Privacy Policy

Last updated: March 2026

This Privacy Policy explains how Autoreport ("we", "us", "our"), operated by Autoreport, collects, uses, and protects your personal data when you use our service at autoreport.dev.

1. Data we collect

We collect the following information when you subscribe to Autoreport:

2. How we use your data

We do not sell, share, or use your data for advertising or any purpose beyond providing the Service.

3. Stripe API key

Your Stripe read-only API key is stored securely in AWS Secrets Manager and is only used to retrieve your Stripe data for report generation. We never use your key to initiate, modify, or cancel payments. You can revoke the key at any time from your Stripe dashboard, which will stop report generation.

4. Data storage and security

Your data is stored on AWS infrastructure in the European Union. We apply appropriate technical and organisational measures to protect your data against unauthorised access, loss, or disclosure. Weekly Stripe data is retained for up to 365 days and then automatically deleted.

5. Data sharing

We share your data only with the following third parties, strictly as necessary to provide the Service:

6. Your rights

Under GDPR you have the right to access, correct, or delete your personal data at any time. To exercise these rights, contact us at hello@autoreport.dev. We will respond within 30 days.

7. Cookies

Autoreport does not use tracking cookies. The website may use essential cookies required for basic functionality only.

8. Changes to this policy

We may update this policy from time to time. We will notify you of significant changes by email. Continued use of the Service after notification constitutes acceptance of the updated policy.

9. Contact

For any privacy-related questions, contact us at hello@autoreport.dev.