Skip to send fax
RonFaxSend Fax →
← Back to home

Privacy Policy

Last updated: July 5, 2026

This Privacy Policy explains how Roncy LLC, a limited liability company organized under the laws of the State of Wyoming, United States of America ("Roncy LLC," "RonFax," "we," "us," or "our"), collects, uses, stores, and discloses information when you use the RonFax website and online fax transmission services (collectively, the "Service").

1. Introduction & data controller

Roncy LLC operates RonFax, an email-to-fax and web-based fax utility that helps consumers and businesses transmit documents to third-party recipients—including credit bureaus (such as Equifax, Experian, and TransUnion), tax authorities (such as the IRS), government agencies (such as the Social Security Administration), and healthcare payers (such as Aetna, Cigna, and Blue Cross Blue Shield plans).

We are committed to protecting consumer privacy and handling sensitive personal information responsibly. We design our Service to align with widely recognized data-protection principles, including applicable requirements under the California Consumer Privacy Act (CCPA/CPRA), the EU General Data Protection Regulation (GDPR) where it applies to our processing, and general U.S. consumer privacy standards.

For purposes of applicable privacy law, Roncy LLC is the data controller (or equivalent business entity) responsible for personal information processed through the Service, except where we act solely as a processor on behalf of an enterprise customer under a separate written agreement.

2. Data we collect

We collect only the information reasonably necessary to operate the Service, process payments, transmit your fax, provide support, and maintain security.

Account & billing information

  • Email address and name you provide at checkout or when using email-to-fax (for receipts, status updates, and support).
  • Payment and billing data processed securely by Stripe, Inc.RonFax does not store full payment card numbers on our servers. Stripe's handling of payment data is governed by Stripe's privacy policy.
  • Transaction metadata (amount paid, page count, Stripe session or payment identifiers, timestamps).

Transmission data

  • PDF files, images, and other documents you upload or attach for fax transmission.
  • Destination fax numbers, cover-page details, and related transmission parameters.
  • Carrier delivery status, error codes, and transmission logs returned by our telecommunications partners.

Technical & operational data

  • Device and browser type, IP address, and similar log data used for fraud prevention, abuse detection, and service reliability.
  • Limited analytics events (for example, checkout and completed purchase signals) processed through Google Analytics / Google Ads tags configured without routine page-view tracking. You may control certain analytics through your browser or device settings and applicable opt-out tools.

Sensitive information. You choose what to transmit. Documents may contain Social Security numbers, financial records, medical information, or other regulated data. You are responsible for determining whether fax transmission is appropriate for your use case and for redacting information you do not intend to send.

3. Strict 7-day data retention policy

We act strictly as a technical transmission conduit—not a document archive, records repository, or long-term storage provider.

To protect your sensitive personal information (including SSNs, medical records, and financial data that may appear in uploaded files), all uploaded document files are:

  • Encrypted during transit and while temporarily stored for processing;
  • Cached on our secure infrastructure solely for transmission, payment reconciliation, delivery confirmation, and limited retry purposes; and
  • Automatically and permanently purged from our servers within seven (7) days after transmission status is finalized (for example, after carrier-confirmed delivery, a definitive failure, or refund resolution)—whichever occurs first, and in all cases no later than seven (7) calendar days after finalization.

We do not maintain a permanent vault of your fax payloads. Certain non-content metadata (such as billing records required for tax, accounting, fraud prevention, and legal compliance) may be retained longer in de-identified or minimized form, but not as a substitute for document storage.

Backups maintained by infrastructure providers may briefly retain encrypted copies under their own retention schedules; we configure our systems to minimize such retention and request deletion in line with this policy.

4. Data security

We implement administrative, technical, and organizational measures designed to protect information processed through the Service, including:

  • Encryption in transit: TLS 1.2 or TLS 1.3 (HTTPS) for web sessions, uploads, and API communications.
  • Encryption at rest: AES-256 or equivalent industry-standard encryption for document payloads while temporarily cached on our storage layer.
  • Access controls limiting employee and vendor access to production systems on a need-to-know basis.
  • Monitoring and logging for abuse, failed transmissions, and security incidents.

No method of transmission or storage is completely secure. You transmit documents at your own risk and should use strong device security and verified recipient fax numbers.

5. Sharing, subprocessors & no sale of data

We do not sell, rent, or trade your documents or personal information.

We share information only with service providers that help us operate the Service ("subprocessors"), and only to the extent necessary for their function. Current categories include:

  • Stripe — payment processing and fraud prevention.
  • Resend and Cloudflare — transactional email delivery and email routing infrastructure.
  • Cloud hosting, object storage, and database providers (for example, Vercel and Supabase) — temporary file storage, application hosting, and operational metadata.
  • Telecommunications / fax carrier partners — transmission of your document to the destination fax number you specify.

These providers are contractually required to protect data and use it only to perform services on our behalf. We may also disclose information if required by law, court order, or governmental request, or to protect the rights, property, or safety of RonFax, our users, or others.

6. Your privacy rights

Depending on your location, you may have rights to access, correct, delete, or obtain a copy of personal information we hold about you, to opt out of certain processing (including targeted advertising where applicable), and to appeal our response. California residents may have additional rights under the CCPA/CPRA. EEA/UK residents may have rights under the GDPR, including the right to lodge a complaint with a supervisory authority.

To exercise applicable rights, email support@ronfax.com. We may verify your request before responding. We will not discriminate against you for exercising privacy rights permitted by law.

7. Contact information

Questions about this Privacy Policy or our data practices may be directed to:

Roncy LLC
Email: support@ronfax.com

We may update this Privacy Policy from time to time. Material changes will be posted on this page with an updated "Last updated" date. Continued use of the Service after changes become effective constitutes acceptance of the revised policy.

See also our Terms of Service.