Legal information
Tally Privacy Policy
This policy explains how Tally collects, uses, retains and shares information in its expense-tracking application. Last updated: 7 October 2026.
1. Controller and contact
The data controller is Angel Manuel Hernandez Redondo, owner of the developer account publishing Tally. For privacy, rights or support requests, email kelilen@hotmail.com.
2. Data we process
- Google account: identifier, name, email address and profile picture when provided by Google.
- Expenses: information you enter, which may include amounts, dates, currencies, merchants, categories or notes.
- Receipts: selected image and text or fields detected during analysis.
- Online backups: Tally data associated with your account and stored for recovery.
- Subscriptions: internal identifiers, product, store, status, dates and technical transaction identifiers needed to recognise PRO access. We do not receive your full card details.
- Technical and security data: limited information required to operate, prevent abuse and troubleshoot errors.
3. Purposes
- Authenticate you with Google and maintain your account.
- Store, organise, sync and restore your expenses.
- Process a receipt when you request scanning and produce an editable draft.
- Validate purchases and restore PRO features.
- Protect the service, address requests and meet legal obligations.
4. Legal bases
We process data required to create the account, store expenses and maintain online backups in order to perform the service you request. Receipt scanning is activated voluntarily when you choose an image and request analysis. Abuse prevention and security rely on our legitimate interest in protecting Tally and its users. Where purchase information must be retained or rights requests handled, processing is required to meet legal obligations.
5. Google sign-in
Tally uses Google OAuth to authenticate you. Basic identity data identifies your account and links your online backups. We do not receive your password or request access to Gmail, Google Drive, contacts or calendar. Our use of information received from Google APIs complies with the Google API Services User Data Policy, including its Limited Use requirements.
6. Service providers
- Supabase: authentication, storage, database and server services.
- Google: Google OAuth and store services where applicable.
- OpenAI: image analysis and generation of proposed receipt fields.
- RevenueCat: subscription validation and technical management using internal identifiers and transaction data.
We do not sell personal data. Each provider applies its own terms and security safeguards.
7. Receipt scanning
The image is sent for analysis only when you activate the feature. Results may contain errors and must be reviewed before saving. Avoid scanning documents containing personal or financial information that is not needed to record the expense.
8. Retention and deletion
Account data, expenses and online backups are retained while you keep the account or until you request deletion, unless a legal obligation requires specific information to be kept longer. Store or payment providers retain their own records under their obligations. See how to delete your account.
9. Rights and choices
You can review and correct expenses in Tally and delete your account from Settings. You may also request access, correction, deletion, restriction, objection or portability through the contact email. If you live in the European Economic Area, you may complain to your data-protection authority.
10. Security and transfers
We apply reasonable technical and organisational measures to protect information. Some providers may process data outside your country and are responsible for applying the legal mechanisms relevant to their services. No system offers absolute security.
11. Children and changes
Tally is not directed to children under 16. We may update this policy when the product, law or providers change; the current version will be published here and material changes will be communicated reasonably.