Privacy Policy
Last updated 12 September 2026
The short version
We store what is needed to run your compliance calendar and nothing else. We do not sell your data, we do not use it to train anything, and we do not read your records except where you ask us to in order to support you.
What we collect
- Account details — your name, email address, a hashed password, and your role on each entity.
- Entity details — company name, TIN, VAT number and tax category, as entered by you.
- Compliance records — obligations, due dates, amounts, statuses and your notes.
- Documents — files you upload to the vault, with a cryptographic fingerprint of each.
- Payment references — the transaction reference, amount and status from Chapa. We never receive or store your card or Telebirr credentials.
- Technical records — sign-in sessions, and a security log of administrative actions.
Why we hold it
To operate the service you asked for: showing your calendar, sending deadline reminders, keeping your documents, and taking payment. We send deadline reminders by email; you can turn them off from any reminder, or in the application under Settings.
Where it is stored
In Cloudflare's infrastructure — a relational database for records, object storage for documents, and a key-value store for sessions. The database is provisioned in Cloudflare's Eastern Europe region, the closest available to Ethiopia.
How long we keep it
- Documents — a minimum of ten years from upload. This is an Ethiopian tax-law requirement, and the destruction date is calculated by the database rather than by the application, so it cannot be shortened.
- Compliance records — for as long as your entity exists on Gize, plus the retention period that applies to its documents.
- Sessions — until they expire or you sign out. Changing your password ends all of them immediately.
- Security log — retained so administrative actions can be reconstructed.
Who else sees it
Only service providers needed to run Gize, and only the minimum each requires: Cloudflare (hosting and storage), Chapa (payments), and an email provider (reminders, receipts and account emails). We do not sell data or share it for advertising.
Within a shared entity, other members can see that entity's records. Role determines what they can change: auditors are read-only.
Your rights
You can access your data, correct it, export it, and ask us to delete it. Deletion is honoured except where retention is legally required — which in practice means documents inside their ten-year window cannot be removed early, and we will tell you that rather than quietly comply.
How it is protected
- Passwords are stored as PBKDF2-SHA256 hashes with 100,000 iterations and a per-account salt — never in plain text and never reversible.
- Every document is fingerprinted and verified against the bytes received.
- Permissions are enforced on the server, not merely hidden in the interface.
- Changing your password immediately signs out every other session.
Contact
Privacy questions and requests: privacy@gize.et.