 |

