Effective Date: 6/25/2023
This Privacy Policy describes how Receiptify uses Google OAuth 2.0 to authenticate users and enable storage of receipt data in the user’s own Google Drive and Google Sheets account.
We access the following information only with your explicit consent:
We use third-party AI services (such as OpenAI and/or Google Gemini) to process receipt images. Only the uploaded image is sent to these services for processing.
The application follows the principle of least privilege and only requests access to files created by the application or explicitly selected by the user.
We do not sell, rent, or share user data with third parties.
Receiptify is designed with privacy and security as core principles. We implement industry-standard safeguards to protect the Google user data that you authorize the application to access.
All communication between Receiptify, your browser, and Google services is encrypted using HTTPS/TLS.
Receiptify requests only the minimum Google OAuth scopes necessary to provide its features. The application only accesses Google Drive files that it creates or files that you explicitly authorize for use with Receiptify. Receiptify cannot browse, scan, or access unrelated files in your Google Drive.
Receipt images remain stored within your own Google Drive account. Expense records remain stored inside Google Sheets located in your own Google Drive. Receiptify does not maintain a separate cloud database containing copies of your receipt images or Google Drive documents. Application configuration data and user preferences may be stored locally or as required for application functionality.
Receiptify creates and manages Google Sheets files using the Google Drive file access scope (drive.file).
These spreadsheet files are created within the user's Google Drive and are accessible only through files authorized for use with Receiptify.
Google user data is used exclusively to provide the features requested by you, including:
Receiptify uses AI services only to process receipt information requested by the user. Receipt data is not used to train generalized AI models.
Receiptify's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.
Receiptify does not:
You remain the owner of your Google Drive files and Google Sheets at all times. You may revoke Receiptify's access to your Google Account at any time through your Google Account Security settings. Revoking access immediately prevents Receiptify from accessing your Google data in future sessions.