Legal
Privacy policy
This policy explains the limited personal data connected with InvoiceShelf’s public services. It is written for people using our website, accounts, updater, marketplace, newsletter, and purchases.
Effective and policy version: 6 August 2026
Who controls this data
The controller is IDEOLOGIX MEDIA DOOEL, Ul. Ilindenska 10, Kicevo, North Macedonia, registration no. 7195389. You can contact us at [email protected]; if that address is unavailable, use [email protected].
What this policy covers—and what it does not
It covers invoiceshelf.com, InvoiceShelf accounts, the updater and download service, the marketplace and module installations that contact our services, Paddle purchases, optional website analytics, and the newsletter.
It does not cover business, invoice, customer, payment, or employee data that you enter into an independently self-hosted InvoiceShelf installation. That data stays under the control of the person or organisation operating that installation; IDEOLOGIX MEDIA DOOEL does not receive it merely because the software is installed.
Data we process
- Website and security data: IP address, browser/device information, short-lived request logs, and security events.
- Account data: name, email address, hashed password, session information, account settings, and account-security records.
- Marketplace and updater data: module/account identifiers, installation and entitlement details, device-code and token activity, software version, and aggregate download counts.
- Purchase data: marketplace transaction/subscription identifiers, status, and relevant dates. Paddle handles payment-card and tax details; we do not store them.
- Newsletter data: email address, consent source, policy version, and confirmation and unsubscribe timestamps.
- Analytics data: usage and page-view data collected by Google from your first visit unless you opt out.
Why we use it
We process this data to provide the requested service, keep it secure, operate and improve the website and marketplace, fulfil purchases, communicate product information where you opted in, and meet legal obligations.
- Account, updater, marketplace, and purchase processing is necessary to perform our contract with you or take steps at your request.
- Security, fraud prevention, service reliability, aggregate download measurement, and defending legal claims are our legitimate interests.
- Newsletter messages rely on your consent. We use limited website analytics to understand and improve the public site, subject to your right to object and opt out at any time.
- Accounting, tax, and regulatory record keeping may be required by law.
Cookies, local storage, and similar technology
Essential cookies keep accounts secure and maintain sessions. Password-reset links use short-lived security tokens. Marketplace device codes expire after 10 minutes. Our website stores your theme preference and a local invoiceshelf:privacy-consent record. A decision to keep analytics enabled is refreshed after 180 days; an opt-out has no application expiry and is also backed by an invoiceshelf_analytics_opt_out preference cookie.
Google Analytics is loaded on your first visit and its analytics cookies are configured for 180 days. You can opt out immediately or later using “Cookie preferences” in the site footer. Opting out stops future analytics calls, removes known Google Analytics cookies from this browser, and remains in effect unless you deliberately enable analytics again or clear the browser’s site data. The first page view may already have been sent before a first-time visitor opts out.
Service providers and international transfers
- Cloudflare provides network security and delivery services; Cloudflare R2 stores selected files and download artifacts.
- Hetzner provides hosting infrastructure.
- Google receives website analytics data by default unless you opt out.
- YouTube is contacted only after you press Play on an embedded video; the player uses youtube-nocookie.com.
- Paddle processes purchases and payment details when you buy a marketplace offering.
- GitHub is used server-side for relevant release and open-source project operations; visitors’ browsers do not need to contact GitHub for the website’s star count.
These providers may process data outside North Macedonia or the EEA. Where applicable, we rely on adequacy decisions, contractual safeguards, or other lawful transfer mechanisms offered by the provider and required by applicable law.
How long we keep data
- Website sessions normally expire after two hours and password-reset tokens after 60 minutes. Short rotating operational logs may remain briefly for security and reliability.
- Device codes expire after 10 minutes. Marketplace and account records are kept while the account or entitlement is active and then only as needed for security, support, accounting, or legal claims.
- Download counts are retained in aggregate; we do not use them to build a public profile of individual downloaders.
- A pending newsletter subscription has no current expiry. We will request confirmation before sending the first newsletter; until then it remains pending unless you unsubscribe or ask us to erase it.
- After you unsubscribe, we retain the minimum email suppression record until verified erasure so we can honour the unsubscribe request. We remove it when your identity and request can be safely verified, unless retention is legally required.
- When an account is deleted, we remove or anonymise account data where practicable. Public blog posts may remain available with an anonymised author attribution to preserve the editorial record.
Security
We use access controls, encrypted transport, password hashing, least-privilege administration, monitoring, and security updates appropriate to the service. No internet service can guarantee absolute security, so please use a unique password and contact us promptly if you suspect account misuse.
Your choices and rights
Subject to applicable law, you may ask for access, correction, deletion, restriction, objection, portability, or to withdraw consent. Email [email protected] with enough information for us to verify the request. You may also complain to the Agency for Personal Data Protection of North Macedonia: azlp.mk/en/.
Children
InvoiceShelf is not directed to children. Do not use the website, create an account, or subscribe to the newsletter if you are below the age at which you can validly consent under applicable law. Contact us if you believe a child has provided personal data.
Changes to this policy
We may update this policy when our services, providers, or legal obligations change. The effective date and policy version above show when it was last revised. An analytics opt-out remains effective across policy changes unless you deliberately enable analytics again or clear the browser’s site data.