Security & Data Retention Policy

Last updated: 9 July 2026

This policy summarizes how Stip protects data and how long we keep it. It supports our commitments under the Privacy Policy and applicable EU/Dutch law.

1.Hosting & location

Stip runs on EU infrastructure. Application data is stored in the European Union, and we design integrations to keep guest and receipt data within the EU wherever possible.

2.Encryption

Data is encrypted in transit (TLS) and at rest. Access to production systems is restricted, authenticated, and logged.

3.Access control & tenancy

Each merchant's data is isolated per tenant, enforced at the database layer with row-level security. Staff access to production is limited to what is needed to operate and support the service.

4.Data retention

Receipt data is retained while your account is active so guests can access their receipts and you can meet bookkeeping obligations. Per-tenant retention policies can shorten this on request.

On account closure, personal elements of old receipts are deleted or anonymized on a rolling schedule, subject to any statutory retention period (Dutch tax law generally requires financial records to be kept for seven years).

5.Guest anonymity

The receipt flow does not require guest accounts and does not collect guest names, e-mail addresses or card details. Bill-splitting and wallet passes are handled by the guest's own device and provider.

6.Incident response

We monitor the service and maintain an incident process. Where a personal-data breach is likely to affect your guests or you, we notify affected merchants and, where required, the Dutch Data Protection Authority within the statutory timeframe.

Questions? Contact us at legal@getstip.com.

Stip · KVK 99148900 · BTW NL005373753B11 · Eindhoven, NL