Privacy Policy
Last updated: February 23, 2026
1. Who we are
Expense Tracker (“we”, “our”, “us”) is a personal expense tracking service. If you have questions about this policy, contact us at support@expensetracker.app.
2. What data we collect
We collect only what is necessary to provide the service:
- Account data — your email address, used for authentication.
- Expense data — amounts, categories, and dates you log via the app or iPhone Shortcut.
- Billing data — your Stripe customer ID, subscription status, and renewal dates. We do not store full card details.
- API tokens — stored as one-way SHA-256 hashes. We cannot recover the original value.
We do not collect location data, device identifiers, or browsing behaviour beyond what is necessary for authentication.
3. How we use your data
- To provide and operate the expense tracking service.
- To process your subscription payments via Stripe.
- To authenticate you and secure your account.
- To send transactional emails (e.g., payment receipts, magic links). We do not send marketing emails unless you opt in.
4. Data storage and security
Your data is stored in Supabase, a PostgreSQL-based cloud database. Each user's data is isolated using Row Level Security (RLS) — no other user can access your records. All data is transmitted over HTTPS.
Stripe handles all payment processing. We store only the subscription status and Stripe customer ID needed to gate access to the app. Full card details never touch our servers.
5. Third-party services
We use the following third-party services:
- Supabase — database and authentication.
- Stripe — payment processing and subscription management.
Each service has its own privacy policy. We do not sell or share your data with any other third parties.
6. Your rights (GDPR)
If you are in the European Economic Area, you have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your account and all associated data.
- Object to or restrict processing of your data.
- Receive your data in a portable format.
To exercise any of these rights, email support@expensetracker.app. We will respond within 30 days.
7. Data retention
We retain your account and expense data for as long as your account is active. If you cancel and request deletion, we will delete your data within 30 days, except where we are required to retain it for legal or financial compliance purposes.
8. Cookies
We use only strictly necessary session cookies for authentication. We do not use advertising or tracking cookies.
9. Changes to this policy
If we make material changes to this policy, we will notify you by email or via a notice in the app. Continued use of the service after changes take effect constitutes acceptance.
10. Contact
Questions? Email us at support@expensetracker.app.