Privacy Policy
Last updated: April 2026
1. The basics
SubsShield is a revenue recovery service. We take your privacy seriously and only collect the data we actually need to make the service work.
We don't sell your data, we don't share it with advertisers, and we don't use it for anything other than running SubsShield.
2. What we collect from your account
When you sign up for SubsShield, we collect:
Email address & Phone number: For account access, billing, and important service updates.
Name & Business details: To personalize your account and ensure we meet legal invoicing requirements (like GST).
Payment details: Processed securely by our payment gateway (e.g., Razorpay/CashFree). We do not store your actual card or bank account numbers on our servers.
3. What we collect from your payment processor
When you connect your payment gateway via webhook or API, we access the specific data needed to run recovery campaigns. We only process what is necessary:
Subscription data: active subscriptions, plan details, and subscription status. Used to track MRR and identify at-risk customers.
Payment events: successful payments, failed charges, and refunds. Used to trigger dunning flows and calculate recovery metrics.
Customer details: The name, email, and phone number of the user whose payment failed, so we can send them a recovery link.
What we don't access: We never see full credit card numbers, bank passwords, or any data unrelated to your subscriptions.
4. How we use the data
Running the service: Sending recovery emails, sending WhatsApp messages, triggering retries, and generating analytics.
Billing & Support: Processing your SubsShield subscription payments.
Service communications: billing reminders, renewal notices, and important service updates.
Improving the product: aggregate, anonymised usage data to understand how the service is used and where to improve.
5. What we don't do
We don't sell your data to anyone.
We don't share your data with advertisers or marketing platforms.
We don't use your customer data for our own marketing.
We don't access more data than we need from your payment processor.
6. Cookies
We keep cookies to a minimum. We use session cookies which are required for authentication. These keep you logged in and expire when your session ends. Essential for the service to work.
7. Data retention & Deletion
We keep your data only as long as your account is active.
If you cancel your account, we delete your webhook connections and processed end-user data within 30 days.
We comply fully with India’s Digital Personal Data Protection (DPDP) Act, 2023.
8. Questions/Contacting the Data Protection Officer
For any privacy-related queries about how we handle data, or want to request a deletion, please contact us at :
📩 contact@SubsShield.com
