BizDocFlow Privacy Policy
Learn what account, billing, analytics, form, and generated-document data BizDocFlow processes and how it is used.
Last updated: 2026-07-11
BizDocFlow processes only the information needed to provide accounts, document generation, exports, support, service reliability, and abuse prevention.
Information We Process
- Account information such as name, email, authentication status, and workspace settings.
- Form fields and generated document drafts that users create or save.
- Brand profile details entered by signed-in users.
- Technical data such as browser, device, page URL, status code, error code, and request metadata.
- Support messages and privacy requests submitted by users.
How We Use Information
Data is used to generate documents, save history, provide exports, answer support requests, improve reliability, detect abuse, and comply with applicable obligations.
Document and AI Processing
Users control the information they enter into generators. Avoid entering unnecessary sensitive data. Saved drafts can contain business, employee, client, pricing, or policy information and should be reviewed before sharing.
BizDocFlow uses Cloudflare Workers AI for AI-assisted document generation. Non-structured generators can send the document type and submitted form fields to Workers AI so a draft can be written. Those fields may include names, client details, employee details, compensation text, service scope, contract terms, reimbursement details, and meeting notes if you enter them.
Quote, estimate, work order, and meeting minutes tools use deterministic local generation for calculations, statuses, line items, totals, and action records. Those structured tools do not ask AI to recalculate amounts or invent owners, dates, or decisions.
BizDocFlow does not log complete document bodies for routine error monitoring. Error records should contain route, status, error code, request identifier, and build identifier rather than full form payloads.
Cloudflare states that Workers AI inputs and outputs are not used to train models and are not retained by Cloudflare after processing. BizDocFlow may keep saved drafts in its own database when a signed-in user generates or saves a document.
Production Service Providers
| Category | Provider | Purpose | Data processed | |---|---|---|---| | Hosting / edge | Cloudflare Workers | Run the website and API at the edge | IP address, request metadata, page URL, user agent, and technical logs | | Database / storage | Cloudflare D1 and Workers Assets | Store accounts, sessions, saved drafts, brand profile data, and static assets | Account records, saved document fields, generated drafts, brand profile fields, and site assets | | Authentication | better-auth operated inside BizDocFlow infrastructure | Provide sign-in, sessions, verification, and account security flows | Email address, account identifiers, authentication records, and session identifiers | | AI processing | Cloudflare Workers AI | Generate AI-assisted business document drafts | Document type and form fields submitted for the selected generator | | Monitoring | Cloudflare Workers Observability | Monitor availability, diagnose failures, and prevent abuse | Request metadata, route, status code, build identifier, error code, and technical logs |
BizDocFlow does not currently list a separate payment processor, transactional email provider, or analytics provider in this production service table. If those services are enabled later, this policy should be updated before the new provider processes production user data.
Data Retention
| Data type | Current rule | |---|---| | Free saved drafts | 7 days according to the Free plan entitlement shown in the product | | Pro saved documents | While the account remains active, unless deleted by the user or retained for security, dispute, or legal reasons | | Support messages | Up to 730 days unless a longer period is needed for an active request, security issue, or legal obligation | | Analytics events | No separate third-party analytics retention applies in the current production service list | | Error and request logs | Typically up to 30 days for operational troubleshooting and abuse prevention | | Deleted account grace period | Up to 30 days before routine deletion is completed, except for records that must be retained for security, legal, or dispute reasons |
Cookies and Analytics
BizDocFlow uses cookies or similar storage for sessions, security, preferences, and product operation. BizDocFlow does not currently list a separate analytics provider in the production service table.
Your Rights and Requests
You may request access, correction, export, deletion, or account deletion by emailing privacy@bizdocflow.com. BizDocFlow may need to verify the account email or request additional information before acting on a request. BizDocFlow aims to respond to privacy requests within 30 days, unless a longer period is allowed or required by applicable law.
Account and Document Deletion
Signed-in users can delete saved documents from their workspace where the product provides deletion controls. Account deletion requests can be sent to privacy@bizdocflow.com. Some records may be retained when needed for security, fraud prevention, dispute handling, accounting, tax, or legal compliance.
International Processing
BizDocFlow is operated through Cloudflare infrastructure and may process data in locations where Cloudflare and BizDocFlow operate. By using the service, you understand that information may be processed outside your country or region.
Contact
For privacy questions or requests, email privacy@bizdocflow.com with enough detail to identify the account and request. For general product support, use support@bizdocflow.com.
