Sense Privacy Policy & Terms
Last updated: 8 August 2026
The short version: Sense is a privacy-first expense tracker. Your money data
is stored on your device and, for accounts, backed up to the cloud — always
masked and truncated on your device before it's uploaded. We don't sell your
data and we don't show ads. Your phone number, account number, and card details are
stripped on your device before anything is sent, and when AI is used you're asked
before that happens.
1. What we store, and where
- On your device (default): transactions, budgets, categories, receipts
(photos), and settings live in your browser's local storage / IndexedDB. Nothing is
sent anywhere until you act. Receipt photos never leave the device.
- Cloud sync (accounts): accounts get cloud sync on by default so your
data is backed up across devices. Before anything is uploaded it is masked and
truncated on your device — free-text notes are stripped of account/card/reference
numbers first, so the server copy never holds your raw bank details. You can turn sync
off anytime in Settings → Preferences → "Cloud Sync".
2. What we send to servers, and why
You can turn all of this off. Settings → Preferences → "AI features" switches
AI off entirely: no digest, no Ask, and no AI-assisted SMS parsing — everything runs on
your device.
- Parsing bank SMS runs on your device. If an SMS doesn't match our on-device
parser, we may send a masked version of that text to an AI service (Groq) to
help parse it — account numbers, card details, and phone numbers are stripped on your
device first, you're asked before it's sent, and this is gated by the AI toggle.
- AI "Monthly digest": we send only aggregates (category totals and
total spent), never individual transactions.
- "Ask your money": we send your question and the list of your
categories so it can be translated into a query. Your transactions stay on your
device — only the query runs locally against them.
- Exchange rates: we may fetch current exchange rates from public rate
services (e.g.
api.frankfurter.dev, open.er-api.com) to
convert multi-currency totals. This sends only currency codes.
- Aggregate usage counters (counts only, e.g. "how many parses") may be
recorded to improve the parser. No personal data.
- Cloud sync (accounts): synced transactions are masked before upload
— merchant, amount, category and date are stored normally, but free-text notes are
stripped of account/card/reference numbers and capped in length on your device first.
Sync can be turned off in Settings → Preferences.
3. Authentication
Accounts are handled by Supabase Auth (email/password or Google). We store only
your email and an encrypted credential token. You can sign out and delete local data
from Settings at any time.
4. Security
All traffic is encrypted in transit (HTTPS/TLS). Passwords are hashed by our auth
provider. Cloud data is stored with role-based access controls; only you can read your
own rows. There is no end-to-end client-side encryption today, but we are evaluating
AES-GCM device-side encryption of the most sensitive fields (roadmap Phase 3 #6).
5. Your rights & deletion
- Export: Settings → Data → "Download backup" exports all your data as JSON.
- Delete: Settings → "Clear All Data" wipes everything on this device. To
delete your account and all cloud data, use Settings → Danger zone → "Delete
Account" — it removes your cloud data and account in one step and wipes this
device. (If you can't log in — deleted the app, forgot your password — use the request
form below.)
- No tracking: we don't use third-party analytics or advertising trackers.
No-app-required request — deleted the app, can't log in, or just have a question?
Use this form. For deletion we'll close the account and remove its cloud data on request;
we respond via the email you give. Submitting either option alerts the developer via
Telegram so requests don't sit unnoticed — this is the one place in Sense a third-party
messaging service (Telegram) is used, and only for messages you choose to send through
this form.
Deletion alerts are content-free (no personal details are sent to
Telegram; your email/message stay only in our database).
Questions/feedback DO
include your email and message in the Telegram alert, since the point is enabling a reply.
6. Children
Sense is not directed to children under 13, and we don't knowingly collect their data.
7. Terms of use
- Sense is provided "as is" for personal finance tracking. We are not a bank and
don't provide financial, legal, or tax advice.
- You're responsible for the accuracy of the information you enter. While our
SMS parser aims to be reliable, always verify amounts and don't rely on it for
mandatory financial decisions.
- You may not use Sense for unlawful purposes or to harm others.
- We may update these terms; continued use after changes means acceptance.
8. Contact
Questions? Use the request form above, or the contact details shown on the app's
Settings screen. We respond via the email you provide.
← Back to Sense