Privacy Policy

Entity: Reer Technologies DOO, Montenegro

Effective Date: January 1, 2025 | Last Updated: January 1, 2025

This Privacy Policy applies to all users worldwide and complies with Montenegro's Personal Data Protection Law and EU GDPR requirements for EU customers.

1. Information We Collect

1.1 Account Information

  • • Email address and password for account creation
  • • Name and billing information for paid subscriptions
  • • Company information for Enterprise customers

1.2 Excel Files and Data

  • • Excel spreadsheets you upload to our service
  • • Named ranges, formulas, and cell data within your spreadsheets
  • • API configuration settings you create

1.3 Usage Information

  • • API calls made to your endpoints
  • • Service usage metrics and analytics
  • • Error logs and performance data
  • • IP addresses and browser information

1.4 Payment Information

  • • Credit card information (processed by our payment processor Paddle)
  • • Billing history and transaction records

2. How We Use Your Information

2.1 Service Provision

  • • Process your Excel files to generate APIs
  • • Execute spreadsheet calculations in response to API calls
  • • Provide customer support and technical assistance
  • • Send service-related communications

2.2 Business Operations

  • • Process payments and manage subscriptions
  • • Analyze usage patterns to improve our service
  • • Comply with legal obligations
  • • Prevent fraud and ensure security

2.3 Marketing (Optional)

  • • Send product updates and feature announcements (you can opt out)
  • • Provide relevant content and educational materials

3. Information Sharing

3.1 We Do Not Sell Your Data

We never sell, rent, or trade your personal information or Excel data to third parties.

3.2 Service Providers

We may share information with trusted third parties who help us operate our service:

  • Paddle: Payment processing
  • Cloud Infrastructure: Secure hosting and storage
  • Analytics Tools: Service performance monitoring

3.3 Legal Requirements

We may disclose information if required by law, court order, or to protect our rights and users' safety.

3.4 Business Transfers

If Sheetflow is acquired or merged, your information may be transferred to the new entity.

4. Data Security

4.1 Encryption

  • • All data is encrypted in transit using TLS
  • • Excel files and sensitive data are encrypted at rest
  • • Database connections use encryption

4.2 Access Controls

  • • Limited employee access to customer data
  • • Multi-factor authentication for administrative accounts
  • • Regular security audits and monitoring

4.3 Data Retention

  • • Excel files: Retained while your account is active and 30 days after cancellation
  • • Account data: Retained for 7 years for business and tax purposes
  • • Usage logs: Retained for 12 months for service improvement

5. Your Rights and Choices

5.1 Access and Control

  • • Access your account data through our dashboard
  • • Download your Excel files at any time
  • • Update your account information and preferences

5.2 Data Deletion

  • • Delete specific Excel files from your account
  • • Request complete account deletion (some data may be retained for legal compliance)
  • • Opt out of marketing communications

5.3 European Users (GDPR)

If you're in the EU, you have additional rights:

  • • Right to data portability
  • • Right to rectification
  • • Right to erasure (subject to legal requirements)
  • • Right to restrict processing
  • • Right to object to processing

6. Cookies and Tracking

6.1 Essential Cookies

We use cookies necessary for:

  • • User authentication and sessions
  • • Security and fraud prevention
  • • Core service functionality

6.2 Analytics Cookies

We use analytics tools to understand service usage:

  • • Google Analytics (you can opt out via browser settings)
  • • Performance monitoring tools

6.3 Your Cookie Choices

  • • Most browsers allow you to control cookies
  • • Disabling essential cookies may affect service functionality

7. International Data Transfers and Legal Basis

7.1 Legal Basis for Processing

We process your data based on:

  • Legitimate interests for service provision and business operations
  • Contract performance when providing our Excel-to-API services
  • Consent where required by law
  • Legal obligations for tax and regulatory compliance

7.2 Cross-Border Data Transfers

As a Montenegro-based company serving global customers:

For EU Customers:

  • • We comply with GDPR requirements for EU residents' data
  • • Data transfers from EU to Montenegro use Standard Contractual Clauses (SCCs)
  • • We implement appropriate safeguards as required by GDPR Article 46

For US Customers:

  • • We comply with applicable US state privacy laws
  • • Data may be processed in Montenegro and EU cloud infrastructure
  • • We provide equivalent privacy protections regardless of location

For Other International Customers:

  • • We follow local data protection requirements where applicable
  • • Data is processed securely with consistent privacy standards globally

7.3 Montenegro Legal Framework

We comply with Montenegro's Personal Data Protection Law and are preparing for alignment with updated GDPR-compatible legislation.

8. Children's Privacy

Our service is not intended for users under 16. We do not knowingly collect information from children under 16.

9. Changes to This Policy

We may update this Privacy Policy occasionally. We'll notify you of significant changes by:

  • • Email notification
  • • Notice on our website
  • • In-app notification

10. Contact Us

Privacy Inquiries

Reer Technologies DOO

Email: privacy@sheetflow.cloud

Address: Ilino bb, Bar, 85000

Country: Montenegro

Additional Contacts

Data Protection (EU): dpo@sheetflow.cloud

General Support: hello@sheetflow.cloud

This Privacy Policy is governed by Montenegro law and EU GDPR where applicable. For EU customers, this policy provides GDPR-compliant data protection.