Privacy Policy
What we collect
Nothing.
We do not collect, receive, store, transmit, sell, or share any personal information, financial information, device identifiers, advertising identifiers, usage analytics, crash reports, or location data.
There is no server to send data to. The developer has no way to see your transactions, budgets, bills, or any other content you enter.
What stays on your device
Everything you enter — transactions, categories, budget limits, recurring bills, savings goals, and your app settings — is written to a local database in the app's private storage area, managed by your operating system.
That data is only readable by this app. Removing the app removes it. Erasing it is also available at any time from Settings → Erase all data.
Spending forecasts, category suggestions ("Smart Tags"), and bill due-soon alerts are all computed on your device from your own data, each time you open the app. Nothing about how you spend is sent anywhere to produce them, and none of it is stored beyond what you already see on screen.
App lock
Turning on Settings → Require Face ID / fingerprint asks your device's own operating system to verify you — Face ID, a fingerprint, or your device PIN. The app never sees your biometric data; it only receives a yes/no answer from the OS, the same way any app's lock screen works. No biometric information is stored by, or ever leaves, this app.
Backups and exports
Settings → Export backup and Export spreadsheet write a file into the app's own storage directory on your device. These files are created only when you ask for one, and they are not uploaded anywhere.
If you copy an exported file off your device yourself — to a computer, a cloud drive, an email, or a messaging app — that copy is outside this app and outside this policy. It becomes subject to whatever handles it next. Exported backups contain your full financial history in plain text, so treat them accordingly.
Network access
The Android build of this app does not request the INTERNET permission. This
means the operating system itself blocks the app from opening any network
connection — it is not merely a promise in code but a restriction enforced
outside the app.
The app contains no advertising SDK, no analytics SDK, and no crash-reporting SDK.
The web version of the app, at /app/, is the same app compiled for the browser. It stores your data in your browser's own local storage instead of a phone's — nothing is different about what leaves the device: nothing.
Permissions
The app requests no runtime permissions — nothing that shows you an Android permission prompt. It does not access your contacts, camera, microphone, location, SMS, call logs, or files outside its own storage.
If you turn on the optional app lock, the Android build declares
USE_BIOMETRIC, a normal (non-prompted) permission that lets the app ask the
OS's own BiometricPrompt to verify you. It is inert until you turn that setting on.
Children
The app collects no data from anyone, including children under 13.
Third parties
There are no third-party services, processors, or partners, because no data leaves the device for anyone to receive.
The app is built with open-source software libraries that run entirely on the device (Flutter, Hive, and others). None of them transmit data.
Your rights
Because no personal data is ever collected or transmitted, there is nothing for us to access, correct, export, or delete on your behalf — you already hold the only copy. GDPR, CCPA, and similar requests directed at the developer would return nothing, as there is nothing held.
You can export all of your data at any time from within the app, and erase all of it at any time from within the app.
Changes to this policy
If a future version of the app ever changes how data is handled — for example by adding an optional sync feature — this policy will be updated before that version is released, and the change will be described here.
Contact
Questions about this policy: elalimohamad909@gmail.com