Privacy Policy
Last updated September 2026. Plain-language version below — the short of it: your budget is yours, and it stays that way.
1. What we collect
We collect the information you give us directly: your email address, the income, expenses, receipt attachments, categories and goals you enter, and account preferences such as currency, language and display settings. The app also keeps authentication state and working copies in browser storage for sign-in, offline use and pending synchronization. We do not ask for bank logins, card numbers, or account numbers.
2. How we use it
Your budgeting data is used to power the app itself — to show your balances, calculate your budget, and sync your information across your devices. We do not use your financial data to build advertising profiles, and we do not sell it to third parties.
3. Who can see your data
Your personal workspace is accessible only to your account. A Household workspace is shared only with active members according to Rules-enforced roles. We use Firebase for authentication, database hosting and optional analytics; our hosting provider to serve the app; Resend for invitations and contact messages; Open Food Facts family databases for barcode lookups; an optional INCI evidence provider and optional food-knowledge provider for unidentified label terms; and a tessdata CDN to download the OCR language model you select on first use. Label photos remain on-device, but extracted label text is sent to SmartJib’s analysis endpoint and may be sent to the configured evidence provider. Each processor receives only data needed for that operation. We do not sell your data. Unidentified ingredient names also contribute to a bounded, rate-limited hash aggregate used to improve local recognition; that aggregate stores no raw term, label, barcode, product/account identity, image, or IP.
4. Analytics
Optional analytics is off until you agree. If enabled, SmartJib records limited product-usage events and page paths. A strict allowlist removes financial amounts, balances, categories, receipt data, contact text and other free-form financial content before an event can leave the app. You can withdraw consent from Profile settings.
5. Data retention
We keep workspace data while your account is active. Account-scoped browser caches, reviewed label overlays, and pending synchronization records can remain on a device after sign-out, but are not reused by another account; clear site data to remove them immediately. Deletion removes data SmartJib can verify and reports incomplete steps. Providers may retain limited operational logs under their policies.
6. Your choices
You can export your budgeting history as CSV or a complete, restorable JSON backup from Profile at any time. You can also delete your data or account from Profile; destructive actions report partial failures and remain retryable.
7. Changes to this policy
If we make meaningful changes to how we handle your data, we'll let you know in the app before the changes take effect.
8. Contact us
Questions about this policy or your data? Reach out any time from our Contact page.