Your report data stays yours.
This notice explains what Quarterly STR collects, why it is needed, which providers help process it, and how you can delete it.
Effective July 21, 2026Notice at collection
Quarterly STR collects account identity, STRO license and property details, booking activity, uploaded files, and limited technical data to analyze exports, generate report packs, prevent abuse, and provide account history. We do not sell personal information or share it for cross-context behavioral advertising.
Information we collect
Account information
When you create an account, you provide your name and email address and choose a password. We store a one-way password hash rather than the password itself, along with secure session records, the accepted Terms version and time, your profile, workspace membership and role, plan, access status, reminder choices, and account timestamps. Workspace members can see participant names and roles. Only workspace owners and administrators can see participant email addresses and pending invitation details.
Report and property information
We process the STRO license, tier, dwelling address, ZIP code, host and local-contact names, reporting period, reservation identifiers, dates, nights, status, platform, filenames, and validation results you provide. Guest names are not required and should not be uploaded.
Billing information
When you start Checkout or manage billing, Stripe collects and processes your payment-method details. Quarterly STR does not receive or store full payment card numbers or card security codes. We store your billing email, selected plan and billing status, limited Stripe customer, Checkout Session, subscription, invoice, charge, refund, or dispute identifiers, and related fulfillment and webhook-processing records. We use those records to provision access, prevent duplicate processing, troubleshoot payments, and handle refunds or disputes.
Technical information
We use strictly necessary guest and account session cookies, hashed access tokens, limited network identifiers such as IP addresses, request timestamps, and usage counts for authentication continuity, ownership migration, security, rate limiting, and coarse first-party product events such as starting the builder or requesting an export. Product events exclude booking rows, addresses, license numbers, filenames, and raw uploaded values. Quarterly STR does not use advertising or cross-site behavioral analytics.
Browser privacy signals and third-party tracking
Quarterly STR does not sell personal information, share it for cross-context behavioral advertising, or embed third-party advertising trackers. Because those activities do not occur, a browser Do Not Track or Global Privacy Control signal does not change the service's data handling. Providers used for hosting, account email, and customer-initiated billing process limited information only to provide those functions, as described below.
Private browser draft
Before you create or sign in to an account, Quarterly STR may keep your in-progress property details and the exact CSV or PDF files you selected in this browser's private IndexedDB storage and make that recovery copy available for up to 24 hours. This lets the builder survive the sign-in or checkout handoff. The draft is not synced to another device and its recovery copy is cleared after a successful saved report, explicit sign-out, or when you clear this site's browser data. After sign-in, the recovery copy is bound to that signed-in account in this browser so another Quarterly STR account cannot restore it. It becomes unusable after 24 hours; expired browser storage may remain until it is overwritten or the site data is cleared. Opening another tab or returning from sign-in or checkout does not consume the recovery copy.
How we use information
- Normalize booking exports and calculate report-period totals.
- Detect duplicates, overlaps, invalid dates, exclusions, and review items.
- Create private review records, neutral PDF supporting documents when ready, and normalized audit files.
- Maintain private account history across devices.
- Coordinate property and filing status with teammates you authorize.
- Remember deadline preferences and provide in-app or downloadable-calendar reminders.
- Secure the service, enforce limits, troubleshoot failures, and respond to support.
Private document processing
CSV analysis and supported machine-readable booking-activity PDF extraction are deterministic and run inside the Quarterly STR Cloudflare Worker. Uploaded documents are not sent to an external document-processing provider. If a PDF does not contain the supported table structure or readable text, Quarterly STR rejects it and asks you to use the platform CSV export.
Service providers and disclosures
We disclose data only as needed to providers operating the service: our hosting and application infrastructure providers, Cloudflare-backed database, private object storage, and transactional account-email delivery; Google Workspace for business, support, and outreach messages sent or received through hello@quarterlystr.com; plus Stripe when you affirmatively start checkout or manage billing. Google Workspace may process email addresses, message content, attachments you choose to send, and message-routing metadata for those conversations. Do not email booking exports, guest information, reservation identifiers, payment details, or report files; use the private product workflow instead. Quarterly STR does not send uploaded booking files or generated report contents to Google for document processing. Providers process information under their own terms and privacy commitments. We may also disclose information when legally required or to protect the service and its users.
Retention and deletion
Founding-beta and one quarter report packs remain available for 30 days after creation. Host Annual and manager report packs remain available for 400 days after creation. At that expiration, the saved report record, uploaded source copies, private review PDF, eligible City support PDF, and audit CSV become unavailable for viewing or download. Those items are then scheduled for asynchronous deletion from product storage together. Physical deletion is not necessarily instantaneous at the expiration timestamp because background cleanup may run later or retry after a temporary storage failure. Short-lived rate-limit records are periodically removed. Your account remains until you delete it. Coarse product events expire after 90 days. Support and larger-portfolio email correspondence is retained only as long as needed to respond, operate the relationship, resolve disputes, or meet legal obligations.
Limited workspace operational metadata may remain after a report pack expires for the life of the workspace. This can include internal identifiers, the report year and quarter, request state and timestamps, plan-credit accounting, and workspace audit events. We use these records to prevent duplicate processing, maintain team activity history, and account for plan usage. They do not include uploaded file contents, generated PDF or CSV contents, or row-level stay records. They are removed when the owning workspace is deleted. Separate limited billing, security, dispute, and legal records may be retained as described below.
You can delete an individual report or request account deletion from the account page. Account deletion is separate from subscription cancellation. If a workspace you own has an active annual subscription, use Billing to cancel its renewal. The subscription remains active through the current paid period, and account deletion remains unavailable until Stripe reports that the subscription has ended. An open or pending Checkout must also be completed, expired, or resolved. Owners must transfer or remove shared workspace members so deleting one account cannot destroy another person's records.
Once those safeguards are satisfied, account deletion removes your Quarterly STR profile and sessions and, from unshared workspaces you own, saved reports, uploaded source copies, generated PDFs, and related product data. Deleting the Quarterly STR account does not cancel Stripe billing and does not instruct Stripe to delete its customer or transaction records. Stripe receipts, invoices, charges, refunds, disputes, and limited Quarterly STR billing or webhook audit records may remain after app account deletion when needed for accounting, tax, fraud prevention, security, dispute handling, or legal obligations. These limited records do not include full card numbers in Quarterly STR storage. You may also email us for access, correction, or deletion help.
California privacy rights
California residents may have rights to know, access, correct, or delete personal information; to limit certain uses of sensitive information; and to receive equal service when exercising privacy rights. Quarterly STR does not sell personal information or share it for targeted advertising. Submit a request from your account or email hello@quarterlystr.com. We may verify your identity before completing a request.
Security, children, and changes
We use access controls, private storage, request validation, hashed access identifiers, and limited retention. No system can guarantee absolute security. Quarterly STR is intended for adults managing licensed short-term rentals and is not directed to children under 18.
We may update this notice as the product, providers, or legal requirements change. Material changes will be reflected by a new effective date and, when appropriate, an in-product notice.