Skip to content
Yusrin app logo - simple compliant-ready e-invoicing for omani companies

Privacy Policy

What Yusrin collects, why, where it is kept, and how to ask us about it.

Last updated:

Who this policy covers

Three different people meet Yusrin, and what we hold about each one is different. Find yourself here first, because the rest of this page is organised the same way.

A visitor to this website, who has no account. A business using the app, who signs in and issues documents. And someone who opens an invoice or quote link that a business sent them, who has no account and never installed anything.

There is a fourth case that matters. If a business issued you an invoice using Yusrin, your name and contact details are in their account because they entered them. We hold that data for them, not about you, and we cannot correct or delete it on your instruction. Ask the business that issued the invoice. They can change it themselves, and if they need help doing it we will help them.

If you are visiting this website

The marketing pages set no analytics cookies and no advertising cookies. Nothing on them tracks you between sites.

The only form is the waitlist. Submitting it sends what you typed, and nothing else from your browsing.

The waitlist form

Submitting the waitlist form stores exactly these:

  • Your name
  • Your email address
  • Your phone number, if you provide one. It is optional.
  • Your business type, if you select one. It is optional.
  • The page you submitted from, and whether you were reading in Arabic or English
  • A hash of your IP address, not the address itself
  • Your browser’s user-agent string

Why the IP address is hashed

The hash exists to stop one source flooding the form. It is a one-way value: it can be compared against a later submission from the same address, but the address cannot be recovered from it.

Storing the address itself would work identically for that purpose and would keep a piece of personal data we have no other use for, so we do not.

Spam protection

The waitlist form is protected by Cloudflare Turnstile, which checks that a submission comes from a person rather than a script. Turnstile receives the information it needs to make that check and returns a verdict. It is used instead of a system that profiles visitors across sites.

If you use the app: your account

You sign in with Apple or Google, or with an email address and password. We receive your email address from that sign-in. We never receive your Apple or Google password.

Your profile holds your name, your phone number if you enter one, and your language. Your business record holds its trading name, commercial registration number, VAT identification number, address, phone number, logo and stamp images, and the bank account details you choose to print on invoices.

Bank details on invoices

If you enter a bank name, account name, account number or IBAN, they are stored so they can be printed on the invoices you issue. That is the only thing they are used for.

Yusrin does not process payments, does not connect to your bank, and never initiates a transfer. These details are text that appears on a document, in the same way your address does.

The customer records you enter

When you add a customer, you enter their name, and optionally a contact person, phone number, WhatsApp number, email address, VAT identification number and address. Yusrin stores that so it can appear on the documents you issue.

This is your data about your customers. We hold it on your behalf and do not use it for anything of our own. We do not contact your customers, and we do not build any profile of them.

Crash reports and product analytics

When the app crashes or hits an error, a crash report goes to Sentry. It carries your account identifier, which is a random identifier that means nothing outside our own database, and the identifier of your business. It does not carry your name or your email address.

Before any crash report leaves your device, it is filtered to remove bank account numbers, IBANs, VAT identification numbers, commercial registration numbers, contact details and sign-in tokens. This is a deliberate filter with tests behind it, not a side effect of how the reporting tool happens to behave.

Separately, the app records that certain things happened: a quote was created, an invoice was issued, a payment was recorded. These carry no names, no amounts and no document contents, and they are not linked to your account identifier. They tell us which parts of the product are used, and nothing about who used them.

Neither system records your location. Location lookup from IP address is switched off in both.

If someone sent you an invoice link

You do not have an account with us and you have not agreed to anything. The business that sent you the link is responsible for the document itself.

When you open the link, we record that the document was viewed, the date and time, a one-way hash of your IP address, your country, and your browser’s user-agent string. The IP address itself is never stored.

This exists so the business that sent the document can see that it arrived and was opened. We do not use it to identify you, we do not set advertising cookies, and we do not track you to other websites.

Who else processes this data

Yusrin runs on services operated by other companies. Each receives only what it needs, and each is listed here with where it processes data:

  • Supabase, in the European Union (Ireland). The database, sign-in, and stored files including logos, stamps and generated PDFs.
  • Apple, as seller of record for subscriptions. Apple takes the payment and sends you the receipt. We never receive your card details.
  • RevenueCat, in the United States. Receives your account identifier and your subscription state so the app knows whether your subscription is active. It receives no document data, no customer data and no bank details.
  • Sentry, in the European Union (Germany), for crash reports, filtered as described above.
  • PostHog, on its European host, for the product events described above.
  • Vercel and Cloudflare, which serve this website and protect it from abuse.
  • A PDF rendering service we operate on Railway, in the European Union (Netherlands). Your document is sent to it, converted to a PDF, and returned. It keeps no copy.
  • Google and Apple, if you choose to sign in with them. They confirm your identity to us and tell us your email address.

Data leaving Oman

Most of your data is stored in the European Union, in Ireland. Crash reports go to Sentry in the European Union, in Germany. Product events go to PostHog on its European host. PDFs are rendered in the European Union, in the Netherlands.

Subscription state is processed in the United States by RevenueCat. That is the one transfer outside the European Union, and it carries your account identifier and your subscription status only.

Where personal data of people in Oman is processed outside Oman, that transfer is subject to Oman’s Personal Data Protection Law. We have stated the locations plainly so you can judge them rather than discover them.

Keeping your data separate from other businesses

Each business can read only its own data. That is enforced by the database on every table rather than by the application asking politely, and the mobile app never holds a key capable of reading across businesses.

A document link you share is a long random address that cannot be guessed, and it can be revoked. Anyone holding the link can view that one document, so treat it as you would the document itself.

Deleting your account, and what is kept

You can request deletion from inside the app. Your account is scheduled for deletion after fourteen days, and signing in again during that period cancels the request. After it passes, your sign-in and profile are removed, along with any business that never issued a document.

A business that has issued tax invoices is kept, detached from you, because the Regulations require those records to be kept for ten years, or fifteen for records relating to real estate. That obligation belongs to the business. Deleting an issued invoice on request is not something the law permits us to offer.

Deleting your account does not cancel your Apple subscription. Only Apple can cancel it, from Settings, your name, then Subscriptions on your device. This is worth doing before you delete the account, because afterwards it is harder to find.

Security

Data is encrypted in transit. Access rules are enforced by the database on every table. The key that can read across businesses exists only on our servers and is never in the app on your phone. Files such as logos, stamps and PDFs are private and reachable only through short-lived links.

We do not claim any security certification, because we hold none. What is described here is what the software does.

Your rights

You can ask what we hold about you, ask for it to be corrected, ask for it to be deleted, or withdraw consent to be contacted. Email us and we will act on it.

Removing yourself from the waitlist is immediate and needs no reason. Ask, and the row is deleted.

If a business issued you an invoice through Yusrin, ask that business rather than us. We hold their records on their behalf and cannot change them on your instruction.

Who is responsible for your data

Yusrin is operated by Horizon Path SPC, a company registered in the Sultanate of Oman. Horizon Path SPC is the controller for the data described in this policy, other than the customer records a business enters, where the business is the controller and we act on its behalf.

Write to support@yusrin.app for anything in this policy, including a request to access, correct or delete your data. Write in Arabic or English.

Changes to this policy

If this policy changes in a way that affects what is collected or where it is kept, the date at the top of this page changes with it.