Legal
Last updated: 31 May 2026 · Applies to payflowai.io and app.payflowai.io
Welcome to PayFlowAI. This Privacy Policy explains how PayFlowAI FlexKapG, trading as PayFlowAI (“PayFlowAI”, “we”, “our”, or “us”) collects, uses, stores, shares, and protects your information when you use our website, platform, products, applications, and services (collectively, the “Services”).
By accessing or using the Services, you agree to the terms of this Privacy Policy. If you do not agree with this Privacy Policy, please do not use the Services.
PayFlowAI provides AI-powered accounts receivable, invoice tracking, payment reminder, collections workflow, and financial operations assistance software for businesses and professionals.
This Privacy Policy applies to:
This Privacy Policy does not apply where PayFlowAI processes personal data solely on behalf of a customer as a data processor under a separate agreement. In those cases, our processing is governed by the Data Processing Addendum (Schedule 1 to the Terms of Service) and the customer’s own privacy obligations.
PayFlowAI FlexKapG is the data controller for the personal information described in this Privacy Policy unless otherwise stated.
Contact Information
PayFlowAI FlexKapG, Doeblinger Haupstrasse 33/14, 1190 Vienna, Austria
Email: privacy(at)payflowai.io Website: https://www.payflowai.io
If you have questions regarding this Privacy Policy or your personal data, please contact us at privacy(at)payflowai.io.
We collect information you provide directly to us, information collected automatically through your use of the Services, and information from third parties.
Account Information
When you register or create an account, we may collect:
Financial and Invoice Data
When using the Services, you may upload or input:
Communications
When contacting us, we may collect:
Marketing Information
If you subscribe to newsletters, events, or marketing communications, we may collect:
When you use the Services, we automatically collect certain information.
Usage Information
This may include:
Device and Technical Information
This may include:
We use cookies and similar technologies to:
Types of cookies we use:
You may control cookies through your browser settings. Some Services may not function correctly if essential cookies are disabled. You may opt out of analytics and marketing cookies at any time through your account settings or by contacting us.
PayFlowAI uses artificial intelligence and machine learning technologies to provide features such as:
To provide AI-powered functionality, limited customer data may be processed by trusted third-party AI providers, including OpenAI, L.L.C.
This may include:
We require AI providers to:
Where possible, PayFlowAI implements zero-retention or limited-retention agreements with AI service providers. International transfers to AI providers outside the EEA are made subject to Standard Contractual Clauses (SCCs) adopted by the European Commission.
We use personal information to:
We are established in Austria and subject to the GDPR. If you are located in the European Economic Area (EEA), United Kingdom, or similar jurisdictions, we process your personal data based on one or more of the following legal grounds:
Purpose
Legal Basis
Providing the Services, account management
Performance of a contract (Article 6(1)(b) GDPR)
Improving the Service, fraud prevention, security
Legitimate interests (Article 6(1)(f) GDPR)
Marketing communications (where applicable)
Consent (Article 6(1)(a) GDPR)
Tax, accounting, legal compliance
Legal obligation (Article 6(1)(c) GDPR)
You may withdraw consent at any time where consent is the legal basis for processing. Withdrawal of consent does not affect the lawfulness of processing carried out before withdrawal.
We do not sell your personal information.
We share information with trusted service providers who process it on our behalf to provide the Services. These providers are contractually required to protect your data and are listed in Annex A to our Data Processing Addendum. Current providers include:
If PayFlowAI FlexKapG undergoes a merger, acquisition, restructuring, financing, or sale of assets, information may be transferred as part of that transaction. We will provide notice before your information is transferred and becomes subject to a different privacy policy.
We may disclose information where required to:
PayFlowAI FlexKapG is established in Austria (EEA). Some of our service providers are located outside the EEA.
Where required, we implement safeguards for international transfers, including:
You may request a copy of the relevant transfer safeguards by contacting privacy(at)payflowai.io.
We retain personal information only as long as necessary for the purposes for which it was collected, including:
Inactive accounts are reviewed periodically. Account data is deleted or anonymised within 90 days of account closure unless longer retention is required by law. You may request deletion at any time as set out in Section 12.
We implement industry-standard technical and organisational security measures, as described in Annex B to our Data Processing Addendum, including:
However, no system can guarantee absolute security. We encourage you to use strong passwords, enable multi-factor authentication, and secure your devices and email accounts.
Depending on your jurisdiction, you may have rights including:
To exercise your rights, contact: privacy(at)payflowai.io
We will respond to verified requests within 30 days. We may request verification of your identity before processing requests.
If you are not satisfied with our response, you have the right to lodge a complaint with the Austrian Data Protection Authority (Datenschutzbehörde): www.dsb.gv.at.
You may opt out of marketing communications at any time by:
You may still receive transactional or service-related communications even after opting out of marketing.
Our Services may contain links to third-party websites or services. PayFlowAI is not responsible for the privacy practices or content of third-party services.
We encourage you to review the privacy policies of any third-party services you access through the Service.
The Services are intended for business use and are not directed at individuals under the age of 18.
We do not knowingly collect personal information from children under 18. If we become aware that we have inadvertently collected such information, we will take prompt steps to delete it. Please contact privacy(at)payflowai.io if you believe we may have collected information from a child.
If you are a California resident, you may have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), including:
PayFlowAI does not sell personal information.
California residents may exercise their rights by contacting: privacy(at)payflowai.io
We will respond to verified requests within 45 days, as required by California law.
We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal requirements.
If material changes are made, we will notify you by:
The date of the most recent update is shown at the top of this Privacy Policy. Continued use of the Services after the effective date of changes constitutes acceptance of the revised Privacy Policy.
If you have questions, concerns, or requests relating to this Privacy Policy or your personal data, please contact us:
PayFlowAI FlexKapG Email: privacy(at)payflowai.io Website: https://www.payflowai.io/privacy
We aim to respond to all enquiries within 30 days.
Have a question about your data?
Contact us