What we do with your data
Wisselpost keeps the proof of your contracts and tells you what changed. To do that, you send us personal paperwork. This page explains in plain language what we do with it, and what we don't.
Last updated: 1 October 2026
In short
- We only keep what's needed to track your contracts. We discard the rest.
- A forwarded email is held, encrypted, for at most 7 days. After that we only keep the relevant documents.
- Your documents are stored encrypted in the EU, with a separate key per account.
- We don't sell your data, don't use it for advertising, and no AI models are trained on it.
- This website uses no cookies, no analytics and loads nothing from third parties.
Who is responsible
Wisselpost is the controller of your personal data. Send privacy questions to privacy@wisselpost.com.
What data we use
- Your account
- Your email address and sign-in details. If you sign in with a passkey, we only store its public key; your fingerprint or face never leaves your device. If you sign in with Apple or Google, they give us your name and email address. We use them only to sign you in and recognise your account; we don't ask for access to your mailbox, calendar or any other Google or Apple data.
- What you forward
- The emails and attachments you send to your forwarding address, or upload in the app. From the relevant documents we extract details such as the provider, amounts, terms and dates, with a short quote from the document as proof.
- Your forwarding addresses
- The addresses you forward from and have confirmed. That's how we know a forwarded email really comes from you.
- Your subscription
- Which plan you have, until when, and your payments and invoices. You pay through Stripe, the App Store or Google Play; we never see full card or account numbers.
- Your device
- If you turn on notifications: a push token, so we can send a notification to your phone.
- Technical data
- Logs and metrics to keep the service reliable: timings, errors, identifiers and sizes. They never contain the content of your documents, quotes, subject lines or email addresses.
Why we use it
- To provide the service (performance of the contract): keeping and comparing your documents, telling you what changed, letting you sign in and managing your subscription.
- To keep the service safe (legitimate interest): preventing abuse, finding errors and fixing outages.
- Because the law requires it (legal obligation): we must keep invoices and payment records for 7 years for the Dutch tax authorities.
- Only with your consent: if you share a document to help improve Wisselpost. We ask per document, never once for everything. We first remove names, addresses and numbers. You can withdraw consent at any time, and we then delete the copy.
Discard by default
Not everything you forward is useful. We don't keep newsletters, promotions, personal mail or old messages below a forwarded email.
- An incoming email is first held in an encrypted quarantine for at most 7 days. It is then deleted automatically.
- From relevant email, we only keep the documents and the text without earlier messages.
- Email we discard is shown for 7 days in the app under ‘Recently discarded’ (subject, sender domain and reason). If it was important after all, you can restore it. After that we only keep a content-free marker to recognise duplicates.
How we use AI
We use AI models to read documents and extract details from them. These models run at Cloudflare (Workers AI) and are not trained on your documents. Whether something changed is decided by fixed rules, not by an AI model's opinion. Every value is linked to the place in the document it came from, so you can check it yourself. We don't make decisions about you; what you do with a change is up to you.
How long we keep data
| What | How long |
|---|---|
| Forwarded email as it arrives | At most 7 days |
| Discarded email | At most 7 days; then only a content-free marker |
| Your documents and the details extracted from them | As long as your account exists |
| After you delete your account | Your documents are unreadable immediately (we destroy the key). Recovery copies are gone within 30 days. |
| If your subscription ends | 14 days of full service, then view and export only. After 12 months, and three warnings, we delete your account. |
| Invoices and payment records | 7 years (legal obligation) |
| Technical logs (no content) | As briefly as needed to fix problems |
Security
- Your documents are stored encrypted, with a separate key per account.
- Each account's data is kept separate from other accounts.
- All connections are encrypted. You sign in with a passkey or an email sign-in link.
- Staff don't look at your documents. To help with a problem, we only do so with your permission, and that is recorded.
Who helps us
We work with a few companies that process data on our behalf. We have agreements with each of them on security and confidentiality. They only get what they need.
- Cloudflare
- Hosting the app and this website, storing your documents (in the EU), receiving forwarded email, and the AI models (Workers AI) that read documents.
- Amazon Web Services (Amazon SES)
- Sending email on behalf of Wisselpost, such as sign-in links. Sees your email address and the email we send you.
- Expo
- Delivering push notifications to your phone. Sees your push token and the notification text. By default a notification names no details, such as a provider or amount.
- Stripe
- Payments on the web (iDEAL, SEPA Direct Debit, card), invoices and VAT. Sees your email address and payment details.
- RevenueCat
- Keeping track of your plan, whether you pay on the web, in the App Store or on Google Play. Sees your purchases, no documents.
- Hosting for logs and monitoring
- Storing technical logs and metrics. These never contain the content of your documents or your email address.
If you pay in the app through the App Store or Google Play, Apple or Google are responsible for that payment.
Some of these companies are based in the United States. If data leaves the European Economic Area, this only happens with the safeguards the GDPR requires, such as the EU-US Data Privacy Framework or the European Commission's standard contractual clauses.
This website
wisselpost.nl uses no cookies, no analytics and no tracking, and loads no fonts, scripts or images from third parties. There is no form. Cloudflare processes technical data such as your IP address to serve the site and protect it from abuse. If you email us, we only use your address to reply.
Your rights
You have the right to:
- access your data and get a copy, including in a format you can take elsewhere;
- have incorrect data corrected;
- have your data deleted;
- object to, or ask us to restrict, the use of your data;
- withdraw your consent, if you gave it.
You can export your data and delete your account yourself in the app at any time. For anything else, email privacy@wisselpost.com. We reply within one month.
If you disagree with how we handle your data, you can complain to the Dutch Data Protection Authority, the Autoriteit Persoonsgegevens. We'd rather hear from you first, of course.
If this policy changes
If we change this policy, the date at the top changes. For important changes, we let you know by email in advance.