Privacy policy
DeynBook holds something private: the record of who owes your store money. This page explains what we collect, why we hold it, who else touches it, and how you get it back or get it deleted.
Last updated
June 2, 2026
On this page14 sections
Read this as a summary, not as advice
Who we are
DeynBook is software that replaces the paper deyn book kept under the counter of a small grocery store: customer accounts, credit sales, payments, reminders, inventory, and reports. It is built and operated by DeynBook Inc., Minneapolis, Minnesota, United States.
This policy covers deynbook.com, app.deynbook.com, and any store data we hold on your behalf. When we say “you” we mean the store — the owner, the manager, and the staff who sign in. When we say “your customers” we mean the people whose balances you record.
What we collect
Three different kinds of information, held for three different reasons.
1. Your store account
- Store name, address, and the phone number reminders are sent from.
- Owner and staff names, email addresses, phone numbers, and roles.
- Sign-in credentials. Passwords are stored hashed with bcrypt — we cannot read them, and neither can anyone who steals the database.
- Billing contact and subscription history. Card numbers go straight to Stripe and never reach our servers.
2. The records you enter about your customers
- Customer name, phone number, and any note you add (“Fridays only”, “brother of Yusuf”).
- Credit sales, payments, balances, payment plans, and receipts.
- Reminder history: what was sent, when, in which language, and whether it was delivered.
- Inventory items, expenses, and the totals your reports are built from.
You decide what goes in. We ask you not to record anything you would not want written in the notebook — no government ID numbers, no immigration status, no health information. The app does not have fields for them.
3. Usage data
- Device type, browser, language, and approximate city, from your IP address.
- Pages opened and actions taken in the app, so we can find slow screens and fix errors.
- Essential cookies that keep you signed in and remember whether you chose Somali or English. We run no advertising trackers and no third-party ad pixels on the app.
Your store owns the customer records — we only hold them
The names and balances in your ledger belong to your store. In the language privacy laws use, your store is the data controller and DeynBook is the data processor. You decide what to collect, who to contact, and when to delete. We act on your instructions and nothing else.
That means two things in practice. We do not use your customer list for our own purposes — not for marketing, not for training models, not for research. And if one of your customers asks us to see or delete their record, we do not act alone: we pass the request to you, help you answer it, and give you the tools to do it.
If your store needs a written data processing agreement for its own records, email hello@deynbook.com and we will send one, free, on any plan.
How we use it
- To run the service: keep balances correct, send the reminders you schedule, print receipts, and show your reports.
- To support you: when you call about a balance that looks wrong, a support agent may open your account to see what happened. Every one of those views is logged, and you can ask for the log.
- To keep the service safe: detect fraudulent sign-ins, stop abuse of the messaging system, and keep backups that survive a bad day.
- To bill you: charge the subscription, send receipts, and warn you before a card expires.
- To improve the product: we look at how features are used in aggregate — “how many stores schedule Friday reminders” — never at the contents of one store’s ledger to sell something.
- To meet the law: respond to a valid legal order, or keep tax records we are required to keep.
Reminders, consent, and what a message says
Reminders are the part of DeynBook that reaches outside your store, so they get the strictest rules.
- A reminder goes only to the phone number your store entered for that customer, and only about that customer’s own balance.
- Messages show your store name, the amount owed, and how to reply. They never mention another customer, and they are never sent to a family member, an employer, or a neighbour.
- Every text carries an opt-out. A customer who replies STOP — or JOOJI in Somali — is unsubscribed within seconds, on every store on DeynBook, and we tell you it happened.
- We send during store-appropriate hours in the customer’s own time zone. Reminders scheduled for the middle of the night are held until morning.
- You are responsible for having permission to contact your customers, and for following the debt-communication rules where your store operates. Our Terms of Service spell this out.
We do not sell your data
We have never sold customer data, store data, or phone numbers, and we do not share them with data brokers, credit bureaus, advertisers, or debt collectors. Your ledger is not a product. Under California and similar laws, we do not “sell” or “share” personal information as those laws define it.
If DeynBook is ever acquired or merged, your data would move with the service. We would tell you by email at least 30 days beforehand, and the buyer would be bound by this policy until you agree to a new one.
Who else touches the data
Running the service takes a handful of vendors. Each one is under contract to process data only for us, keep it secure, and delete it when we say so. This is the full list.
- Amazon Web Services
- Hosting, databases, and encrypted backups. Servers in Northern Virginia, USA, and in Montréal, Canada for stores that have asked for Canadian residency.
- Twilio
- Delivers the reminder texts and automated calls your store sends. Receives the customer’s phone number, the message text, and delivery status.
- Stripe
- Takes your subscription payment. Stripe handles the card details — we never see or store a full card number.
- Postmark
- Sends account email: receipts, password resets, export links. Receives the email address of your staff, not your customers.
- Sentry
- Tells us when the app breaks. Scrubbed of names, phone numbers, and balances before it leaves your browser.
We will post an updated list here before adding a new subprocessor, and email account owners when the change affects customer data.
How we protect it
- Encrypted in transit with TLS 1.2 or better, and at rest with AES-256.
- Access inside the app is scoped by role. A cashier can record a sale and take a payment without seeing the whole ledger or the reports.
- Every balance change is written to an audit log with the staff member, the device, and the time. Nothing in a DeynBook ledger can be quietly erased.
- Automatic backups every night, kept 30 days, encrypted, and restore-tested quarterly.
- DeynBook staff access is least-privilege, protected by hardware two-factor keys, and reviewed every quarter.
- If a breach ever affects your data, we will tell you within 72 hours of confirming it, with what we know and what we are doing.
How long we keep it
- While your subscription is active, we keep your ledger for as long as you want it — old balances are history you may need in an argument three years from now.
- You can delete a customer, a transaction, or a note at any time. Deleted records leave the app immediately and are purged from live systems within 30 days.
- After you cancel, your data stays available for export for 30 days. Then we delete the account and purge it from backups within a further 60 days.
- Billing and tax records are kept for seven years because United States tax law requires it. They contain your store’s payments to us, not your customers’ balances.
Your rights, and getting your data out
Depending on where you live you may have the right to see the personal information held about you, correct it, delete it, take a copy elsewhere, or object to how it is used. We honour these requests for everyone, not only where the law demands it, and we never charge for them or treat you differently for asking.
If you are a store
Settings → Export gives you every customer, balance, transaction, and reminder as CSV or PDF, any time, on every plan, including during the trial. It is your book. You can walk out with it. Ask us to delete the account and we will confirm within five business days.
If you are a customer of a store
Ask the store first — they hold the record and they can correct or remove it themselves. If you cannot reach them, write to hello@deynbook.com with the store name and we will pass your request on, follow up, and tell you what happened. To stop reminder messages, reply STOP or JOOJI to any text.
Children
DeynBook is a tool for businesses and is not directed to children. We do not knowingly collect information from anyone under 16, and stores should not open credit accounts for minors. If you believe a child’s information is in a DeynBook ledger, write to us and we will work with the store to remove it.
Data across borders
Our servers are in the United States unless you have asked for Canadian residency. If your store is in Canada or anywhere outside the US and you have not asked, the data you enter is transferred to and processed in the US, where different laws apply. Where the law requires a transfer mechanism — such as standard contractual clauses — we have one in place, and we will sign it with you on request.
Canadian stores on the Scale plan can ask for their data to be stored in our Canadian region — Montréal — instead. Tell us during onboarding and we will set it up before you enter your first balance.
Changes to this policy
When we change this page we update the date at the top. For anything that materially changes how we handle your data, we email every account owner at least 30 days before it takes effect, and keep the previous version available if you ask for it.
How to reach us
- hello@deynbook.com
- Phone
- +1 (612) 555-0142 — Somali and English, Mon–Sat 8:00 AM – 8:00 PM CT, Sunday 12:00 – 6:00 PM CT.
- Post
- DeynBook Inc., Minneapolis, Minnesota, United States.
- Anything else
- Use the contact page and mark it “Privacy”. We answer privacy mail within five business days.
See also our Terms of service, which covers billing, acceptable use, and your responsibilities when you message your customers.
This version has been in effect since June 2, 2026.
hello@deynbook.comA person reads these emails. Really.
If something here is unclear, or you need a signed copy, a data export, or a processing agreement for your own records — write to us and we will answer in Somali or English within one business day for support, and within five for a formal privacy or data request.
