Deduct — Privacy Policy

Last updated: Pending review

Privacy review pending

This product's privacy policy is currently under review. Full details will be published before launch.

Contact

For privacy questions, email privacy@erosdowgroup.com.

Data practices

Collects personal dataYes
Uses analyticsNo
Uses crash reportingNo
Serves adsNo
Uses cookiesNo
Uses third-party SDKsYes
Requires accountYes
Stores data remotelyYes
Tracks usersNo
Collects children's dataNot knowingly — Deduct is a business tool for self-employed adults and has no age gate. To be confirmed by Erosdow Group before this policy is published.
Processes paymentsYes

Third-party services

  • Supabase — authentication, database and private receipt storage. Row-level security restricts every row and every stored file to the user who owns it.
  • Anthropic — receives one receipt image, or one voice transcript, only when you ask for a capture to be read automatically. It receives nothing else about you.
  • RevenueCat — receives an app user identifier and the App Store transaction, to tell the app whether a subscription is active. It never receives expense records or receipt images.
  • Apple — Sign in with Apple identity and the App Store subscription transaction.

What data is collected

An account is required: either an email address for a one-time sign-in, or an Apple ID through Sign in with Apple. Stored against your account: your trading name, an optional accountant email address, your expense records, your mileage records, your receipt images, and the edit history of each record. Every record is written to on-device SQLite before any network call and stays readable offline. Server-side data is held in Supabase Postgres with row-level security on every table, so each row is reachable only by the user who owns it. Receipt images are held in a private storage bucket and are reachable only through signed links that expire after five minutes. No analytics SDK, no crash-reporting SDK, no advertising identifier and no tracking of any kind is present.

How data is used

Your data is used only to run the app: to sign you in, to keep and show your records, to measure a journey you start, and to export what you have captured. Three paths deserve naming. Voice notes are turned into text on your device by iOS Speech recognition and the audio is never uploaded. When — and only when — you ask for a capture to be read automatically, that one receipt image or that one voice transcript is sent to Anthropic to propose an amount, date, merchant and category; you confirm every value before the record is saved. Location is sampled only between an explicit Start trip and End trip, is accumulated into a distance, and individual coordinates are never stored or transmitted. Nothing is sold, and nothing is used for advertising or tracking.

Data retention

Your records are kept while your account exists. Deleting your account removes the receipt images from storage, your rows from every table, and the account itself, in that order; the app clears its local copy only after the server confirms the deletion succeeded. Exporting your data does not delete anything.

Your choices

You can export everything you have — a CSV, a JSON dump of your records and their history, and a zip of your receipt images — from Settings, and export keeps working after a subscription lapses. You can delete your account and everything in it from Settings > Your data; it asks you to type DELETE and lists what will be removed first. Location can be denied outright, in which case the manual mileage form is offered instead. Email privacy@erosdowgroup.com with any privacy question or request.