Introduction
Money Minder ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Money Minder mobile application (the "App"). If you do not agree with this policy, please do not access the App.
We may update this Privacy Policy from time to time. We will notify you by updating the "Last Updated" date above, and you are encouraged to review this policy periodically to stay informed of updates.
1. Information We Collect
1.1 Personal Information
Account Information
- Email address (via Google Sign-In)
- Full name (via Google Sign-In)
- Profile picture (via Google Sign-In)
- Google account ID token for authentication
Financial Transaction Data
- Transaction amounts
- Transaction dates and timestamps
- Transaction categories and types (income/expense)
- Transaction descriptions and notes
- Receipt images (when you choose to scan receipts)
SMS Message Data
- SMS message content from your device
- SMS sender phone numbers
- SMS timestamps
- SMS message IDs
Important: We do not collect any personal, OTP, or promotional messages. Only SMS from verified bank and UPI senders (e.g., HDFC, Axis, SBI, ICICI, Paytm, PhonePe, Google Pay, etc.) containing keywords like "debited", "credited", "amount", or "balance" are parsed and processed for transaction tracking. All other SMS messages are ignored and never transmitted from your device.
User Preferences
- Currency preference
- Theme preference (light/dark mode)
- Application settings
1.2 Device Information
- Operating system type (Android/iOS)
- App version and build number
- Device identifiers
- Application performance metrics
- Crash reports and error logs
1.3 Usage Data
- Login events
- Feature usage patterns
- Application performance data
- Network request metrics
2. Permissions Required
2.1 SMS Permissions (READ_SMS, RECEIVE_SMS)
- Purpose: To automatically detect and import financial transactions from SMS messages sent by banks and payment service providers
- Usage: The App reads SMS messages from your device to identify transaction-related messages and extract details for automatic expense tracking. We do not collect personal, OTP, or promotional messages—only transaction SMS from verified bank/UPI senders with keywords like "debited" or "credited" are processed
- Control: You can revoke this permission at any time through your device settings
2.2 Camera Permission (CAMERA)
- Purpose: To scan and capture receipt images for transaction documentation
- Usage: Allows you to take photos of receipts to attach to your transactions
- Control: You can deny or revoke this permission; manual entry will still be available
2.3 Background Permissions (RECEIVE_BOOT_COMPLETED, WAKE_LOCK, FOREGROUND_SERVICE)
- Purpose: To enable background synchronization of SMS messages
- Usage: Allows the App to sync transaction-related SMS messages periodically, even when the app is closed
- Control: Background sync can be managed through app settings
3. How We Use Your Information
3.1 Provide Core Functionality
- Authenticate and manage your account
- Track and categorize your financial transactions
- Automatically import transactions from SMS messages
- Store and organize receipt images
- Generate financial reports and analytics
- Synchronize your data across sessions
3.2 Improve User Experience
- Personalize your app experience based on preferences
- Remember your settings and preferences
- Provide relevant financial insights and summaries
3.3 Application Maintenance
- Monitor and analyze app performance
- Detect, prevent, and address technical issues
- Debug errors and crashes
- Improve app stability and functionality
3.4 Communication
- Send you important service-related notifications
- Respond to your inquiries and support requests
- Provide updates about app features and improvements
4. Data Storage and Security
4.1 Local Storage
- Transaction records (SQLite database)
- User preferences (SharedPreferences)
- Authentication tokens
- Categories and currency data
- Sync timestamps and status
4.2 Cloud Storage
- User account information
- Transaction data
- SMS messages (filtered transaction-related messages only)
- User settings and preferences
- Receipt images
4.3 Security Measures
- HTTPS Encryption: All data transmitted between the App and our servers is encrypted using HTTPS in production
- JWT Authentication: Secure token-based authentication for API requests
- Firebase Security: Leveraging Firebase's enterprise-grade security infrastructure
- Access Controls: Restricted access to user data on our servers
While we use commercially acceptable means to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
5. Third-Party Services
5.1 Google Services
- Google Sign-In: For user authentication (collects email, name, profile picture)
Privacy Policy: https://policies.google.com/privacy
5.2 Firebase Services (Google)
- Firebase Authentication: Secure user authentication
- Firebase Crashlytics: Crash reporting and error tracking
- Firebase Analytics: Usage analytics and user behavior insights
- Firebase Performance Monitoring: App and network performance metrics
Privacy Policy: https://firebase.google.com/support/privacy
5.3 Data Shared with Third Parties
Firebase receives:
- User authentication data
- Crash reports and error logs
- Anonymous usage statistics
- Performance metrics
Our Backend Server receives:
- All data necessary to provide app functionality (transactions, SMS messages, user settings)
- We do not sell your personal information to third parties
- We do not share your data with advertisers
- We do not use your data for marketing unrelated to the App
6. Data Retention
- Account Data: Retained until you delete your account
- Transaction Data: Retained until you delete specific transactions or your account
- SMS Data: Retained on our servers until you delete your account
- Local Data: Stored on your device until you uninstall the app or log out
- Backup and Logs: Retained for up to 90 days for security and operational purposes
7. Your Rights and Choices
7.1 Access and Control
- Access your personal information stored in the App
- Update or correct your information through the App settings
- Delete specific transactions or data entries
- Export your transaction data (through app features)
7.2 Permission Management
- Revoke SMS permissions through your device settings (automatic import will stop)
- Revoke camera permissions through your device settings (manual entry will still work)
- Disable background sync through app settings
7.3 Account Deletion
You can delete your account at any time through the App settings. Upon account deletion:
- All your data will be permanently removed from our servers
- Local data will be cleared from your device
- The action is irreversible
7.4 Data Portability
You have the right to request a copy of your data in a machine-readable format. Please contact us at the email address below to make such a request.
8. Children's Privacy
Money Minder is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us so that we can take necessary actions.
9. International Data Transfers
Your information, including personal data, may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ from those of your jurisdiction. By using Money Minder, you consent to these transfers as described in this Privacy Policy.
10. California Privacy Rights (CCPA)
- Right to Know: Request information about the categories and specific pieces of personal information we have collected
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt-out of the sale of personal information (we do not sell personal information)
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights
To exercise these rights, please contact us using the information provided below.
11. European Privacy Rights (GDPR)
- Right of Access: Request access to your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data
- Right to Restrict Processing: Request restriction of processing
- Right to Data Portability: Request transfer of your data
- Right to Object: Object to processing of your data
- Right to Withdraw Consent: Withdraw consent at any time
Legal Basis for Processing (GDPR)
- Consent: You have given explicit consent for specific purposes (e.g., SMS access)
- Contract Performance: Processing is necessary to provide the service you requested
- Legitimate Interests: Processing is necessary for our legitimate interests (e.g., fraud prevention, security)
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you by posting the new Privacy Policy in the App, updating the "Last Updated" date, and, for material changes, we may send you a notification.
Your continued use of the App after any modifications constitutes your acknowledgment and consent to the updated policy.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
đź“§ Email: support@moneyminder.in
Response Time: We aim to respond to all inquiries within 48 hours.
For data-related requests (access, deletion, portability), please allow up to 30 days for processing.
14. Consent
By using Money Minder, you hereby consent to our Privacy Policy and agree to its terms.
SMS Data Collection Consent
- We do not collect personal, OTP, or promotional messages
- Only transaction-related SMS from verified bank and UPI senders (e.g., HDFC, Axis, SBI, Paytm, PhonePe) containing keywords like "debited", "credited", "amount" are processed
- Filtered SMS data is transmitted to our servers for processing and storage
- All other SMS messages remain on your device and are never accessed or transmitted
- You can revoke this permission at any time through device settings
- Revoking SMS permission will disable automatic transaction import but will not affect manual entry
Data Processing Consent
You consent to the collection, processing, and storage of your personal information as described in this Privacy Policy for the purposes of providing and improving the Money Minder service.
Summary for Google Play Store
Data Collection
We collect personal information (name, email, profile picture), financial transaction data, SMS messages (only from verified bank/UPI senders — we do not collect personal, OTP, or promotional messages), receipt images, and device information.
Data Usage
Data is used to provide expense tracking services, automatic transaction import, financial analytics, and app improvement.
Data Sharing
Data is shared with our backend servers (for app functionality) and Firebase (for authentication, analytics, crash reporting, and performance monitoring). We do not sell data to third parties or share with advertisers.
Security
We use HTTPS encryption, JWT authentication, and Firebase security infrastructure to protect your data.
User Control
You can access, modify, export, or delete your data at any time. You can revoke permissions and delete your account through the app.