Delete it, and it’s gone. If you
remove your data, we remove it from our servers.
Private by default. Nothing you
add is public unless you decide to share it.
We built Docyt to make accounting easier, not to snoop on your
information.
What We Collect (and Why)
We only collect what’s needed to keep Docyt running smoothly and
securely:
Basic info: your name, email,
phone number, profile picture.
Device details: things like
browser type, system version, crash logs — so we can fix problems fast.
Location: approximate info (via IP
or WiFi). GPS only if you give us permission.
Contacts: if you allow it, we’ll
use your contacts to make sharing simpler.
Files you upload: documents,
receipts, reports, images. We store the files, plus basics like file name and size, so you can organize and search
them easily.
We also use cookies — the tiny
digital reminders that help us remember your preferences and improve your experience.
How We Use Your Data
Here’s how we put your data to work:
To log you in and deliver the reports and
tools you use every day.
To understand what features are most
helpful (using anonymized usage data).
To keep Docyt secure and block fraud or
abuse.
To send important updates, like product
changes or account notices.
No hidden agenda. No surprise usage.
AI and Your Data
Docyt uses Google Cloud Vertex AI (Gemini models) to power certain accounting automations. And here’s the key part:
Your data is never used to
train AI models.
We’ve set it up for zero
retention — no storing your requests or responses.
Everything is encrypted with
customer-managed keys.
All AI calls are encrypted, and
enterprise customers can choose private, extra-secure routing.
In short: you get AI power without giving up control of your
information.
How We Keep Things Secure
We take security seriously (without overcomplicating it):
Sensitive documents and credentials are
locked with AES-256 encryption.
Every connection uses TLS 1.2+
encryption.
Our team uses multi-factor
authentication and role-based permissions.
Every access to your data is logged and
reviewed.
We maintain SOC 2 Type II
compliance — independent proof that our security practices meet strict
standards.
Your data is encrypted on your device, in transit, and on our servers.
Your Choices
Delete files anytime. They’ll be
removed from Docyt servers.
Deactivate your account. Stops new
activity but keeps your past records accessible.
Opt out of marketing emails. Click
“unsubscribe” and you’re done.
You’re in control the whole way.
When We Share Data
We don’t sell your information. Ever. We may share limited data in these
cases:
If the law requires it.
To stop fraud or security
threats.
With trusted vendors (like hosting or
payment processors) who work under strict agreements.
If Docyt merges with or is acquired by
another company.
In anonymized or aggregated form for
research or product improvements.
SMS Communications and Mobile Data
Docyt may send SMS (Short Message Service) text messages to the phone number you
have provided in connection with your account. These messages are strictly transactional in nature and are used
exclusively to relay bank verification codes during Docyt’s automated bank statement retrieval process, in cases where
your financial institution requires two-factor authentication.No mobile information will be shared with third parties or affiliates for marketing or promotional purposes at
any time. Mobile opt-in data and consent are not shared with any third parties.Phone numbers collected for the purpose of SMS verification are used solely for
that verification purpose. Docyt does not use your mobile phone number for marketing communications, does not sell
your phone number to data brokers, and does not share your phone number with lead generators or any other third party
for commercial purposes. Standard message and data rates charged by your mobile carrier may apply to messages you
receive from Docyt.For information about how to opt out of SMS messages, how to request assistance, or
how to resubscribe after opting out, please refer to the “Docyt Bank Verification SMS Program” section of our
Terms of Service.
Who Can Use Docyt
Right now, Docyt is available in the U.S. only. If you’re outside the U.S., your
data may still be processed here under U.S. laws.
Children’s Information
This service is not intended for individuals under 18. We do not knowingly collect
personal information from anyone under 16. Children under 16 should not submit personal information to our Service or
Website. If you become aware that a minor has provided us with personal information without parental or guardian
consent, please contact us immediately.