Effective August 21, 2026
Privacy Policy
This Privacy Policy explains how Branch collects, uses, and shares information when you use our websites, web app, mobile apps, and APIs.
Information we collect
We collect information needed to operate workspaces and support your account, including:
- Account details such as name, email address, authentication data, and preference settings.
- Workspace content you enter or generate, such as clients, projects, time entries, expenses, invoices, estimates, files, and messages.
- Technical and usage information such as device type, app version, IP address, approximate location derived from IP, and diagnostic logs.
- Billing details processed by our payment providers (for example Stripe), such as payment method metadata and invoice history. We do not store full card numbers on Branch servers.
How we use information
We use information to provide and improve the Service, authenticate users, process subscriptions, send transactional email, provide support, maintain security, prevent abuse, and meet legal obligations. We do not sell personal information.
How we share information
We share information with service providers that help us operate Branch (such as hosting, email delivery, error monitoring, and payment processing), with integrations you connect (such as QuickBooks or Stripe Connect for client invoice payments), when required by law, or with your direction. Workspace members can see Customer Data according to permissions set by administrators.
Retention
We retain account and workspace data while your workspace is active. When you delete a workspace or login in the app or on the web, we remove that data from active systems immediately. Limited residual copies may remain in encrypted backups or security logs for a short period, then expire. We may retain records longer when required for disputes, fraud prevention, tax, or other legal obligations.
Account and workspace deletion
You can initiate deletion in the Branch web app or mobile app (Account or Settings → Login & security). Workspace administrators can permanently delete a workspace after confirming the workspace web address; that removes Customer Data for the workspace and cancels related billing. Anyone can delete their personal Branch login after confirming their email, which removes their access and personal account details. Export your data from Settings → Import/Export before deleting. Deletion cannot be undone.
Security
We use administrative, technical, and physical safeguards appropriate to the Service, including encrypted transport, access controls, and optional two-factor authentication. No method of transmission or storage is completely secure.
Your choices and rights
Depending on your location — including the European Economic Area, United Kingdom, and similar jurisdictions — you may have rights under the GDPR and related laws to access, correct, export (data portability), restrict or object to certain processing, and request erasure (the “right to be forgotten”). You can exercise many of these rights directly in Branch by editing your profile, exporting workspace data, or deleting your login or workspace. You may also email hello@branchinvoicing.com to make a privacy request. We will respond within the time required by applicable law. You can opt out of non-essential marketing emails where offered.
Children
Branch is intended for business use and is not directed to children under 16. We do not knowingly collect personal information from children.
Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be posted on this page with an updated effective date.
Contact
For privacy questions or requests, email hello@branchinvoicing.com. See also our Terms of Service.