GenFinovo
GenFinovo Privacy Policy
Last updated: 28 August 2026
GenFinovo is a quotations, invoices, payments and collections workspace for small businesses. Unlike KiraKira, it is a cloud workspace: data is stored with the Service and used in the browser. This policy explains what we collect, how we use it, and who else may receive it. It is not legal advice.
1. Who we are
GenFinovo is provided by S Factor Technologies (“we”, “us”). For privacy questions, contact sfactortechnologies@gmail.com.
This policy covers the GenFinovo web workspace, the customer portal, and related emails. When iOS and Android apps launch, they are intended to use the same business data; we will update this policy if that changes how information is handled.
2. Whose information this covers
GenFinovo holds two kinds of people in view:
- Workspace users — people who sign in with Business login (email and password) to run a business workspace, including team members on Business Pro.
- Customers — people a business adds to its customer list, puts on a document, or invites to the customer portal.
If you are a customer of a business that uses GenFinovo, that business decides what they enter about you and who they invite. We process that information to provide the Service to that business. Questions about why they invoiced you, or what they stored, should go to that business first.
3. Information we store
We store information you (or the inviting business) submit, including:
- Account details — email, name, phone if provided, password (stored in a protected form), and sign-in activity
- Business profile — name, registration numbers, tax and SST details, address, logo, contact information and document branding
- Customers, products and services — names, emails, phones, addresses, tax identification numbers and other fields you enter
- Documents and money records — quotations, invoices, payments, receipts, statements, line items, totals, statuses and PDFs
- Portal access — invited emails, which business granted access, and which customer record that access is tied to
- Plan and billing status for the workspace (not your full card number)
- Optional Malaysia e-Invoice settings and submission results, including fields such as MSIC code, when you use MyInvois
- Technical and activity logs needed to run the Service — for example sign-in time, invitations, document sends, and error reports
We do not collect your customers’ invoice payments. A payment you record (for example Bank Transfer) is a note you enter in the workspace.
4. How we use information
We use this information to:
- Provide the workspace, customer portal, documents, reports and notifications
- Authenticate Business login and send one-time codes for Customer login
- Send quotations, invoices, receipts, invitations and other messages you ask us to send
- Generate PDFs and honour secure document links you share
- Submit e-Invoices to LHDN MyInvois when you instruct us to
- Apply your plan, limits and billing
- Keep workspaces isolated so a business only sees data it is authorised to use
- Secure, troubleshoot and improve the Service, and meet legal obligations
We do not sell your data. We do not use advertising networks to profile GenFinovo users.
5. Customer portal
Portal users sign in with the invited email and a one-time code. They see documents for the business that granted them access, filtered to that customer. Draft and void invoices stay hidden.
The same email can be invited by more than one business. Each invitation is a separate access. Switching businesses in the portal shows only that business’s documents — never a mixed list. If only one business invited them, they cannot see another business’s invoices.
The inviting business is responsible for who they invite and for revoking access. Portal users should protect their email inbox and one-time codes.
6. Sharing and third parties
We share information only as needed to operate GenFinovo:
- Cloud hosting and storage providers that run the Service
- A transactional email provider, so we can deliver one-time codes, invitations and documents you send
- Stripe, to process workspace subscriptions (see Billing below)
- LHDN MyInvois, when you submit an e-Invoice (see Malaysia e-Invoice below)
- People you choose — team members you invite, portal users you invite, and anyone who receives a PDF or secure link you share
- Professional advisers or authorities if the law requires it, or to protect the Service
Those providers have their own terms and privacy policies. Some may process information outside Malaysia. Anyone who has a secure document link or PDF you send may be able to view that document.
7. Subscriptions and billing
Paid plans are billed through Stripe Checkout and related Stripe billing tools. Stripe processes the payment method and billing details needed to subscribe, renew, retry a failed payment, and let you manage the subscription. GenFinovo stores subscription and plan status for the workspace. We do not receive your full payment card number.
See Stripe’s privacy policy for how Stripe handles payment information.
8. Malaysia e-Invoice
If you configure Settings → Malaysia e-Invoice, we send the invoice fields required for validation — including MSIC code and party details — to LHDN MyInvois when you submit. MyInvois returns a status that we store and show on the invoice.
You are responsible for the accuracy of those fields and for your duties to LHDN. Tax platforms may retain submitted documents under their own rules.
9. Cookies and sessions
The web workspace uses cookies or similar storage to keep you signed in and to protect the session. Customer login uses a short-lived one-time code sent by email rather than a password.
This marketing website does not require a GenFinovo account. The Service itself cannot be used without signing in.
10. How long we keep information
We keep workspace data while the business account is active so you can run quotations, invoices, collections and reports. After you close a workspace or ask us to delete it, we delete or anonymise information we no longer need, unless we must keep it — for example subscription records, security logs, or e-Invoice history that tax rules require us to retain.
Export or download documents you need before you close a workspace. We cannot recover a forgotten Business login password; use Forgot password.
11. Your choices
You can:
- Update Business Profile, customers and documents in the workspace
- Invite or remove team members and portal users
- Choose whether to send email, share links, or submit e-Invoices
- Manage or cancel a paid plan from Settings → Plan & Billing
- Request a copy, correction or deletion of personal information we hold by emailing sfactortechnologies@gmail.com
If you are a portal customer, start with the business that invited you. We may need to involve that business before changing or deleting customer records they entered.
Where a privacy law in Malaysia or your country gives you additional rights, those rights still apply.
12. Children
GenFinovo is intended for adults and business use. It is not directed at children under 13 (or the equivalent age in your country). Do not use the Service to store information about children.
13. Changes
We may update this policy when the Service or legal requirements change. The “Last updated” date will change when material updates are made. Continued use after an update means you accept the revised policy. If you do not agree, stop using GenFinovo.
14. Contact
For privacy questions, contact S Factor Technologies at sfactortechnologies@gmail.com. Product help is also on GenFinovo support.
This policy is written for users in Malaysia and elsewhere. Where a local privacy law gives you additional rights, those rights still apply.
