Legal
Privacy policy
Still Out handles other people's financial documents. This page says plainly what we hold, where it lives, and when it is deleted.
Last updated 11 September 2026.
Who this covers
Two kinds of people use Still Out, and the policy treats them differently.
- Bookkeepers hold an account with us. For their own account data we are the data controller.
- Clients are the people a bookkeeper asks for documents. They never create an account. For the documents and details a bookkeeper collects through Still Out, the bookkeeper is the controller and we are their processor — we handle that material on their instructions only.
What we collect
| Bookkeeper account | Email address, and a Google account identifier if you sign in with Google. We never receive your Google password. |
|---|---|
| Client records | The client name and contact email a bookkeeper types in, plus the list of documents requested for a month. |
| Uploaded documents | The files a client uploads — typically receipts, bills, and bank statements — with the filename, size, upload time, and the result of our date and file-type check. |
| Technical data | Session cookies, and short-lived counters used to rate-limit uploads and sign-in attempts. |
We do not run advertising, we do not use third-party analytics or tracking cookies, and we do not sell or share personal data with anyone for marketing.
What we do with it
- Show the bookkeeper what is still missing for the month they are closing.
- Send the request link and reminders to the client's contact email.
- Read the date on an uploaded document, so a July statement sent for August can be flagged before it becomes another follow-up. This check runs on Cloudflare Workers AI. The file is processed to read that date and is not used to train any model.
- Email the bookkeeper about their own account — reminders that files are about to be deleted, and service or billing notices.
The legal bases, where the UK and EU GDPR apply, are performance of a contract for running the service, and legitimate interests for keeping it secure and preventing abuse.
Where it lives
Still Out runs entirely on Cloudflare. Documents are stored in Cloudflare R2, account and request records in Cloudflare D1, and email is sent through Cloudflare Email. Data is encrypted in transit and at rest. Cloudflare is our only infrastructure sub-processor; Google is used only if you choose Google sign-in.
How long we keep it
- Uploaded documents are deleted seven days after the most recent upload for that month. Deletion removes the file from storage; we keep the filename and status so the bookkeeper's record of the month still reads correctly.
- An upload link only uploads. It cannot browse or download, and it is scoped to the browser that opened it, so a forwarded link exposes nothing.
- Account and client records are kept while the account is open, and deleted within 30 days of the account being closed.
- Sign-in sessions and rate-limit counters expire on their own, within days.
Your rights
You can ask us for a copy of your data, ask for it to be corrected, or ask us to delete your account and everything in it. Email hello@stillout.xyz and we will act within 30 days. If you are a client rather than a bookkeeper, ask the bookkeeper who sent you the link first — the documents are theirs to control — and write to us if that goes nowhere.
Where the UK or EU GDPR applies, you also have the right to complain to your local data protection authority.
Children
Still Out is a tool for bookkeeping practices. It is not intended for anyone under 16 and we do not knowingly collect their data.
Changes
If this policy changes in a way that matters, we will email account holders before it takes effect and update the date at the top of this page.
Contact
Privacy questions go to hello@stillout.xyz.