Privacy Policy
Effective: August 15, 2026
Overview
Fundeer (“we”, “our”, “the App”) is a personal finance tracking application. This policy explains what data we collect, how we use it, and your rights regarding that data.
Data We Collect
Account Information
When you create an account, we collect your email address and name, or your Google Sign-In identity. This is required for cloud sync, bank connections, trip sharing, family features, and push notifications.
We never store your password. It is hashed with bcrypt the moment it reaches us, and only that hash is kept — nobody at Fundeer can read or recover your password, and a database copy would not reveal it.
Financial Data
Your transactions, budgets, categories, and goals are stored locally on your device and synced to our secure servers if you enable cloud sync. If you connect a bank (currently Monobank), we receive your account balances and transaction history through the official bank API.
Device & Usage Data
We collect device information (model, OS version), app version, crash reports, and anonymous usage analytics to improve the app. This data is processed by Firebase (Google) services.
Optional Data
- Location (only if you enable receipt location tagging)
- Camera access (only for receipt scanning)
- Microphone access (only for voice input)
Receipt Scanning
Text is read off the receipt on your device using Apple's Vision framework. That extracted text is then sent to our servers, and on to an AI provider, to turn it into a transaction — see Third-Party Services below.
The photo itself stays on your device by default. Image backup is set to “Never” when you install the app, and you can change it to “Ask each time” or “Always” in receipt privacy settings. Only if you opt in is the image uploaded to our object storage in the EU, where it may also be read by Google Cloud Vision to improve accuracy. You can delete stored images individually or all at once at any time.
Voice Input
Speech is transcribed by Apple's speech recognition. Where your device and language support it, this happens entirely on-device; otherwise iOS sends the audio to Apple to transcribe. We never receive or store the recording — only the resulting text, which is parsed the same way receipt text is.
How We Use Your Data
- Provide core app functionality (expense tracking, budgets, analytics)
- Sync your data across devices (if enabled)
- Process voice and receipt inputs to create transactions
- Enable trip and family expense sharing
- Send push notifications about transactions and sync status
- Improve app stability and fix bugs (via crash reports)
- Understand feature usage to improve the app (anonymous analytics)
Third-Party Services
We integrate with the following third-party services to provide app functionality:
- Firebase (Google) - Authentication, crash reporting, analytics, push notifications
- Monobank API - Bank account connection (Ukraine)
- Groq, Cerebras and Google Gemini - Turning receipt and voice text into a transaction. They receive the text of what you scanned or said, never your account, balances or transaction history. Requests are not used to train their models.
- Google Cloud Vision - Reading text from a receipt image, only when you have opted in to image backup
- Apple - Speech transcription when your device cannot do it on-device, and push notification delivery
Everything else — cloud sync, your transaction history, budgets, trips, family groups and any receipt images you chose to back up — is processed and stored on our own servers in the EU, and is not sent to any of the services above.
We do not sell your data to third parties. We do not share your financial data with advertisers or data brokers.
Bank Connections
When you connect your bank account, you authenticate directly with your bank using their official OAuth flow. We never see or store your bank login credentials. We only receive read-only access to your account information and transaction history, which you can revoke at any time.
Data Security
- All data transmitted using TLS 1.3 encryption
- Passwords stored only as a bcrypt hash, never in readable form
- Sensitive tokens stored in iOS Keychain
- Optional biometric (Face ID/Touch ID) app lock
- Receipt images kept on your device unless you turn on backup
- Bank credentials never stored on our servers
Data Retention
Your data is retained while your account is active. Receipt metadata is kept for 365 days by default (configurable). You can delete all receipt data or your entire account at any time. Account deletion is scheduled with a 7-day grace period during which you can cancel.
Your Rights
You have the right to:
- Export - Download all your data (transactions, accounts, profile)
- Delete - Remove your account and all associated data
- Disconnect - Remove bank connections at any time
- Opt-out - Disable analytics in app settings
Children's Privacy
Fundeer is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us immediately.
International Users
If you use Fundeer from outside the country where our servers are located, your data may be transferred to and processed in a different jurisdiction (our servers are located in the EU). By using the App, you consent to this transfer. We take reasonable measures to protect your data regardless of where it is processed.
Changes to This Policy
We may update this policy periodically. We will notify you of significant changes through the app or by email. Continued use after changes constitutes acceptance of the updated policy.
Contact
Questions about privacy? Email us at email.andie.one@gmail.com