Privacy policy
Last updated
This policy explains what DriveBudget collects when you use the app, why, who it is shared with, and the rights you have over it. We have tried to write it in plain language rather than hide the real answer behind boilerplate.
Who is responsible for your data
DriveBudget ("DriveBudget", "we", "us") is the controller responsible for the data described on this page. If you have any question about your data, write to support@drivebudget.app and a person will answer you.
What we collect
Everything below exists to run the app you asked for. There is no data collected that the app does not use.
What you give us directly
- Account information. Your email address, and if you sign in with a password, a securely hashed version of it. If you sign in with Apple or Google, we receive the identifier and email address they provide, and, on your very first sign-in with Apple, the name Apple shares with us.
- Vehicle details. The make, model, year, mileage and odometer reading of each car you add.
- Cost and budget information. The amounts you set for fuel, insurance, loan, maintenance, repairs, parking and other costs, and every individual expense you log: its category, amount, date, and any note you attach to it.
- A receipt photo, if you choose to scan one. Scanning is optional and entirely yours to start: tapping Scan receipt opens the camera or your photo picker, and the one photo you pick is read by Google's Gemini API to suggest the amount, date, merchant and category. The suggestion appears in the form for you to check and confirm — only the expense you save is kept. The photo itself is not stored, and typing an expense in by hand works exactly as before.
- Support and feedback. Anything you write to us directly, or submit through the in-app feature request form.
What we generate from that
- Your cost analysis. The monthly and yearly totals, category breakdowns, Car Financial Score, and 1, 3 and 5-year projections are all calculated from the data above and stored against your account so they load instantly next time.
- Subscription status. Whether you have an active subscription, which plan, and when it renews or expires. This comes from Apple or Google through our subscription platform, RevenueCat — described below.
What is collected automatically
- Product usage and session diagnostics. Which screens and features you use, and anonymized interaction replays (taps, navigation flows, and UI diagnostics via PostHog) to understand where users encounter friction, crashes, or technical bugs. In compliance with Apple App Store Review Guideline 5.1.2 and strict privacy standards, all sensitive text input fields, passwords, personal notes, and payment details are automatically masked on-device and are never captured or stored.
- Crash and error data. If something in the app fails, a technical record of what happened is logged against your account so we can find and fix it. This can include your device type and app version, but not the contents of your expenses.
What we do not collect
- We do not collect your precise location.
- Your photo library stays yours. Nothing there is browsed, read or uploaded — the camera and photo picker open only at your tap on Scan receipt, and only the single photo you pick is read.
- We do not use advertising identifiers, and nothing in the app is built for cross-app tracking.
- We do not sell, rent or trade your data to data brokers, insurers, car dealerships or advertisers. Ever.
Third parties we use
We use a small number of infrastructure providers to run the app. Each receives only what is necessary for its specific job:
| Provider | Purpose | Data shared |
|---|---|---|
| Supabase | Database and user authentication | Your account, vehicle and expense records, stored encrypted at rest. |
| RevenueCat | In-app subscription management | An anonymous app user ID and receipts from Apple or Google verifying active purchases. |
| PostHog | Product analytics, session diagnostics, and error reporting | Named in-app interaction events, diagnostic error traces, and masked session interaction telemetry. All sensitive inputs and personal data are masked on-device. |
| Google (Gemini API) | Reading a receipt you choose to scan | The one photo you pick, for a single request, so the amount, date, merchant and category can be suggested back to you. Not retained afterwards, and nothing is sent unless you start a scan. |
| Apple / Google | App distribution and in-app purchase billing | Payment processing is handled entirely by Apple and Google; DriveBudget never sees or stores credit card numbers. |
Where your data is stored
Our backend services and database are hosted in secure data centers. Data in transit is always encrypted with TLS, and stored data is encrypted at rest.
How long we keep your data
We keep your data for as long as your account is active. If you delete your account, everything attached to it (vehicles, expenses, settings, scores) is permanently and irreversibly deleted from our database immediately.
Your rights
Depending on where you live (including the EU/EEA, UK, and California), you have specific legal rights over your personal data:
- Right to access: You can request a full copy of the data we hold about you.
- Right to rectification: You can correct any inaccurate information in the app or ask us to do it.
- Right to erasure ("right to be forgotten"): You can delete your account at any time in Settings > Delete Account, or by emailing support@drivebudget.app. See our data deletion page for full details.
- Right to access: You can view and manage all your logged expenses and vehicle records directly in the app at any time.
Contact
For any privacy question, data request or concern, contact us directly at support@drivebudget.app.