Receipt Scanner 3000 — App Policy
Receipt Scanner 3000 ("the app", "we", "us") is built by an independent developer. This policy explains what data the app collects, why, and who it's shared with. If anything here is unclear, reach out — see Contact.
Signing up requires an email address and password, handled by our backend provider, Supabase. There's no social login, so nothing is pulled from a Google or Apple account.
When you scan a receipt, the extracted shop name, address, purchase date/time, line items (name, quantity, price), subtotal, tax, total, and currency are saved to your account. You can edit any of this before or after saving. Freeform tags and a category are stored too, if you add them.
Photos are stored only on your device — they are never uploaded to or retained on our servers. To extract the data above, a photo is sent once, at scan time, through our server (which holds the AI provider's API key) to a third-party AI vision model, Google Gemini, and is not stored by our server before or after that call.
Every location permission is optional — declining just means a receipt saves with no map location.
Each extraction request is logged against your account (timestamp only) to enforce a daily quota tied to your subscription tier. The app uses no analytics or crash-reporting SDKs, and shows no ads.
If you create or join a group to split receipts, receipts you add to that group — plus their items, totals, and any payment/split assignments — become visible to every other member of that group, and you can see theirs. This is separate from your personal, ungrouped receipts, which stay visible to only you.
We do not sell your data, and do not use it for advertising or share it with data brokers.
Each provider below processes data under its own privacy policy, linked in the table. We send only the minimum each service needs — for example, the AI provider receives a single receipt photo per request; it never receives your email or your other receipts.
| Provider | Purpose | Data involved |
|---|---|---|
| Supabase | Backend database, authentication, server functions | Account email, receipt data, usage logs |
| Google (Gemini) | AI extraction of receipt photos into structured data | Receipt photo (per-scan, not retained by us) |
| OpenStreetMap / Nominatim | Free geocoding of shop address to map coordinates; map tiles | Shop name/address text |
| Google Maps Geocoding | Alternate geocoding, opt-in for select accounts only | Shop name/address text |
Receipt and account data lives in a Postgres database (via Supabase), protected by row-level security policies that restrict each user's data to that user — and, for group receipts, to that group's members — at the database level. Receipt photos live only in the app's local storage on your device and are never included in that database.
Your data is retained for as long as your account exists.
The app is not directed at children under 13, and we do not knowingly collect data from them.
If this policy changes, the updated version will be posted at this same address with a new effective date.