Privacy Policy
For the StoDo Simple and StoDo Online mobile apps. Last updated: 9 August 2026.
What changed in this version. This is a complete rewrite of our previous policy. It now names our legal entity, covers both StoDo apps rather than only one, and describes the cloud features (Google sign-in, cloud backup, data sync, subscriptions, email) that the older text did not mention. It also adds the information required under the EU General Data Protection Regulation: our legal bases, retention periods, international transfers, and your rights.
1. Who we are
These apps are published by Xaltos Technologies Ltd, trading as Chester Software. For the purposes of the EU General Data Protection Regulation (GDPR), Xaltos Technologies Ltd is the data controller for the personal data described in this policy.
| Controller | Xaltos Technologies Ltd (trading as Chester Software) |
|---|---|
| Registered address | 27 Despoinas & Nikou Pattichi, Office 2, Limassol 3071, Cyprus |
| Contact | help@chester-sw.com |
| Website | chester-sw.com |
This policy covers the following apps and the cloud services behind them:
- StoDo Simple (listed on Google Play as Stock and Inventory Simple) — com.stockmanagment.next.app
- StoDo Online (listed on Google Play as Stock and Inventory Online) — com.stockmanagment.online.app
It does not cover our other products, which have their own privacy policies.
2. Which app you use, and what that means
How much information reaches us depends on which app you use and whether you sign in. There are three situations, and the difference between them is significant, so please find yours below.
| Your situation | Sign-in | What leaves your device |
|---|---|---|
| StoDo Simple, not signed in | None | Only app diagnostics, usage analytics and your purchase status. Your inventory never reaches our servers. It stays in a database on your device, and you can export or back it up locally without involving us at all. |
| StoDo Simple, signed in (optional) | Google, optional | The above, plus an account record (your email address, Google display name and a user ID), plus any cloud backup you make — which contains your whole inventory database and your images and attachments. |
| StoDo Online | Google, required | The above, plus continuous synchronisation of your inventory data to our cloud database, your product images, records of who you share access with, and push messaging. |
StoDo Simple works completely offline. Signing in is optional and exists for one reason: to let you store backups in the cloud and restore them on another device. You can use every inventory feature — products, documents, contractors, printing, Excel import and export, local backups — without ever signing in. If you never sign in, we hold no account for you.
3. What information we collect
3.1 The inventory data you enter
Both apps
This is the content of the app: products (names, barcodes, descriptions, prices, quantities and photos), incoming and outgoing documents, payments, expenses and their attachments, stores, measures, tags and custom columns. It also includes:
- Contractor records — your suppliers and customers: name, postal address, email address, phone number, tax identification number, bank details, discount and free-text notes. See section 12, because this may be other people’s personal data.
- Your own business details — company name, tax number, address, bank details, logo, email and phone, which the app prints on your documents.
In StoDo Simple this data lives on your device. It reaches us only if you sign in and use cloud backup. In StoDo Online it is synchronised to our cloud database as you work, because that is what the app is for.
3.2 Contacts import
Both apps Optional
When you create a supplier or customer, you can choose to pick someone from your device’s contacts instead of typing their details. If you grant the contacts permission and select a contact, the app copies that person’s name, phone number and email address into the contractor record. We do not read, upload or index your address book, and nothing is copied until you actively pick a contact.
3.3 Account information
Both apps Only if signed in
Signing in is handled entirely by Google. We never see or handle your Google password. We ask Google only for your email address and a sign-in token — we do not request access to your Google Drive, Gmail, contacts or any other Google service.
When you sign in, we store an account record containing:
- your email address;
- your Google display name;
- a user identifier generated by Google Firebase;
- basic device information: app version, Android version and build, API level, Google Play services version, device manufacturer and model;
- the date the record was created.
In StoDo Simple, your email address is also used as the folder name under which your cloud backups are stored.
3.4 Cloud backups
Simple Only if signed in
If you turn on cloud backup in StoDo Simple, each backup uploads two files to our cloud storage:
- your inventory database file, exactly as it exists on your device — which means all products, documents, prices, contractors, stores, expenses, tags and custom columns; and
- an archive of your images folder, which includes product photos and any document or expense attachments you have added.
These files are transmitted over an encrypted connection and stored encrypted at rest by Google, but we do not apply any additional encryption of our own, and they are not password-protected. Please keep this in mind when deciding what to store in the app.
Cloud backup is off by default. Turning it on requires you to sign in and to have an active subscription. Once you have turned it on, backups run automatically in the background on the schedule you choose, including after your device restarts, until you turn the setting off again.
3.5 Cloud synchronisation and sharing
Online only
StoDo Online continuously synchronises your inventory data between your devices through our cloud database, and stores your product images in our cloud storage. It also keeps records that make sharing work: which accounts you have invited to your data, the email addresses of those accounts, and their permission levels.
To deliver notifications, the app registers a messaging token together with your email address, user identifier, a device identifier and device information. These session records are short-lived and are cleared automatically about a day after your device stops being active.
3.6 Device and diagnostic information
Both apps
To keep the apps working we collect: app version and build, platform, Android version, device manufacturer and model, API level, Google Play services version, your language setting, and the country code reported by your mobile network. We also generate a random identifier for your app installation.
We do not collect your device’s hardware identifiers — no IMEI, no Android ID, no MAC address — and we do not use an advertising identifier.
3.7 Crash reports
Both apps
When the app crashes or hits an unexpected error, we receive a diagnostic report containing the technical error details plus the device information above, your language and network country. If you are signed in at the time, the report also carries your user identifier and your email address, so that we can follow up on a problem you have reported to us.
3.8 Usage analytics
Both apps
We record how the app is used so that we can improve it: which screens are opened, when the subscription or trial screens are shown, and whether a purchase was started, completed, cancelled or failed (with the product identifier and, on failure, an error code). We also record which version of the app you were shown when we are testing a change to the interface.
These events are linked to the random installation identifier described above, not to your name or email address.
3.9 Subscriptions and purchases
Both apps
Payments are processed by Google Play. We never receive your card number, billing address or any other payment details.
We use a subscription management service, RevenueCat, to keep track of what you have bought and what you are entitled to use. It receives your purchase and subscription status together with an installation identifier, and — if you are signed in — your user identifier, email address and display name.
3.10 Address autocomplete
Both apps Optional
There is an optional setting that suggests postal addresses as you type them into a contractor record. While it is enabled, the text you type in that field is sent to Google’s Places service to generate suggestions. Turn the setting off and nothing is sent.
3.11 Support requests and diagnostic logs
Both apps
If you contact us from inside the app, your message is sent using your own email app, so we receive whatever you write and the address you send it from. If we ask you to send diagnostic logs, the app assembles them together with your app settings and device information for you to send. That package deliberately excludes messaging tokens, purchase receipts and Firebase identifiers.
3.12 What we do not do
- We do not show advertising, and the apps contain no advertising or tracking SDKs.
- We do not sell your personal data, and we do not share it for advertising.
- We do not request location permission and do not track your location.
- We do not access your microphone, SMS messages, call log or phone number.
- We do not track you across other apps or websites.
4. How we use your information
- To provide the app — storing your inventory, synchronising it between your devices, and creating and restoring backups.
- To manage your account — signing you in, keeping you signed in, and letting you share access with people you invite.
- To handle subscriptions — checking what you have purchased and unlocking the corresponding features.
- To keep the app working — diagnosing crashes and errors, and monitoring performance and reliability.
- To improve the app — understanding which features are used and testing changes to the interface.
- To communicate with you — answering your support requests, and sending occasional messages about the app and your subscription.
- To protect the service — detecting abuse, and enforcing subscription limits fairly.
5. Legal basis for processing
If you are in the European Economic Area or the United Kingdom, we rely on the following legal bases under Article 6 GDPR:
| Purpose | Legal basis |
|---|---|
| Providing the app, your account, cloud sync, backups, sharing and subscriptions; answering your support requests | Performance of a contract — you asked us to provide the service and we cannot provide it without this data. |
| Crash reporting, performance monitoring, usage analytics, experiments, abuse prevention, and service and onboarding email | Legitimate interests — keeping the app stable, secure and improving, in a way we consider proportionate and which you can object to at any time. |
| Camera, contacts, notification and storage permissions; the address autocomplete setting; cloud backup | Consent — each of these is off until you turn it on, and you can withdraw it in the app or in Android settings at any time. |
| Keeping records of purchases | Legal obligation — accounting and tax rules. |
6. Where your data is stored, and international transfers
We do not run our own data centres. Your data is held by the providers listed in section 9, principally Google Firebase.
We are established in Cyprus, in the European Union. Some of our providers process data in the United States. Where that happens, transfers are made under the safeguards permitted by Chapter V GDPR — the European Commission’s Standard Contractual Clauses and, where applicable, the EU–US Data Privacy Framework.
Our cloud infrastructure providers also record technical request data, including IP addresses, in their own server logs as part of operating and securing the service.
7. How long we keep your data
| Data | Retention |
|---|---|
| Account record and synchronised inventory data | Until you delete your account or ask us to delete it. |
| Cloud backups (StoDo Simple) | We keep your most recent backups and delete older ones automatically — up to 7 scheduled and 10 manual backups. All are removed when you delete your account. |
| Product images and attachments | Until you delete them, or until you delete your account. |
| Crash reports | About 90 days, then deleted by our provider. |
| Usage analytics | No longer than 14 months. |
| Push notification session records | About 24 hours after your device stops being active. |
| Email contact record | Until you unsubscribe or ask us to delete it. |
| Support correspondence | For as long as needed to resolve your request and to handle any follow-up. |
| Purchase records | As required by accounting and tax law. |
Data held on your own device stays there until you delete it or uninstall the app.
8. How to delete your data
In the app
StoDo Simple — open Settings → Backup and Restore and choose Delete all data and account. This clears the inventory database on your device, deletes every cloud backup stored under your account, removes your account record and your saved business details, and signs you out.
StoDo Online — open the cloud database screen and choose Delete all data and account. In addition to the above, this deletes your synchronised inventory data, your product images and your sharing permissions from our cloud.
If you use StoDo Simple and have never signed in, there is nothing for us to delete — simply uninstalling the app removes your data.
By request
Some records are not covered by the in-app button. These are your sign-in record itself, the customer record held by our subscription provider, your contact record in our email system, and diagnostic log entries that mention your account. To have these erased as well, use our deletion request form or email us:
We will confirm once it is done. Please note that uninstalling the app does not delete data already stored in the cloud — use one of the routes above. Any marketing email we send also contains an unsubscribe link.
9. Third-party services
We share personal data with the providers below, only to the extent needed for them to perform their function for us. They act as our processors and are not permitted to use your data for their own purposes.
| Provider | What it does for us | What it receives |
|---|---|---|
| Google Firebase Privacy | Sign-in, cloud database, cloud storage, crash reporting, analytics, push messaging, remote configuration, performance monitoring and anti-abuse checks | Account details, synchronised inventory data, backups, images, diagnostics, usage events |
| Google Play services Privacy | App distribution, updates, payment processing and device integrity checks | Purchase and subscription data, device integrity signals |
| Google Places Privacy | Suggests postal addresses while you type (only if you enable it) | The address text you type |
| RevenueCat Privacy | Manages subscriptions and entitlements | Purchase status, installation identifier and, if signed in, your user identifier, email address and display name |
| Brevo Privacy | Sends our service, onboarding and subscription-related email | Your email address, display name and user identifier, and whether you started a trial or subscription |
Separately, the apps let you send an export, backup or report to a destination you choose — for example Google Drive, Dropbox, or an email app. When you do that, the file goes directly from your device to that service under its own privacy policy. We receive nothing and have no access to it.
10. Device permissions
Android asks for the sensitive permissions below only when you first use the feature that needs them. You may refuse any of them and keep using the app; only the specific feature stops working. You can change your mind later in Android’s app settings.
| Permission | Why the app asks |
|---|---|
| Camera | Scanning barcodes and taking photos of your products |
| Contacts | Filling in a supplier or customer from your address book, when you choose to |
| Notifications | Showing progress and results of backups, imports and synchronisation |
| Storage (Android 9 and older) | Reading and writing exports, backups and images on your device |
| Internet and network state | Reaching our cloud services and checking whether you are online |
| Billing | Purchasing and restoring subscriptions through Google Play |
| Vibration and flashlight | Feedback and torch while scanning barcodes |
| Run at startup and keep device awake (Simple only) | Re-scheduling and completing your automatic backup after the device restarts |
11. Security
- All communication between the app and our cloud services uses encrypted connections (TLS).
- Data stored in our cloud is encrypted at rest by Google.
- We never see or store your Google password; sign-in is performed by Google.
- Access to your synchronised data is restricted to your own account and to accounts you have explicitly invited.
- Release builds verify that requests come from a genuine, unmodified copy of the app.
- If you set an app lock code, it is encrypted on your device using the Android keystore.
Please note that cloud backups are stored as ordinary files without an additional password of our own, as explained in section 3.4.
No method of transmitting or storing data is completely secure, and we cannot guarantee absolute security. If a breach occurs that is likely to present a risk to your rights, we will notify the competent supervisory authority and, where required, you.
12. Data you enter about other people
Your contractor records may contain personal data about real people — your suppliers, your customers, and their staff. For that information, you are the data controller and we act as your processor: we store and synchronise it on your instructions and do not use it for any purpose of our own.
You are responsible for making sure you have a lawful basis to record those details, and for responding if one of those people asks you about their data. If we receive such a request directly, we will refer it to you.
13. Children’s privacy
These apps are business tools for managing stock and inventory. They are not directed at children, and we do not knowingly collect personal data from anyone under 16 (or under the age of digital consent in your country, which may be as low as 13). If you believe a child has provided us with personal data, please contact us and we will delete it.
14. Your rights
Under the GDPR you have the right to:
- Access the personal data we hold about you, and receive a copy.
- Rectify data that is inaccurate or incomplete.
- Erase your data — see section 8.
- Restrict or object to processing based on our legitimate interests, including analytics.
- Port your data — the apps can export your inventory to Excel at any time, and we can supply your account data on request.
- Withdraw consent at any time, without affecting processing already carried out.
To exercise any of these, write to help@chester-sw.com. We will respond within one month. Exercising your rights is free of charge.
If you are not satisfied with our response, you may lodge a complaint with your local data protection authority. Ours is the Office of the Commissioner for Personal Data Protection of the Republic of Cyprus.
15. Changes to this policy
We may update this policy as the apps change. The date at the top always shows when the current version was published. If we make a change that materially affects how we handle your personal data, we will tell you in the app or by email before it takes effect. Please review this page from time to time.
16. Contact us
Questions about this policy, or about your data:
| Xaltos Technologies Ltd | trading as Chester Software |
|---|---|
| Address | 27 Despoinas & Nikou Pattichi, Office 2, Limassol 3071, Cyprus |
| help@chester-sw.com | |
| Delete my data | chester-sw.com/account-delete-request/ |