VoidPOS
Features Pricing About Help
Sign in Get started free

Privacy Policy

Last updated: July 18, 2026  ·  We are committed to protecting your privacy and your customers’ data.

Summary: This Privacy Policy covers both VoidPOS (the web platform) and VoidPOS Go (our Android app). We store your business data (products, transactions, employees) in Firebase (Google Cloud). We do not sell your data. We use it only to provide the Service. You can export or delete your data at any time, including a fully self-service account deletion flow in VoidPOS Go.

Table of Contents

1. Who We Are 2. What Data We Collect 3. VoidPOS Go (Android App) 4. How We Use Your Data 5. Data Storage & Security 6. Data Sharing 7. Cookies & Tracking 8. Your Rights 9. Account & Data Deletion 10. Data Retention 11. Children’s Privacy 12. International Transfers 13. Changes to This Policy 14. Contact Us

1. Who We Are

VoidPOS (“we”, “us”, “our”) operates the VoidPOS Point of Sale web platform and the VoidPOS Go Android application (together, the “Service”). We are the data controller responsible for the personal data processed through both products.

Contact: [email protected]

2. What Data We Collect

2.1 Account & Business Owner Data

When you register and use VoidPOS as a business owner, we collect:

DataPurposeRequired?
Email addressAccount authentication, communicationsYes
Full nameAccount identificationYes
Phone numberAccount contact, supportYes
CountryRegional pricing, timezoneYes
Business name, address, phonePOS receipts, profileOptional
Password (hashed)Account security (stored by Firebase Auth)Yes

2.2 Business Operational Data

Data you create while using the Service:

  • Products: Names, prices, stock levels, categories
  • Transactions: Sale amounts, items, payment methods, timestamps
  • Employees: Names, email addresses, roles, hashed PINs
  • Shifts: Clock-in/out times, sales attributed per shift

This data belongs to you. We process it solely to provide the Service.

2.3 Technical Data

Automatically collected when you use the Service:

  • IP address (used for regional pricing and security)
  • Browser type and version
  • Pages visited and actions taken
  • Session identifiers (PHP session cookies)

2.4 Payment Data

Payment card details are processed by Paddle and are not stored by VoidPOS. We only store the amount paid and the plan activated.

3. VoidPOS Go (Android App)

VoidPOS Go is a separate, offline-first Android point-of-sale app. It shares the data practices described above with some differences specific to a mobile application. This section describes those differences.

3.1 Account & Sign-In

VoidPOS Go uses Google Sign-In for authentication (via Firebase Authentication). We receive your Google account’s name, email address, and profile photo at sign-in. We do not receive your Google password.

3.2 Data We Collect in the App

DataPurposeRequired?
Google account name, email, profile photoSign-in and account identificationYes
Business profile (name, address, phone, currency, branding)Receipts, app customizationOptional
Products, categories, orders, order items, expensesCore POS functionalityYes
Device identifierAnti-hijack device security — detects sign-in on a new device and locks the previous oneYes
Uploaded photos (store cover, product images, receipt logo)Stored in Firebase Cloud Storage under a path unique to your businessOptional
Team member email & roleMulti-device access on Duo/Team plansOptional
Subscription & billing statusEnforcing plan limits, renewal remindersYes

3.3 Local, On-Device Storage

VoidPOS Go is offline-first: products, orders, and settings are cached in a local database on your device so checkout keeps working without an internet connection. This local cache syncs to Firebase automatically once the device is back online. If you uninstall the app, this local cache is removed from your device, but your cloud data in Firebase is not affected — use the in-app or web deletion flow described in Section 9 to remove your cloud data.

3.4 Android Permissions

Depending on the features you use, VoidPOS Go may request:

  • Camera: optional, for scanning product barcodes
  • Bluetooth: optional, for connecting to 58mm/80mm thermal receipt printers
  • Storage / Photos: optional, for selecting product images or a store logo from your device
  • Internet & Network State: required, to sync your business data with Firebase
  • Notifications: optional, for low-stock and subscription renewal alerts

You can grant or revoke each permission at any time from Android Settings → Apps → VoidPOS Go → Permissions. Declining a permission only disables the related feature; it does not prevent you from using the register.

3.5 Email Notifications from the App

VoidPOS Go sends transactional emails for: invitation to join a business as a team member, and a one-time verification code when you request account deletion (see Section 9). We do not send marketing emails from the app without your consent.

4. How We Use Your Data

PurposeLegal Basis
Providing and operating the VoidPOS ServiceContract performance
Processing payments and managing subscriptionsContract performance
Sending transactional emails (receipts, account alerts)Contract performance
Customer support and responding to enquiriesLegitimate interest
Security monitoring and fraud preventionLegitimate interest
IP-based regional pricing (anonymous)Legitimate interest
Improving the Service (aggregate, anonymised data)Legitimate interest
Sending product updates (with your consent)Consent

We do not sell your personal data to third parties. We do not use your data for advertising.

5. Data Storage & Security

5.1 Where Data is Stored

Your data is stored in Google Firebase Realtime Database, located in the Asia Southeast 1 region (Singapore). Firebase is operated by Google LLC and complies with GDPR and international data protection standards.

5.2 Security Measures

  • All connections are encrypted via HTTPS/TLS
  • Employee PINs are hashed using bcrypt before storage
  • Firebase Security Rules restrict access so only authorised owners and employees can read their own business data
  • PHP sessions use HttpOnly, Secure, and SameSite=Strict cookies
  • Sensitive server-side operations use Firebase Database Secret (never exposed to browsers)

5.3 Data Breaches

In the event of a data breach that affects your personal data, we will notify you by email within 72 hours of becoming aware of the breach, as required by applicable law.

6. Data Sharing

We share your data only with the following service providers, and only to the extent necessary to provide the Service:

ProviderPurposeData Shared
Google Firebase (Google LLC)Database & authentication (VoidPOS and VoidPOS Go)All business data
Google Firebase Cloud StorageStoring uploaded photos & files (VoidPOS Go)Store covers, product images, branding you upload
Google Identity Toolkit (Firebase Auth)Sign-in & account managementName, email, profile photo, sign-in identifier
PaddlePayment processingName, email, billing address, payment
ipapi.co / ip-api.comIP geolocation for pricingIP address only (anonymous)
Google FontsFont loadingNone (CDN request only)
Email delivery provider (Zoho / transactional SMTP)Sending account, invitation, and deletion-verification emailsEmail address, email content

We may disclose your data if required by law, court order, or to protect the rights and safety of VoidPOS, our users, or the public.

7. Cookies & Tracking

7.1 Cookies We Use

CookiePurposeDuration
VOIDPOS_SESSSession management (keeps you logged in)Session / 8 hours
Firebase auth tokensFirebase authentication state1 hour (refreshed automatically)

7.2 No Tracking Cookies

VoidPOS does not use advertising cookies, third-party tracking pixels, or social media tracking.

7.3 Managing Cookies

You can disable cookies in your browser settings. Disabling the session cookie will prevent you from logging in.

8. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you
  • Rectification: Correct inaccurate or incomplete data (editable in Settings)
  • Erasure: Delete your account and all data — from VoidPOS Settings → Delete Account, or in VoidPOS Go from the app or go.voidpos.com (see Section 9)
  • Portability: Export your transaction data as CSV or JSON (Standard/Premium plans)
  • Objection: Object to processing based on legitimate interest
  • Restriction: Request restriction of processing in certain circumstances

To exercise these rights, contact us at [email protected]. We will respond within 30 days.

Most data rights can be exercised directly within the Service without contacting us — update your profile in Settings, or delete your account as described in Section 9.

9. Account & Data Deletion

9.1 VoidPOS (Web)

Delete your account and all associated data at any time from Settings → Delete Account in your admin dashboard. Deletion is permanent and irreversible.

9.2 VoidPOS Go (Android App)

VoidPOS Go includes a verified, self-service deletion flow available two ways:

  • In the app: Settings → Account → Delete Account → re-authenticate → type the confirmation phrase → verify the emailed one-time code → confirm the final warning.
  • On the web, without the app installed: sign in at go.voidpos.com with your Google account, open the Danger Zone, and follow the same emailed-code verification flow.

Full step-by-step instructions are published at voidpos.com/go/delete-account, as required by Google Play’s data safety policy.

Deleting your VoidPOS Go account permanently removes: your business profile, products, categories, orders, order items, expenses, subscription and billing history stored in your account, uploaded photos and files in Cloud Storage, pending team invitations, your team member records for that business, and your Firebase Authentication sign-in (you are signed out on every device). If a teammate previously joined your business, deleting your account removes their access to it, but does not delete their own separate Google/Firebase sign-in.

There is no recovery period once deletion is confirmed — the one-time email code and typed confirmation exist specifically to prevent accidental deletion before that point.

10. Data Retention

We retain your data for as long as your account is active, on both VoidPOS and VoidPOS Go. When you delete your account:

  • All business data (products, transactions, employees, orders, expenses) is deleted immediately from Firebase
  • Uploaded photos and files in Cloud Storage are deleted immediately (VoidPOS Go)
  • Your Firebase Authentication account is deleted immediately
  • Billing records may be retained for up to 7 years for tax and legal compliance purposes
  • Anonymised, aggregate usage statistics are retained indefinitely

If your subscription expires and you do not reactivate within 90 days, we may permanently delete your account data after sending a 14-day notice email.

11. Children’s Privacy

VoidPOS is a business tool intended for adults aged 18 and over. We do not knowingly collect personal data from children under 18. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

12. International Data Transfers

Your data is stored on Google Firebase servers located in Singapore (Asia Southeast 1). By using VoidPOS, you consent to the transfer of your data to Singapore and to other countries where our service providers operate.

Google LLC participates in and complies with relevant data transfer frameworks. For users in the European Economic Area (EEA), these transfers are governed by Standard Contractual Clauses under GDPR.

13. Changes to This Policy

We may update this Privacy Policy from time to time. When we make significant changes, we will notify you by email or by displaying a notice in the Service. The “Last updated” date at the top of this page will reflect when changes were made.

Your continued use of the Service after changes take effect constitutes acceptance of the revised policy.

14. Contact Us

For any privacy-related questions, requests, or complaints, contact us:

  • Email: [email protected]
  • Website: https://voidpos.com

If you are in the EU/UK and are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.

VoidPOS

The modern point of sale for retail, food, and every business in between. Built for owners who move fast.

Product

Features VoidPOS Go Pricing Documentation Blogs

Company

About Contact Help Feedback

Account

Sign in Get started free VoidPOS Go dashboard Employee login Delete account

Legal

Privacy policy Terms of service Refund policy [email protected]
© 2026 Invuk. All rights reserved.
Privacy Terms Refunds [email protected]