Privacy Policy
Last updated: March 2, 2026
Your trust matters. This page explains what we collect, why we collect it, and how you stay in control.
1. What we collect
- Account details: name, email, login data, and account role.
- Receipt content: files you upload and fields like merchant, amount, date, notes, category, and warranty date.
- Proof-link data: link settings, views, and status (active, expired, revoked).
- Billing details: subscription IDs and plan data from Stripe. We do not store full card numbers.
- Usage and safety data: basic logs to run the app, prevent abuse, and fix issues.
2. Why we use your data
- to run your vault and show your receipts
- to create and manage proof links you request
- to send account emails or SMS (verification, reset, billing, reminders)
- to improve reliability, prevent fraud, and support users
- to run marketing messages if allowed by law and your settings
3. When we share data
We share only what is needed to provide the service:
- Stripe for payment processing and subscriptions
- Email and SMS providers for account and campaign messages
- OCR providers when auto-fill is enabled to read receipt text
- Legal requests if we must comply with law or protect our users
4. Proof links are shareable by design
If you share a proof link, people with that link may view data allowed by your settings. Use PIN, expiry, and revoke controls if you need tighter access.
5. Marketing choices
You can opt out of marketing messages. We still may send important service notices about your account, billing, or security.
6. Data retention and deletion
We keep data while your account is active and while needed for legal, billing, fraud, and safety reasons. You can delete receipts and revoke links. Some logs may remain for security and compliance.
7. Security
We use reasonable safeguards to protect your data. No system is 100% secure, so we cannot promise absolute security.
8. Children
ReceiptBasket is not for young children. If we learn that child data was submitted in error, we will remove it when required.
9. International processing
Your data may be processed in countries where our providers operate. We use safeguards required by law when data crosses borders.
10. Policy updates
We may update this policy. If changes are important, we will post a clear notice.
11. Contact
Questions or privacy requests? Use the Contact page.