Who we are
Ferret Ledger is a billing-check service for subscription brands, based in New Zealand. “We” and “us” means Ferret Ledger. You can reach us at hello@ferretledger.com about anything in this policy.
The short version
- Our access to your Stripe account is read-only. We can’t charge, refund, cancel or change anything.
- We use your data only to check your billing and show you the results.
- We don’t sell data, use it for advertising, or contact your customers.
- You can remove our access at any time, and ask us to delete everything.
What we read from Stripe
When you connect Stripe, you approve read-only access to these records in your account:
- subscriptions, including their status, dates, cancel and pause settings, and prices
- invoices: amounts, dates and payment status
- charges and refunds: amounts and refunded amounts
- customers: their Stripe ID, name and email address
- products and prices: names and amounts
- subscription change events: cancels, pauses and resumes, and when they happened
We don’t receive card numbers or bank details. Stripe never shares those with apps.
What we keep
- Your connection. Stripe gives us a token that lets us read the records above. We store it encrypted and use it only for the daily check.
- Each check’s results. These include the charges we looked at, what we found, and the names and emails of the customers involved, so you can see who each finding is about.
- A record of subscription changes. Stripe only keeps change events for about 30 days. We copy cancels, pauses and resumes into a tamper-evident record so that older changes can still be checked. This record holds Stripe IDs, dates and statuses.
- Monthly statements. These summarise each month, and are sealed so they can’t be changed later.
- What you tell us. Your brand name, your time zone, and your email if you give it.
- A sign-in cookie. After you connect, a cookie keeps you signed in to your own page for up to 30 days. It’s needed for the site to work. We don’t use advertising or tracking cookies in the app.
If you run a one-off check by uploading files or pasting a read-only key, the files and the key are used for that check only and are not stored.
How we use it
We use it only to run your billing checks, keep your change record, produce your reports and statements, and contact you about findings or your account. We don’t use your customers’ details for anything else, and we never contact them.
Who else handles it
- Render hosts our app and database, in Singapore.
- Stripe provides the connection to your account.
- Shopify hosts our marketing website, ferretledger.com, which is covered by Shopify’s own cookie and privacy practices.
- Our email provider, if you write to us.
We share data with no one else, unless the law requires us to.
Your customers’ information
Your customers’ details come from your Stripe account, and we hold them on your behalf so we can check your billing. You stay responsible for your relationship with your customers, including telling them how their information is used by the services you choose. If one of your customers asks us about their information, we’ll pass the request to you.
How long we keep it, and deleting it
We keep your data while you use Ferret Ledger, so your statements and change record stay complete and checkable. To stop us reading your account, uninstall the Ferret Ledger app in Stripe (Settings → Installed apps). Access stops straight away. To have everything we hold about your brand deleted, email hello@ferretledger.com from the address we know you by, and we’ll delete it within 30 days and confirm when it’s done.
Keeping it safe
Everything travels over HTTPS. Stripe access tokens are encrypted when stored. Our access is limited to read-only permissions, which Stripe enforces. Only Ferret Ledger can see your data.
Your rights
You can ask to see or correct the information we hold about you, or to have it deleted, by emailing us. We follow the New Zealand Privacy Act 2020. If you’re not happy with how we handle a privacy concern, you can complain to the Office of the Privacy Commissioner at privacy.org.nz. If you’re in the EU or UK and need a data processing agreement, email us.
Changes
If we change this policy, we’ll update the date at the top. If the change is significant, we’ll email connected brands before it takes effect.