Privacy Policy
Last updated 29 August 2026
ProLedger holds a company’s books, which is about as sensitive as business data gets. This page is written to be read rather than to be defensible — plain sentences, the real list of who touches your data, and where it physically sits.
Who we are
ProLedger is operated by ProLedger Labs. This policy covers proledgerlabs.com and the ProLedger application at app.proledgerlabs.com.
ProLedger is business software. Most of the personal data inside it is not about you as a reader of this page — it is data about your customers, suppliers, and employees that you enter. For that data you are the controller and we are the processor: you decide what goes in and why, we store and protect it on your behalf.
What we collect
Account data. Your name, email address, and authentication details, handled by our authentication provider. We never see or store your password.
Business data. Everything you enter into the application — customers, suppliers, employees, quotations, invoices, payments, ledger entries, projects, and any files you attach. Attachments are stored in the database alongside the records they belong to, not in a separate file store.
Billing data. If you subscribe, your subscription status and renewal dates. Card details are handled by the payment provider and never reach our servers.
Operational logs. Server errors and request diagnostics, kept for troubleshooting. These can include the address of a page and the identifier of a record, but not the contents of your ledger.
Where your data is stored
ProLedger runs on a dedicated server hosted by Hostinger in Mumbai, India. Your business data — including attachments — is stored in a PostgreSQL database on that server, which is not reachable from the public internet.
If you are in the UAE, this means your accounting records are processed outside the UAE. We state it plainly because it may matter to you or to your auditors.
Backups are taken nightly and kept for fourteen days.
Who else processes your data
This list is deliberately short, and it is complete.
- Clerk
- Authentication and subscription management. Receives your email address and sign-in activity.
- Stripe
- Payment processing, through Clerk. Receives your billing details. We do not receive or store card numbers.
- Google Maps Platform
- Address autocomplete. When you type an address, the characters you type are sent to Google to return suggestions. Nothing else from your account is sent, and it runs only while you are typing in an address field.
- Hostinger
- Server hosting, as described above.
What we do not do
We do not sell your data. We do not share it with advertisers. We do not use your business records to train machine-learning models.
We do not currently run analytics or tracking inside the application. If that changes, this page changes first.
Your rights, and how to use them
You can export or erase the personal data of any individual in your system yourself, from Data Privacy inside the application. Export produces a machine-readable file of everything held about that person. Erasure anonymises their personal details while keeping the transactional records your accounts and tax filings depend on.
You can also set a retention period per data type and purge records that are past it.
For data we hold about you as an account holder — rather than data you entered — write to us and we will action it.
Security
Traffic is encrypted in transit. The database accepts connections only from the application on the same machine and is not exposed to the internet. Access to the server is by key only.
No system is perfectly secure, and we would rather say so than imply otherwise. If we become aware of a breach affecting your data, we will tell you.
Changes to this policy
If this policy changes materially, the date at the top changes and we will say what changed rather than quietly replacing the text.
Questions about this policy, or a request about your data: info@proledgerlabs.com