Legal center

Privacy policy

Explains what information we process, why we use it, who receives it, and how to exercise your rights.

Last updated: July 28, 2026

1. Scope and controller

This policy applies to the public website, registration, support, account, and Credi Contable software. The controller is Credi Contable, established at Calle 14A # 50-68, Cali, Valle del Cauca, Colombia, email soporte@credicontable.online, WhatsApp +57 300 122 4333. It processes account holder data to provide, secure, and bill the service.

When a business customer enters borrower, worker, or route data, that customer determines the purposes and is the controller; Credi Contable acts as its processor or service provider. The customer must have a valid legal basis and provide required notices.

2. Information we collect

We process only information reasonably needed to operate the service.

  • Account and identity data: name, business, email, phone, optional tax document, address, and protected credentials.
  • Customer-entered lending data: names, identifiers, phones, addresses, location, loans, installments, payments, arrears, and borrower ratings.
  • Workers and routes: roles, permissions, assignments, customers, and route capital.
  • Technical and security data: IP, device, timestamps, sessions, login attempts, logs, and action audit trails.
  • Support and payment references received from Paddle. Credi Contable does not store full card numbers or security codes.
  • Essential preferences for sessions, registration, active business, and public language. We do not use behavioral advertising cookies.

3. Purposes and legal bases

We use data to create and authenticate accounts, perform the contract, operate lending records, provide support, administer subscriptions, prevent fraud, protect the service, comply with law, and defend claims.

Depending on the country, legal bases include contract, pre-contract steps, consent where required, legal obligations, and legitimate interests such as security and abuse prevention. Credi Contable does not make lending decisions; any customer rating is a tool and the business makes the final decision.

4. Location, country, and language

The site may receive an IP and country code from the browser, proxy, or CDN to select language, display localized prices, and prevent fraud. A public IP may be sent to Paddle for a checkout-consistent price preview.

Borrower location is stored only when a business user records it for route planning. We do not continuously track people in the background.

5. Payments and recipients

Paddle is the Merchant of Record for charges, taxes, invoicing, refunds, and chargebacks and applies its own privacy policy. Strictly necessary hosting, database, email, authentication, or support providers may also process data.

Providers may use data only for contracted services with appropriate safeguards. We do not sell personal information or share it for cross-context behavioral advertising.

6. International transfers

Service providers may process data outside a person's country. Where required, we rely on adequacy decisions, contractual clauses, data processing terms, or equivalent safeguards. Business customers must assess rules applicable to the data they upload.

7. Retention

We retain data while an account is active and afterward only as needed for backups, security, tax or accounting duties, disputes, and statutory limitation periods. Exact periods depend on the data and country.

Account holders may request deletion or export a backup. Deletion may be delayed in rotating backups or by legal duties; retained data remains restricted until secure deletion.

8. Security

We use risk-based controls including password hashing, signed sessions, encryption of sensitive credentials, per-account database isolation, role permissions, rate limits, audit logs, and backups. No system is infallible; we will notify customers and authorities when legally required.

9. Your rights

Depending on your jurisdiction, you may request access, a copy, correction, deletion, restriction, objection, portability, withdrawal of consent, and review of automated decisions, and complain to a data protection authority. We verify identity and authority first.

EEA and UK residents have GDPR or UK GDPR rights. California residents may request to know, correct, or delete information and receive no discriminatory treatment; Credi Contable does not sell or share data for behavioral advertising. LGPD rights apply in Brazil, and applicable habeas data and local rights apply across Latin America.

10. Borrower or worker requests

If a business customer entered your data, contact that business first because it controls the information. Credi Contable will assist it when appropriate and may route your request to the relevant controller.

11. Children

The service is not directed to children and they may not create business accounts. Customers must not enter minor data unless lawful, necessary, authorized, and protected as required locally.

12. Controller identification

The controller of the personal data described in this policy is Santiago Bolívar Santacruz, a sole proprietor trading as Credi Contable, established at Calle 14A # 50-68, Cali, Valle del Cauca, Colombia. For rights requests or privacy questions: soporte@credicontable.online.

13. Changes and contact

We may update this policy for legal, technical, or service changes. We will publish the new date and provide notice of material changes where required. Use the contact page for questions or rights requests; we respond within applicable legal deadlines.

Address and contact

Credi Contable is the software service available at credicontable.online, with its published address at Calle 14A # 50-68, Cali, Valle del Cauca, Colombia. When you buy a subscription you contract directly for the Credi Contable service; Paddle acts as Merchant of Record and processes payment, taxes, and invoicing on the seller's behalf.

Registered address
Calle 14A # 50-68, Cali, Valle del Cauca, Colombia
Country
Colombia