What Qufy stores

What stays only in your browser, and what Qufy keeps on its server for your account, your workspace, client links, and devices.

Some things never leave your browser. Drafts, your language, and the handoff from the rate calculator to an invoice or contract are kept in this browser’s storage. Qufy does not receive them unless you save the work to your account, paste text into the assistant, or send a client link. Calculator drafts are discarded after 30 days.

When you have an account, Qufy stores what you enter so you can come back to it. The full list is on the privacy policy at /privacy.

Good to know

  • Your account: name, username, email, language, and a hashed password. Qufy never stores the password itself.
  • Your profile and business: business name, address, tax ID, default rate, currency, payment details, logo, weekly hours target, and your answers to the setup questions (profession, country, how you charge).
  • Your workspace: clients, projects, quotes, invoices, contracts and their earlier versions, time entries, reminders, and notifications.
  • Imports: the rows you import become clients, projects, invoices, or time like any others. Qufy also keeps a record of each import (what it was, the file name, the number of rows, and the summary) so it can be undone. The file itself is read in your browser and is not stored.
  • Client links: the comments and responses your clients leave. When a client signs a contract, Qufy records the name they typed, the time, and their IP address as evidence of the signature, with the signature image and their browser’s details. That evidence stays with the document for as long as the document exists.
  • A link stops working after 14 days or when you turn it off, but its record, including any signature, IP address, and comments, stays with the document until you delete the document or your account.
  • Quote requests from your public profile: when someone uses “Request a quote”, Qufy stores their name, email, WhatsApp and company if they give them, the service, budget, and timeline they pick, and their message, and shows them to you in Requests so you can reply. GRW Lab keeps them for you. You can delete a request at any time with “Delete request”; all requests are deleted with your account, and a declined request is deleted 12 months after you declined it.
  • Signed-in devices: for each one, the browser or device name and when it was last used. The Mac app keeps its sign-in in the Mac’s keychain.
  • Cookies: only the ones needed to run the site, such as keeping you signed in for 30 days, your language, your time zone, and the hidden “Get started” card. None are for advertising.
  • How long things are kept: a daily cleanup deletes operational logs after 90 days, expired sign-ins 30 days after they expire, invite records 90 days after use or expiry, declined quote requests 12 months after they were declined, and waitlist entries after 12 months. Qufy’s server logs are kept for 30 days. Your workspace stays until you delete it.
  • Rate index (opt-in): if you choose “Share anonymously” under “Help build the Qufy rate index: share my rates anonymously” in Settings under Business, each quote you send and each hourly rate you save adds one anonymous row: your profession, country, currency, pricing model, the rate or total, and the month. It never includes your name, email, account, clients, document titles, or anything you typed, and it is stored apart from your account with no link back to it. Nothing is shared until you choose it. Choosing “No thanks” stops new rows at once; rows already shared cannot be traced back to you, so they cannot be found or removed for one person. No rate from the index is shown to anyone until there are enough rows for each country and profession.
  • To see your data, use “Export my data” in Settings under Account. It downloads a JSON file.

Last updated 8 Oct 2026

Was this helpful?