Privacy Policy
Personal Accounting — AI accounting app
Last updated: 11 September 2026
This policy covers the Personal Accounting mobile app and this website. The short version: your financial data lives encrypted on your own device, cloud backup is off by default and encrypted before it leaves your phone, and nothing is sent to an AI service unless you switch it on yourself.
1. Third-party AI service and data sharing
The app uses the Google Gemini API, a third-party AI service provided by Google, to deliver its AI features. When you use those features, the data you have selected is sent to Google Gemini for processing. Below is exactly what is sent, feature by feature.
1.1 AI financial advisor (chat)
Depending on the permissions you have individually granted, the following may be sent:
- Transactions — amount, date, category name, type (income or expense), description. Individual toggle, off by default.
- Accounts — account name, currency. Individual toggle, off by default.
- Categories — category name, whether it can be deleted. Individual toggle, off by default.
- Contacts — contact name only. Individual toggle, off by default.
- Goals — goal name, target amount, current amount, currency. Individual toggle, off by default.
- Recurring transactions — title, frequency, amount, type. Individual toggle, off by default.
- Chat messages — the text you type, sent when you start a chat.
1.2 Document and receipt scanning
Photos taken with the camera, images chosen from your gallery and PDF files you upload are sent to Google Gemini for text extraction and transaction analysis.
1.3 Voice messages
Voice recordings made in the AI chat are sent for speech-to-text transcription and then analysed as text.
1.4 AI financial analysis
Aggregated figures for the period you select — transaction summaries, category breakdowns, income and expense totals — are sent.
1.5 How Google handles that data
- It travels over an encrypted HTTPS connection.
- It is processed in real time, for the analysis only.
- It is not permanently stored by the Google Gemini API.
- It is not used to train AI models, per the Gemini API terms that apply to API users.
- Google processes it under its own privacy policy and the Gemini API terms of service.
1.6 Your consent and control
- A consent dialog is shown before any AI feature can be used for the first time, and it must be accepted.
- That dialog names Google Gemini API explicitly and lists every data type involved.
- Each data category has its own switch in privacy settings.
- Every switch is off by default — no financial data is shared until you turn it on.
- You can withdraw consent at any time by switching the categories back off.
- Nothing is sent to Google Gemini without your explicit consent.
2. Storage, cloud backup and family sharing
- All financial data is stored locally on your device, encrypted with SQLCipher.
- Signing in is optional. The app works fully without an account. If you sign in with Google or Apple, we collect your email address and a user identifier, solely to run cloud backup and family sharing.
- Cloud backup is optional and off by default. If you enable it, the backup is encrypted on your device with AES-256-GCM, using a key derived from your backup password, before upload. Only ciphertext reaches our servers at Google Firebase — neither we nor anyone else can read your financial data. Your backup password is never uploaded, so if you forget it we cannot recover the backup. The last seven backups are kept and older ones are deleted automatically.
- Family sharing is optional. Only the accounts you explicitly mark as shared are synchronised, and shared data is end-to-end encrypted on your device with a family key that exists only on family members’ devices, exchanged by QR code and never uploaded. Our servers hold only encrypted snapshots and membership metadata — user identifier, family identifier, timestamps — and no financial content.
3. Third-party services
- Google Gemini API — receipt analysis, the financial chat advisor, speech-to-text and financial analysis.
- Firebase — authentication for the optional Google and Apple sign-in, Cloud Storage and Firestore for end-to-end encrypted backups and family sync snapshots and membership metadata, performance monitoring, crash reporting via Crashlytics, remote configuration, push notifications and cloud functions.
- Google Play Billing and Apple StoreKit — subscriptions and in-app purchases.
4. Data collected automatically
- App performance data.
- Crash reports, via Firebase Crashlytics.
- Anonymous usage analytics.
- Device information — model and operating system version.
This website additionally runs a cookieless visit measurement, Vercel Web Analytics. It collects aggregate figures such as page address, referring site, country and device type. Visitors are not identified individually, no cookie is written to your device, and there is no tracking across other websites.
5. Security
- All local data is encrypted with SQLCipher.
- Cloud backups and family sync data are end-to-end encrypted on your device — AES-256-GCM with PBKDF2 key derivation — before upload. Servers only ever hold ciphertext.
- Encryption keys are kept in the platform’s secure storage, the iOS Keychain or the Android Keystore, and are never uploaded.
- Network traffic is protected with SSL/TLS.
- Communication with third-party APIs uses secure encrypted channels.
- We apply the principle of collecting the minimum data necessary.
6. Your rights
- To know whether your personal data is being processed.
- To request its deletion.
- To request its correction.
- To object to processing.
- To turn off AI data sharing at any time in the app’s settings.
- To delete everything from inside the app. The “Delete all data” action also deletes your cloud backups and their metadata, removes you from family sharing and signs you out.
- To disable cloud backup or leave family sharing at any time.
7. Children’s privacy
The app does not knowingly collect personal information from children under 13. If we learn that a child under 13 has provided personal information, we delete it immediately.
8. Contact
Questions about this policy, or a request concerning your data: kisiselmuhasebe@gmail.com.
This page is the English text of the same policy published on our Turkish site. Where a translation and the English text appear to differ, the English text is the reference.