Privacy
The essentials about your data, your choices, and the services that help ExpenseLense work.
Last updated: August 4, 2026
Who is responsible
ExpenseLense. Email aiacobe@icloud.com. ExpenseLense is the data controller for ExpenseLense.
What we collect
We collect account and sign-in details; files, emails, notes, and records you add; extracted merchant, date, amount, category, item, and recurring-charge details; Insight questions and answers; plan and billing state; support messages; and limited service diagnostics.
Why we use it
We process data to provide the service and paid features under our agreement with you, meet legal obligations, and protect and improve the service where we have a legitimate interest. Optional visitor analytics and shared category learning are off until you consent.
AI and email processing
OpenAI receives receipt or statement content for extraction. Insight receives your question, recent conversation context, and relevant saved-record data. Requests are sent with provider storage disabled. OpenAI says API data is not used to train its models by default, although limited abuse-monitoring retention may apply. Resend processes forwarded email and attachments.
Category learning
If you turn it on, normalized merchant and item names may be combined with the category you confirmed across participating accounts to improve suggestions. Receipt files, amounts, and dates are excluded. You can turn it off and clear its history in Account privacy.
Ownership and processing boundary
Viewing and downloading original files and viewing, editing, exporting, and deleting saved records do not require a paid plan. Limits apply only to new automated processing and reprocessing.
Service providers
Clerk provides sign-in; Supabase stores product data and private files; Vercel hosts the service; OpenAI provides AI processing; Resend handles email intake; Stripe handles subscriptions; Sentry receives minimized technical errors; and our support mailbox receives messages you send. These providers may process data outside your country under their own safeguards.
Analytics and device storage
Required storage supports sign-in and security. Optional visitor analytics stores an anonymous ID, campaign details, and referral code on this browser only after you allow it. Separately, we record a small set of signed-in service milestones, such as account creation, first record, and billing state, without receipt contents or financial details. We do not sell personal data or use it for cross-site advertising.
Optional visitor analytics
Not allowed on this browser.
Retention and deletion
Your records remain until you delete them or delete your ExpenseLense data. You can do this on any plan while keeping your sign-in account active. Records are removed immediately, then receipt-file cleanup finishes in the background before you can add new records again. Limited billing, security, usage-limit, support, and provider records may remain where needed to operate the service safely, prevent deleted data from being restored, resolve disputes, prevent fraud, or comply with law. Deleting ExpenseLense data does not cancel your subscription or delete your sign-in account.
Your choices and rights
You can edit, export, or delete records; control category learning and optional analytics; manage billing; and request access, correction, deletion, restriction, objection, or portability where local law provides those rights. You may also complain to your local data-protection authority. Email us to exercise a right.
Age, changes, and contact
ExpenseLense is for people aged 18 or older. We may update this notice as the service changes and will revise the date above. Contact aiacobe@icloud.com with privacy questions or requests.