Privacy Policy

Last updated: July 2026

1. Who we are

RenewShield (“we”, “us”) is a privacy-first subscription tracking service for individuals and teams. It helps you monitor renewals, trials, and cancellation deadlines. This policy explains what personal data we collect, why we collect it, and how you can control it. RenewShield is operated by Nisha Chavan (sole proprietorship), Sweden. Privacy inquiries: privacy@renewshield.app. General support: support@renewshield.app.

2. Data we collect

Account data: your email address, name, authentication identifiers, and an optional profile photo when you sign up or sign in (via AWS Cognito in production). Profile fields are encrypted in our database. Subscription and workspace data: names, amounts, renewal dates, notes, URLs, payment labels, and other details you enter manually — we do not connect to your bank or card providers. Workspace and team data: workspace names, member roles, and invitations when you use shared workspaces. Billing data: if you subscribe to a paid plan, Stripe processes payment — we store only an encrypted, hashed billing customer reference, not your card details. Notifications: push device tokens for mobile reminders, and email delivery metadata for reminder emails you enable. Security and audit data: sign-in events (including a masked IP address and browser/device type), optional two-factor authentication status, and audit logs of subscription and member changes recorded for every workspace (metadata only — never names, notes, or other readable content); on Team+ workspaces, members with sufficient permissions can also view these audit logs in the app. Technical data: basic request logs from our hosting provider for reliability and abuse prevention.

3. How we use your data

We use your data to provide the service (storing and displaying subscriptions, operating workspaces and team access, sending email and push reminders you configure, processing paid subscriptions, and keeping your account secure). We do not sell your personal data. We do not use your subscription list for advertising.

4. What we do not do

RenewShield is privacy-first and B2B-ready by design: we do not require bank or card connections, we do not scrape your email for receipts unless you explicitly add that feature in the future, and we do not share your subscription details with third parties for marketing.

5. Storage and security

RenewShield uses layered encryption designed to scale from individual use to team and enterprise needs. Your profile (name and email) is protected with app-level encryption. Workspace and subscription fields you enter — such as names, notes, payment labels, and URLs — are encrypted with a separate data-encryption key per workspace. Filters and lookups use HMAC blind indexes so search works without storing readable values in index columns. Push device tokens and Stripe billing customer identifiers are encrypted; we use hashed values only for lookups. Passwords are handled by AWS Cognito — we never store plain-text passwords. Two-factor authentication secrets are encrypted at rest. Sessions use signed tokens. We record audit events for subscription and member changes on every workspace using sanitized metadata only (no names, notes, or payment labels in logs); on Team+ workspaces, members with sufficient permissions can view these logs in the app. Some structured fields — such as amounts, currencies, billing cycles, renewal dates, and subscription status — remain in plain form so reminders, analytics, and exports work reliably. All data is stored in encrypted PostgreSQL databases (Neon) in the EU region. Production traffic is served over HTTPS. We use trusted subprocessors to operate the service: AWS (Cognito authentication), Neon (database hosting), Vercel (application hosting), Stripe (billing for paid plans), Sentry (production error monitoring), and email/push delivery providers (e.g. AWS SES and Firebase Cloud Messaging for notifications you enable).

6. Your rights

You can access and update your account data from the app settings. You can export your subscription data as CSV from the app (where your plan includes export). You can permanently delete your account from Settings → Security when you are not the sole owner of a shared workspace with other members. If you subscribe to a paid RenewShield plan, we may require you to cancel billing first (via Settings → Billing or the Stripe customer portal) so you are not charged after your account is deleted. If you are in the EU/EEA, you have rights under GDPR including access, rectification, erasure, and data portability.

7. Legal basis (GDPR)

We process account, subscription, workspace, reminder, and billing data to provide the service under our contract with you. We process security logs, audit metadata, and abuse-prevention data based on our legitimate interests in protecting the service and our users. We process optional marketing emails only with your consent. We process billing and tax records where needed to comply with legal obligations.

8. Data retention

Account and subscription data is kept until you delete it or delete your account. Security and audit logs are kept for a limited period unless needed for abuse prevention, legal, or billing reasons. Billing records may be retained where required by tax or accounting law. Backups are deleted according to our hosting providers’ retention schedules.

9. International transfers and subprocessors

We use trusted subprocessors to operate RenewShield. Primary application and database hosting is in the EU. Some providers (for example AWS, Stripe, Firebase, or Sentry) may process data in the EU and/or the United States under appropriate safeguards such as Standard Contractual Clauses where required. See our Subprocessor list for details. Subprocessors.

10. Children

RenewShield is not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us data, contact privacy@renewshield.app and we will delete it.

11. Marketing emails

We do not send promotional marketing emails unless you opt in. Service emails (for example sign-in codes, billing receipts, or reminder digests you enable) are part of operating your account.

12. Cookies, sessions, and monitoring

RenewShield uses essential cookies and local storage for sign-in sessions and preferences. We do not use third-party advertising trackers. In production we use Sentry for error and reliability monitoring (for example stack traces and release metadata). We configure Sentry not to send default personally identifiable information; we do not intentionally include secrets or full request bodies. We do not use Sentry for advertising. If our monitoring practices change, we will update this policy.

13. Data Processing Agreements

For business and team customers where RenewShield processes personal data on your behalf, we offer a Data Processing Agreement (DPA). See our DPA page or contact privacy@renewshield.app.

14. Changes and contact

We may update this policy as the product evolves. Material changes will be noted on this page with an updated date. Questions: privacy@renewshield.app. Support: support@renewshield.app. Operator: Nisha Chavan, Sweden.

RenewShield · Operated by Nisha Chavan, Sweden · privacy@renewshield.app · support@renewshield.app