Privacy Policy
Last updated: April 2025
Information We Collect
When you use bonbox, we collect information necessary to provide and improve our services:
- Receipt Data: Images and extracted information (vendor, amount, date, currency, etc.) you upload.
- Bank Statement Information: Data from PDF statements you import.
- Account Information: Your email address and authentication details when you sign in via Google or Apple.
- Usage Data: How you interact with the app, feature usage, and performance data.
- Device Information: Type of device, operating system, and unique device identifiers (for crash reporting and analytics).
- Crash Reports: Technical details about crashes, including device state and stack traces, to help us fix bugs (via Sentry).
How We Use Your Information
We use the collected information to:
- Provide core app functionality (receipt scanning, expense tracking, reporting).
- Authenticate you and sync your data across devices (via Supabase).
- Analyze usage patterns to improve app features and user experience.
- Monitor app performance and diagnose crashes (via Sentry).
- Communicate with you about your account or service updates.
Third-Party Services (Sub-processors)
We use third-party services to help us operate bonbox. These services may process your information on our behalf:
- Supabase: Provides database hosting, authentication services, and secure data storage. Your account information and receipt data are stored using Supabase. (Supabase Privacy Policy)
- Sentry: Provides crash reporting and application monitoring services. When a crash occurs, Sentry receives device information and technical details about the error. (Sentry Privacy Policy)
- Google Gemini API: Powers our receipt scanning and data extraction functionality. When you scan a receipt, the image is processed by Google's Gemini API to extract relevant information. The API helps identify and extract details like vendor names, amounts, dates, and other receipt data. (Google AI Terms)
We have agreements with these providers to ensure they handle your data securely and according to our instructions.
Data Security
We implement robust security measures, including encryption during transmission and at rest (leveraging Supabase security features), to protect your data from unauthorized access or disclosure.
Your Rights
Depending on your location, you may have rights regarding your personal data, such as the right to access, correct, or delete your information. Please contact us if you wish to exercise these rights.
Contact Us
If you have any questions about this Privacy Policy, please contact us at hey@yannickpulver.com.