Privacy Policy

Last updated: 16 January 2026

1. Introduction

Welcome to Neevii. We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered accounting and tax filing application.

By using Neevii, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our service.

2. Information We Collect

2.1 Personal Information

We collect the following types of personal information:

  • Account Information: Name, email address, company name, phone number
  • Authentication Data: Google OAuth credentials (we do not store your Google password)
  • Tax Information: UTR (Unique Taxpayer Reference), National Insurance Number, company registration number, VAT number
  • Company Details: Business address, PAYE reference, Accounts Office reference
  • Payment Information: Processed securely through Stripe (we do not store full card details)

2.2 Financial Data

When you connect your bank account through our Open Banking integration:

  • Bank Account Information: Account names, account numbers, sort codes, balances
  • Transaction Data: Transaction history, amounts, dates, merchant names, descriptions
  • Bank Connection Metadata: Connection status, last sync time, institution name

Note: We access this data through Yapily, our Open Banking provider, with your explicit consent. You can revoke this access at any time.

2.3 Tax Filing Data

  • Corporation Tax (CT600) returns and calculations
  • Self Assessment (SA100) returns and calculations
  • VAT returns and submissions
  • Payroll data (RTI submissions, employee information)
  • HMRC submission history and responses

2.4 Usage Data

  • Log data (IP address, browser type, pages visited, time spent)
  • Device information (device type, operating system)
  • AI chat conversations and interactions
  • Feature usage and preferences

3. How We Use Your Information

We use your information for the following purposes:

  • Provide our service: To enable tax calculations, filing, and accounting features
  • Transaction Categorization: To automatically categorize bank transactions for tax purposes using AI
  • Tax Filing: To prepare and submit tax returns (CT600, SA100, VAT) to HMRC on your behalf
  • AI Assistant: To provide personalized accounting and tax advice through our AI chat feature
  • Account Management: To create and manage your account, process payments, and provide customer support
  • Communication: To send you service updates, tax deadline reminders, and important notifications
  • Compliance: To comply with legal obligations and tax regulations
  • Improvement: To analyze usage patterns and improve our service
  • Security: To detect, prevent, and address fraud, security issues, and technical problems

4. How We Share Your Information

We share your information with the following third parties:

4.1 Service Providers

  • Yapily: Open Banking provider for secure bank account connections and transaction data
  • Stripe: Payment processing for subscription management
  • Supabase: Database hosting and authentication services
  • Railway: Application hosting and infrastructure
  • Amazon SES: Email delivery for invoices and notifications
  • Google: OAuth authentication (Google Sign-In)

4.2 Government Authorities

  • HMRC: We submit tax returns and filings on your behalf as part of our service
  • Legal Requirements: We may disclose information if required by law or in response to valid legal requests

4.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.

We do not sell your personal information to third parties.

5. Data Security

We implement industry-standard security measures to protect your information:

  • Encryption: All data is encrypted in transit (TLS/SSL) and at rest
  • Access Controls: Strict access controls and authentication requirements
  • Row-Level Security: Database-level security policies ensure users can only access their own data
  • Secure Infrastructure: Hosted on secure, compliant cloud platforms
  • Regular Audits: Regular security assessments and updates
  • Open Banking Standards: Compliance with FCA and Open Banking security requirements

However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

6. Data Retention

We retain your information for as long as necessary to:

  • Provide our service to you
  • Comply with legal obligations (e.g., tax records must be kept for 6 years in the UK)
  • Resolve disputes and enforce our agreements

When you close your account, we will delete or anonymize your personal information within 30 days, except where we are required by law to retain it (e.g., tax filing records).

7. Your Rights

Under UK GDPR and data protection laws, you have the following rights:

  • Access: Request a copy of the personal information we hold about you
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information (subject to legal retention requirements)
  • Portability: Request a copy of your data in a machine-readable format
  • Restriction: Request restriction of processing in certain circumstances
  • Objection: Object to processing of your personal information
  • Withdraw Consent: Withdraw consent for bank account access or other consented processing

To exercise these rights, please contact us at privacy@neevii.com

8. Delete Your Account

You have the right to request deletion of your Neevii account and all associated personal data. Here's how the process works:

How to Request Account Deletion

To delete your account, please email us at support@neevii.com with the subject line "Account Deletion Request" and include:

  • The email address associated with your Neevii account
  • Your name as it appears on the account
  • Confirmation that you wish to permanently delete your account and all data

What Gets Deleted

  • Your user profile and account information
  • Bank connection authorizations (revoked through Yapily)
  • Uploaded CSV transaction data
  • Invoices and client records
  • AI chat conversation history
  • User preferences and settings

Data We Must Retain

Under UK law, we are required to retain certain records for legal and regulatory purposes:

  • Tax filing records: HMRC requires tax returns and supporting documents to be kept for at least 6 years
  • Transaction logs: For filed tax returns, transaction summaries may be retained as part of the tax record

Processing Time

We will process your deletion request within 30 days. You will receive a confirmation email once your account has been deleted. If you have an active subscription, it will be cancelled and you will not be charged further.

9. Bank Account Consent

When you connect your bank account through Yapily (our Open Banking provider):

  • You explicitly consent to us accessing your account information and transaction history
  • This consent is managed through Yapily's secure OAuth flow
  • You can view which accounts are connected in your Neevii settings
  • You can revoke access at any time by disconnecting your bank in settings
  • Consent typically expires after 90 days and requires re-authorization
  • We only access data necessary for tax calculations and accounting features

10. Cookies and Tracking

We use cookies and similar technologies to:

  • Maintain your session and keep you logged in
  • Remember your preferences and settings
  • Analyze usage patterns and improve our service
  • Provide security features

You can control cookies through your browser settings. However, disabling cookies may affect the functionality of our service.

11. Children's Privacy

Our service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

12. International Data Transfers

Your information may be transferred to and processed in countries outside the UK/EEA where our service providers are located. We ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses (SCCs) with service providers
  • Adequacy decisions by the UK/EU for certain countries
  • Compliance with UK GDPR requirements for international transfers

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last updated" date
  • Sending you an email notification (for significant changes)

Your continued use of the service after changes become effective constitutes acceptance of the updated Privacy Policy.

14. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

This Privacy Policy is effective as of the date stated above and applies to all users of the Neevii service.

    Neevii - AI Accounting Assistant