Legal
Privacy Policy
Last updated: 10 August 2026
1. Who is responsible for your data
MIKRO Quotes, Portugal, is the controller for account, billing, support and website data. Contact privacy@mikroquotes.com. Business customers are normally controllers of the client information they enter in quotes; we process that information to provide the service.
2. Data we process
We process account and contact details, company profile and logo, client and quote content, catalog and inventory data, support communications, login/security records, device and request information, and Stripe payment references and subscription status. For quote acceptance, we may also process the signer name and email, final signature image or uploaded signed document, declared signing date, consent record, verification and acceptance times, authenticated uploader, an immutable quote copy, integrity hashes, IP address and limited browser information. We retain only the final signature image, not raw drawing dynamics. Stripe processes card details directly; we do not store full card numbers.
When you use job evidence features, we also store the documents, site photos, completion evidence, captions and file integrity hashes that you choose to upload. These files remain private unless you explicitly mark an individual file for the client progress page.
3. Purposes and legal bases
We process data to create and manage your account, produce and share quotes, prepare optional company and customer fiscal identities, verify and document quote acceptance, reserve inventory, provide support and process billing because this is necessary to perform our contract with the account holder. Acceptance evidence and security logs may also be preserved based on legitimate interests in preventing fraud and establishing, exercising or defending legal claims. We meet accounting, tax and legal duties where required by law. Optional analytics is used only after consent, which can be withdrawn at any time.
4. Sharing and processors
We share data only where needed with hosting, storage, email delivery, error monitoring, analytics (if accepted), and payment providers such as Stripe, under appropriate contractual safeguards. We may also disclose information where legally required. We do not sell personal data or use your clients for our own marketing.
5. International transfers
Some providers may process data outside the European Economic Area. Where applicable, we rely on an adequacy decision or approved safeguards such as the European Commission Standard Contractual Clauses. Contact us for information about safeguards relevant to your data.
6. Retention
Account and quote data is kept while the account is active and deleted or anonymised after account deletion, except where legal, fraud-prevention, dispute or backup obligations require limited retention. Verified acceptance records may be retained for the period reasonably necessary to document the customer agreement and establish, exercise or defend legal claims. Payment and invoice records may be retained for the legally required accounting period. Security logs are kept only as long as reasonably necessary for platform protection.
7. Public quote links
Anyone holding a public quote link can access its contents. Links use long random tokens and are marked not to be indexed by search engines, but you should still share them only with intended recipients.
8. Your rights
Depending on the circumstances, you may request access, correction, deletion, restriction, portability, or object to processing. You may withdraw consent without affecting earlier lawful processing. You can update or delete account information in the app or email us. We may need to verify your identity and normally respond within one month.
9. Complaints and contact
Contact us first at privacy@mikroquotes.com so we can help. You also have the right to complain to the Portuguese supervisory authority, Comissão Nacional de Proteção de Dados (CNPD), or your local EEA data protection authority.