Overview
Spenlog is a personal expense tracker built and maintained by Mezanur Rahman ("we", "us", or "Spenlog"). This policy describes — in plain English — what personal data the app collects, why we collect it, who else processes it, and what control you have over it.
We try to collect as little as possible. You can use most of Spenlog without creating an account at all (see Guest mode).
What we collect
The exact data we collect depends on how you use the app:
When: You create an account or sign in with email or Google.
Why: Identifies your account and lets us sync your data across devices.
When: You sign up with email (not Google).
Why: Stored only as a hash by our authentication provider. We never see your plaintext password.
When: You sign in with Google.
Why: Email, Google user ID, and profile picture URL. Used only to identify your account.
When: You add an expense (by typing or voice).
Why: These are the entries you see in the app: amount, category, note, date. Synced to your account so they survive a device change.
When: You tap the microphone to record an expense.
Why: Sent for transcription, then immediately discarded. See the Voice section below.
When: You set them in Settings.
Why: Preferences synced to your account so they restore on a new device.
When: You buy additional voice transcription credits.
Why: Tracks remaining balance.
Spenlog does not collect: your contacts, your photos, your location, your IP address, your device advertising ID, or your usage analytics. We do not track you across other apps or websites.
How we use it
Everything we collect supports one of three jobs:
- Run the service. Create your account, authenticate you, save your entries, sync between your devices, and process voice into text.
- Keep the service working. Server-side logs capture errors (without your entry contents) so we can fix bugs.
- Comply with the law. Respond to legal requests or enforce our terms.
We do not sell your data. We do not use your expense data to train AI models. We do not show you ads.
Third-party processors
Running Spenlog requires a few specialised services. Each receives only the data it needs to do its job.
When: You sign up, sign in, or sync.
Why: Hosts your account and backups. Data is encrypted in transit (TLS) and at rest. https://supabase.com/privacy
When: You record a voice entry.
Why: Converts your audio to text. Audio is sent over TLS, processed, and we do not retain it. https://cloud.google.com/terms/data-processing-addendum
When: After your voice is transcribed.
Why: Parses the transcript into a structured expense (amount, category, note). Receives only the transcript, never your audio. https://www.anthropic.com/legal/privacy
When: You choose 'Continue with Google'.
Why: Verifies your Google identity. Governed by https://policies.google.com/privacy
When: The app starts (the SDK initialises) and whenever you tap to buy a voice pack.
Why: Manages in-app purchases and remembers what you've bought across devices. Receives an anonymous identifier, basic device metadata (OS version, country code), and your purchase events. Does not receive your name, email, expense entries, or audio. https://www.revenuecat.com/privacy
When: You confirm a voice-pack purchase.
Why: Processes the payment itself. Receives only what Google needs to charge you (your Google Play account + the product id). Spenlog never sees your card or billing address. Governed by https://policies.google.com/privacy
When: The app crashes or throws an unhandled error.
Why: Receives the stack trace, app version, OS version, and a randomised install id so we can debug the crash. We scrub expense amounts, notes, and voice transcripts before sending. Does not receive your email, name, or audio. https://sentry.io/privacy/
When: We deliver a push notification (e.g. a daily reminder you opted into).
Why: Google's standard Android push pipeline. Receives a device push token, the OS, and the notification payload (no personal content). Required by Android for any app that sends notifications. https://firebase.google.com/support/privacy
Every processor above is contractually bound to use your data only to provide its service to Spenlog. None of them are permitted to sell your data or use it for their own advertising.
Voice recordings
When you tap the microphone, Spenlog records audio on your device until you stop (or until silence is auto-detected). The recording is then:
- Uploaded over TLS to our edge function.
- Forwarded to Google Cloud Speech-to-Text to get a text transcript.
- The transcript is sent to Anthropic Claude to extract amount, category, and note.
- The resulting expense is saved to your account. The audio itself is not stored by Spenlog — it exists only in transit for the few seconds it takes to process.
If you deny microphone permission, every other part of the app keeps working — you just can't add expenses by voice.
Guest mode
You can use Spenlog without an email or password by tapping "Continue as guest". In guest mode:
- Your expenses live only on your device. They are not uploaded to our servers.
- An anonymous server identity is created so voice transcription still works (the speech-to-text service requires authentication). This anonymous identity contains no personal information about you.
- Uninstalling the app or clearing app data deletes everything immediately.
- You get a limited number of free voice entries. Voice packs are only available after you create a real account.
Where data is stored
Your account and synced data are stored by Supabase. The Spenlog Supabase project is hosted on Amazon Web Services in the United States (us-east-1 region). Voice audio in transit is processed by Google Cloud servers in the United States. Transcripts in transit are processed by Anthropic in the United States.
If you are located outside the United States, you understand and agree that your data will be transferred there for processing.
Retention & deletion
We keep your account data for as long as your account is active. You can delete everything by signing into Spenlog and either:
- Tapping Sign out in Settings — this wipes the local copy on your device immediately. Server-side data is kept so you can sign back in.
- Tapping Delete account in Settings — this permanently removes your account, every expense entry, every preference, every voice pack record, and the authentication record itself. It happens immediately and cannot be undone.
- Emailing us (see Contact) to request deletion if you can't sign in. We remove everything within 30 days.
Server-side logs are kept for up to 30 days for debugging and then purged. Voice audio is not retained at any stage.
Your rights
Depending on where you live, you may have the right to:
- Access a copy of the data we hold about you
- Correct anything that is inaccurate
- Delete your account and data
- Export your data in a portable format
- Object to specific kinds of processing
- Complain to a data-protection regulator in your country
You can exercise any of these rights by emailing us — see Contact. We will respond within 30 days.
You can also export everything yourself directly from the app: Settings → Export Backup (JSON file with every entry) or Settings → Export CSV (spreadsheet).
Security
We use industry-standard measures to protect your data:
- All network traffic between the app, our edge functions, and third-party processors is encrypted with TLS.
- Stored data is encrypted at rest by our database provider.
- Passwords are hashed; we never store the plaintext.
- Voice transcription API keys are kept server-side and never shipped to the app.
- Access controls limit which authenticated user can read which row in the database.
No system is perfectly secure. If we ever discover a breach that affects your data, we will notify you in the app and by email without undue delay.
Children
Spenlog is not directed at children under 13 (or the equivalent minimum age in your country) and we do not knowingly collect data from them. If you believe a child has created an account, please email us and we will delete it.
Changes to this policy
We may update this policy from time to time. When we make a material change, we will update the "Last updated" date at the top and notify signed-in users inside the app the next time they open it.
Contact
Questions, requests, or concerns? Email remon.asr786@gmail.com and we'll get back to you within a few business days.
Spenlog · Dhaka, Bangladesh