Privacy Policy for BillMaster97
This Privacy Policy explains how BillMaster97 ("the Application", "we", "us", or "our"), engineered by Narayan Modak, handles user data, commercial licenses, and business records across desktop browsers, mobile Progressive Web Apps (PWA), and native applications worldwide.
1. Software Publisher & Developer Identification
BillMaster97 is an offline-first sovereign software engineered and published by independent developer Narayan Modak. BillMaster97 does NOT collect, inspect, store, or process your client or customer data. For licensing inquiries and technical support, the official publisher details are:
- Lead Developer: Narayan Modak
- Location: West Bengal, India
- Official Support Email: [email protected]
- Official Website: https://billmaster97.com
2. 100% Offline-First Architecture & Absolute Data Sovereignty
BillMaster97 is engineered with absolute Privacy by Design & Default (GDPR Article 25):
- Zero Central Database Telemetry: All commercial data, tax invoices, client records, inventory stock, cost margins, customer phone numbers, and payment details generated in the application remain 100% on the user's local hardware inside encrypted browser storage (IndexedDB and LocalStorage).
- Zero Cloud Interception: We do NOT operate remote database servers that capture, inspect, transmit, or monetize your business's financial data. Even if our website were completely offline or disconnected from the internet, your billing application continues to run seamlessly.
3. Zero Customer Data Collection Guarantee
We believe your business customers belong solely to you. We strictly enforce:
- No Access to Your Client Data: We never collect, view, access, or require your customers' names, phone numbers, email addresses, or transaction amounts.
- No Telemetry or Profiling: We do not monitor how many invoices you create, what items you sell, or what revenue you generate.
- Sole Data Custody: You (the merchant/business owner) act as the sole Data Controller of your customer and business records under all applicable laws.
4. User-Controlled External Cloud Backups (OneDrive, Google Drive, Dropbox, USB)
BillMaster97 gives you complete freedom to back up your offline database snapshots and exported PDF invoices to external storage solutions:
- Client Discretion & Setup: You may choose to save or sync local backup files (e.g., JSON ledger snapshots, CSV exports, or PDF invoices) to your personal third-party cloud storage (such as Microsoft OneDrive, Google Drive, Dropbox) or external physical media (USB drives, external SSDs).
- Client Responsibility & Zero-Access Disclaimer: Any connection or backup to a third-party cloud provider is initiated entirely by you under your own independent account. BillMaster97 maintains zero access, zero login credentials, and zero custody over your personal Google, Microsoft, or Dropbox accounts. The security, retention, and access management of such external backups remain the sole responsibility of the user under the terms of their agreement with that cloud provider.
5. Global Multi-Jurisdiction Compliance & International Standards
Because BillMaster97 operates with zero central cloud data collection, our architecture complies naturally with data protection frameworks worldwide:
- European Union & United Kingdom (GDPR & UK DPA 2018): Full compliance with Article 25 (Data Protection by Design) and Articles 15–22 (Data Subject Rights). No international cross-border transfers of merchant billing data occur because data never leaves the local device.
- United States (California CCPA & CPRA): We do NOT sell, share, rent, or monetize personal information. California consumers have full rights to know, access, and delete licensing contact data.
- India (Digital Personal Data Protection Act 2023 - DPDP Act): Complies fully with India's DPDP Act 2023. No customer or citizen data is collected, scraped, or processed on centralized servers without explicit merchant control.
- Canada (PIPEDA) & Australia (Privacy Act 1988 & APPs): Complies with Canadian and Australian fair information principles by ensuring commercial financial records remain under local business custody.
- Singapore (PDPA) & Japan (APPI): Adheres to strict data localization principles by ensuring no merchant transaction data is exported to foreign third-party clouds.
- Brazil (LGPD), UAE (Federal Decree-Law 45), & Saudi Arabia (PDPL): Fully aligns with Middle Eastern and Latin American statutory data localization standards.
- International & Regional Standards (Nigeria NDPA, Kenya, Indonesia, Philippines): Provides small businesses worldwide with enterprise-grade data protection without requiring expensive or risky cloud storage.
6. Personal Data Processed & Purpose of Processing
We process only the minimum necessary data required to fulfill commercial license agreements and deliver technical support:
- License Issuance & Verification: Customer name and billing email address provided during checkout are used solely to issue cryptographic license keys, send transaction receipts, and authenticate activations.
- Customer Inquiries: Name, email address, and message details submitted through our contact channels are used exclusively to provide technical support and respond to software inquiries.
7. Authorized Sub-Processors & Merchant of Record
We work exclusively with enterprise-grade service providers who adhere to strict data security standards:
- Polar.sh (Merchant of Record): Acts as the Merchant of Record for commercial license transactions. Polar.sh processes credit card payments, enforces PCI-DSS Level 1 compliance, handles international VAT/GST remittance, and maintains buyer accounts (Polar.sh Privacy Policy).
- Cloudflare Pages: Provides secure edge hosting, TLS 1.3 encryption, and DDoS mitigation for our public marketing website (Cloudflare Privacy Policy).
8. Device Permissions & Hardware Bridge
- Camera Permission: Required solely if you choose to activate the Optical OCR barcode scanner to look up inventory items. Video frames are processed in real-time in local device memory and are never recorded, saved, or transmitted.
- Bluetooth & WebUSB Permission: Used exclusively to bridge raw ESC/POS text streams directly to 58mm/80mm thermal receipt printers connected to your device.
9. Contact & Developer Inquiries
For questions or assistance regarding BillMaster97 or this statement, please contact lead developer Narayan Modak via [email protected] (West Bengal, India).