Skip to main content

Privacy Policy

Last Updated: December 15, 2025

1. Introduction

At Expense Manager, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and services.

2. Information We Collect

Information You Provide

We collect information you provide directly to us, including: account information (name, email address, password), financial data (expenses, income, budgets, receipts), group and sharing data (group names, member information, shared expenses), and payment information (processed securely through third-party providers).

Information Collected Automatically

When you use our Service, we automatically collect: device information (browser type, operating system), usage data (features used, time spent, interactions), and log data (IP address, access times, pages viewed).

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our Service
  • Process transactions and send related information
  • Send you technical notices, updates, and support messages
  • Respond to your comments, questions, and requests
  • Analyze usage patterns to improve user experience
  • Detect, investigate, and prevent fraudulent or unauthorized activity

4. Data Storage and Security

Your data is stored in Oracle Cloud Infrastructure (OCI) data centers, located in the European Union. We use a MySQL database to store your account and financial data, and an object storage service for images (such as scanned receipts).

We use industry-standard security measures to protect your data, including AES-256 encryption for sensitive personal data at rest and TLS 1.3 for data in transit. All key personal data is encrypted.

Your data is stored on secure servers with regular backups. We implement access controls to ensure only authorized personnel can access your information.

While we strive to protect your information, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

5. Third-Party Services

To provide receipt scanning functionality, we use third-party optical character recognition (OCR) services:

  • Oracle Document Understanding: To extract information from receipts and tickets.
  • Google Cloud Vision OCR: As a complementary service for ticket image processing.

When you scan a receipt, the image is temporarily sent to these services for processing. These providers process images according to their own privacy policies and do not retain your data beyond the time necessary to complete processing.

6. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

  • With your consent or at your direction
  • With service providers who assist in our operations (payment processors, hosting providers)
  • To comply with legal obligations or respond to lawful requests
  • To protect our rights, privacy, safety, or property
  • In connection with a merger, acquisition, or sale of assets

7. Cookies and Tracking

We use essential cookies to enable core functionality of the Service, such as maintaining your session and remembering your preferences.

We use our own internal analytics tool to understand how users interact with our application and website. This tool helps us improve user experience and Service performance. We do not share this analytics data with third parties and do not use external analytics services like Google Analytics.

You can control cookie preferences through your browser settings.

8. Your Rights and Choices

You have the right to:

  • Access and receive a copy of your personal data
  • Correct inaccurate or incomplete information
  • Delete your account and associated data
  • Export your data in a portable format
  • Opt out of marketing communications

To exercise these rights, please contact us or use the settings in your account.

9. Data Retention

We retain your information for as long as your account is active or as needed to provide you the Service.

After account deletion, we may retain certain information for a limited period to comply with legal obligations, resolve disputes, and enforce our agreements.

Backup copies may persist for up to 90 days after deletion before being permanently removed.

10. Children's Privacy

Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we learn we have collected such information, we will delete it promptly.

11. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. We encourage you to review this Privacy Policy periodically.

13. Contact Us

If you have any questions about this Privacy Policy or our privacy practices, please contact us:

Company: ExpenseManager

Address: Calle Alejandro Dumas 17 - Oficinas, 29004 Málaga, Spain

Email: hello@myexpensemanager.net