Short version: we use your files to produce your audit, and for nothing else.
We do not ask for or want customer data, employee data, payment card data, or login credentials. If an export contains any of those, tell us and we will delete it and ask for a narrower file.
There are no analytics or tracking scripts on this site at present. If that changes, this policy will be updated before collection begins.
Ask and we delete your files, including working copies, and confirm when it is done. You do not need a reason. If you do not ask, source files are deleted 12 months after the audit.
You can replace vendor names and store names with codes before sending. The arithmetic does not care what anything is called, and the audit comes back with your codes intact.
Email is delivered by our mail provider and this site is hosted on Cloudflare Pages. Neither is given your files for any purpose of its own. The audit itself runs on our own machines, not on a third-party service, and your data is not sent to an external API — including any AI service — while producing it.
Files are held on encrypted storage and are not published anywhere. We are a small operation and will not claim a certification we do not hold. If your business needs a formal security review or a signed agreement before sending anything, ask.
You can ask what we hold, ask for a copy, ask us to correct it, or ask us to delete it at any time by replying to any email from us. We will act within 30 days and usually the same week.
If this page changes in a way that affects files already sent to us, we will email you rather than quietly update the page.
Last updated 18 August 2026 · About