1. Scope and controller
This Privacy Policy applies to ExpensePanda mobile and web experiences that link to this page. ExpensePanda is the data controller for personal information described here.
If you do not agree with this policy, do not use the service. Continued use means you accept the practices outlined here.
2. What data we collect
We collect the following categories of information:
| Category | Data | Source |
|---|---|---|
| Account and identity | OAuth profile identifiers and account session details used to authenticate users. | Provided by user through sign-in providers and authentication flows. |
| Profile and onboarding | Name, email, preferred currency, and account setup status used in onboarding. | Entered by user during onboarding and account setup. |
| Financial and expense records | Expenses, categories, tags, groups, balances, transactions, and settlement records. | Entered by user or generated through user actions while tracking and splitting expenses. |
| Optional Android SMS-based suggestions | Bank/payment-like SMS metadata and content used to create local pending expense suggestions. | Collected only on Android if user grants READ_SMS permission and enables the feature. |
| Diagnostics and reliability data | Crash reports, technical logs, and error context needed to investigate app issues. | Generated automatically when failures or exceptions occur. |
3. Android SMS permission (READ_SMS)
ExpensePanda requests READ_SMS only on Android and only when you use optional SMS-based expense suggestions.
- Purpose: identify bank/payment-like messages and suggest entries.
- User control: you can deny or revoke permission in device settings.
- Behavior: raw SMS content is used on-device for suggestions; only expenses you confirm are saved to your account.
4. How we use your data
- Account and identity: Create and secure the account, keep the user signed in, and protect access to data.
- Profile and onboarding: Personalize user experience and configure account defaults for expense tracking.
- Financial and expense records: Provide core app features including tracking, splitting, analytics, and history.
- Optional Android SMS-based suggestions: Suggest potential expenses to save manual entry time. User confirms before final save.
- Diagnostics and reliability data: Monitor reliability, troubleshoot issues, and improve app quality and security.
6. Retention and security
- Account and identity: Retained while account is active and for a limited period needed for account recovery and legal compliance.
- Profile and onboarding: Retained for account lifetime unless user requests deletion, subject to legal obligations.
- Financial and expense records: Retained to provide ongoing history and account features until deleted by user or account removal.
- Optional Android SMS-based suggestions: Pending suggestions and related status may remain on device until user completes, ignores, or clears them.
- Diagnostics and reliability data: Retained according to operational troubleshooting windows and processor retention settings.
We use reasonable technical and organizational safeguards. No transmission or storage method is completely secure, but we continuously improve controls.
7. Your rights and account deletion
Depending on your location, you may have rights to access, correct, export, or delete your personal data.
To request deletion, visit our Data Deletion page or email support@expensepanda.com.
8. Contact us
Questions about this policy can be sent to support@expensepanda.com.
We may update this policy to reflect product, legal, or operational changes. Updates are published on this page with a revised effective date.