Back

Privacy Policy

Last updated July 28, 2026

What this covers

This policy describes how Payarity collects, uses, and protects data when your organization uses the app to reconcile commission data. It's written to be accurate about what the product actually does today — treat it as a starting point for your own legal review before relying on it as a binding customer-facing policy.

Data we collect

  • Account data — name, email, and authentication method (password or Google sign-in) for each person who signs up.
  • Organization data — the commission, deal, and payout records your organization imports or syncs into Payarity for reconciliation, plus disputes, comments, and audit-trail entries your team creates.
  • Usage data — basic application logs (e.g. sign-ins, errors) needed to operate and secure the service.

We don't collect health information, government IDs, or payment card numbers — billing is handled entirely by Stripe (see below).

How we use it

Data is used solely to provide the reconciliation service: matching deals across your data sources, computing expected vs. actual commissions, surfacing discrepancies, and tracking disputes to resolution. We don't sell personal data or use it for advertising.

AI features

Payarity's AI Insights, discrepancy explanations, dispute suggestions, and Trace (the in-app AI assistant) send the relevant deal/dispute/aggregate numbers to Anthropic's API to generate the response you requested. This only happens when you actively use one of these features — nothing is sent automatically in the background.

Who we share data with

Payarity uses a small number of subprocessors to run the service. Each only sees what it needs to do its job:

  • Supabase — hosts our database, authentication, and backend functions.
  • Stripe — processes subscription billing; we never see or store card details.
  • Anthropic — powers the AI features described above.
  • Vercel — hosts the web application.

We don't share your data with anyone else, and we don't sell it.

Data retention

Account data is kept while your account is active. Organization records (deals, disputes, audit trail) are retained per your organization's own accounting/audit requirements and persist even if an individual team member's account is deleted — reconciliation and financial records need to survive staff turnover.

Your rights

Depending on where you're located (including under GDPR for EU/UK residents), you have the right to:

  • Access your personal data — view it any time in Settings.
  • Correct inaccurate data — update your profile in Settings.
  • Export your personal data — use "Export my data" in Settings to download a copy.
  • Delete your account — use "Delete my account" in Settings. This permanently removes your login and profile; your organization's shared commission records are retained (see Data retention above).
  • Object to or restrict certain processing — contact us using the details below.

Security

Data is encrypted in transit (TLS) and at rest. Every organization's data is isolated from every other organization's using database-enforced row-level security — no application code can accidentally show one company's commission data to another. Access within your organization follows the admin/member roles set in Settings.

Contact

Questions about this policy or a request relating to your data can be sent to the email address your organization's admin uses to manage this Payarity account.