1. Introduction
SpendKar ("we", "our", "us") is a personal expense tracking application. We are committed to protecting your privacy and handling your data responsibly. This Privacy Policy explains how we collect, use, store, and protect your information.
2. Information We Collect
We collect the following information when you use SpendKar:
- Account Information: Name, email address, phone number (optional), UPI ID (optional)
- Financial Data: Bank account names, last 4 digits of account numbers, account balances (manually entered by you)
- Transaction Data: Income, expense, and transfer records including amounts, dates, categories, and descriptions
- Bank Statements: PDF bank statements you upload for transaction import (processed and immediately deleted from temporary storage)
- SMS Data: Bank transaction SMS text that you manually paste into the app for parsing (we do not access your SMS inbox)
- Device Information: Device type and operating system (for app functionality only)
3. How We Use Your Information
Your data is used solely for:
- Tracking and categorizing your personal expenses
- Providing spending analytics, insights, and predictions
- AI-powered transaction categorization
- Generating savings recommendations
- Authenticating your account
We do NOT:
- Sell your data to third parties
- Share your financial information with anyone
- Access your bank accounts directly
- Read your SMS messages (you paste them manually)
- Use your data for advertising
4. Data Storage & Security
Your data is stored on secure servers with the following protections:
- All data transmitted via HTTPS (TLS encryption)
- Passwords are hashed using bcrypt (industry standard)
- JWT-based authentication with secure token management
- Rate limiting to prevent abuse
- Bank statement PDFs are processed in memory and not permanently stored
5. Data Retention
We retain your data for as long as your account is active. You can delete all your data at any time by using the "Delete My Account" option in the app's Profile section. Upon deletion:
- Your user account is permanently removed
- All associated accounts, transactions, and transfers are deleted
- This action is irreversible
6. Your Rights
Under the Digital Personal Data Protection Act, 2023 (India), you have the right to:
- Access: View all your data within the app
- Correction: Edit your profile, accounts, and transactions anytime
- Erasure: Delete your entire account and all associated data
- Portability: Export your transaction data as CSV from the app
- Withdraw Consent: You can stop using the app and delete your account at any time
7. Third-Party Services
SpendKar does not integrate with any third-party analytics, advertising, or tracking services. We do not use Google Analytics, Facebook SDK, or any similar tools. Your financial data stays within our systems only.
8. Children's Privacy
SpendKar is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us to have it removed.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be reflected on this page with an updated "Last updated" date. Continued use of the app after changes constitutes acceptance of the updated policy.
10. Grievance Officer
In accordance with the Information Technology Act, 2000 and the DPDPA 2023, our Grievance Officer can be contacted at:
11. Contact Us
For any questions or concerns about this Privacy Policy or your data, contact us at:
Email: support@spendkar.com
Website: spendkar.com