This Privacy Policy explains how Trovia ("Trovia", "we", "us", or "our") collects, uses, stores, shares, and protects your information when you use the Trovia mobile app, web app, and website (together, the "Service"). Trovia is available to businesses worldwide, and we are committed to handling your data responsibly and in line with the data-protection laws that apply to you — such as the EU/UK General Data Protection Regulation (GDPR), the Nigeria Data Protection Act 2023 (NDPA), and other applicable laws in your country.
By creating an account or using the Service, you agree to this Privacy Policy. If you do not agree, please do not use the Service.
Trovia provides digital receipt and invoice tools for small and medium businesses. For the personal data of your account and business, Trovia is the "data controller". For the data you enter about your customers, you are the data controller and Trovia acts as a "data processor" on your behalf (see Section 8).
If you upgrade to Trovia Pro, payments are processed by our third-party payment partners (such as Paystack or Flutterwave). Your card or bank details are entered directly with the payment provider and are not stored on Trovia's servers. We only receive confirmation of payment and your subscription status.
We process your data where: (a) it is necessary to perform our contract with you (providing the Service); (b) you have given consent; (c) we have a legitimate interest (such as securing and improving the Service); or (d) we must comply with a legal obligation.
We do not sell your personal information. We share data only with:
| Recipient | Purpose |
|---|---|
| Supabase (cloud database & hosting) | Securely store and sync your business data |
| Payment partners (Paystack / Flutterwave) | Process Pro subscription payments |
| Service providers | Email delivery, crash reporting, and infrastructure |
| Authorities | Only where required by law or valid legal process |
| Successors | In a merger, acquisition, or sale of assets, under equivalent protections |
All providers are bound by contracts requiring them to protect your data and use it only for the purposes above.
Your data is stored using Supabase (PostgreSQL) with encryption in transit (TLS) and at rest. Passwords are hashed. Receipt and invoice data is also cached locally on your device (using Hive) so the app works offline. While no system is perfectly secure, we use industry-standard safeguards to protect your information and limit access to authorised personnel only.
We keep your data for as long as your account is active. When you delete your account, your personal and business data is removed from our active systems immediately and purged from encrypted backups within 30 days, except where we must retain limited records to meet legal, tax, or fraud-prevention obligations.
When you store information about your own customers in Trovia, you are responsible for handling that information lawfully — including telling your customers how you use it and obtaining any consent required. Trovia processes that data only to provide the Service to you, and deletes it when you delete the related records or your account.
Subject to applicable law, you may:
Our service providers may process or store data on servers located outside your country. Where this happens, we take steps to ensure your data receives a level of protection consistent with this policy and applicable law.
Trovia is intended for business owners and is not directed at children under 18. We do not knowingly collect personal data from children. If you believe a child has provided us data, contact us and we will delete it.
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date above and, where appropriate, notify you by email or an in-app notice. Your continued use of the Service after changes take effect constitutes acceptance.
Questions, requests, or complaints about this policy or your data? Contact us at privacy@gettrovia.site.