Privacy Policy
Last updated: July 19, 2026
Who we are
GigReceipts is made by Pay By Cents LLC, based in San Jose, California. This policy explains what the GigReceipts mobile app does and doesn't send off your device, and who it's shared with when it is.
There are no accounts
GigReceipts doesn't ask for your name, email address, or phone number, and there's no sign-up or login. Instead, the app identifies your install using an identifier your phone's operating system already provides (Android ID or iOS's identifier for vendor). This identifier resets automatically if you uninstall and reinstall the app. The one exception: if you connect Google Drive backup on Android, Google's own sign-in screen briefly shows your Google account name and email as part of its standard consent flow — GigReceipts doesn't request, receive, or store that information. See "Cloud backup" below for details.
What stays on your device
All of the following live in the app's local, on-device storage and are never uploaded anywhere — to us or anyone else — unless you turn on Backup & Restore (see below):
- Your receipts and line items
- Photos of receipts you've scanned
- Exported reports (Excel, PDF, and Receipt Book files) — these are generated and shared entirely on your device, and are never part of a cloud backup
- Your deduction settings and category preferences
Cloud backup (optional)
GigReceipts can back up your receipts so they survive a lost phone or a move to a new device. This is entirely separate from our servers — your data goes straight from your device to your own iCloud or Google Drive account, using storage you already have.
- On iPhone — backup runs automatically to a private, app-only folder in your iCloud account (the same iCloud already signed in on your device). There's no separate sign-in step; it follows your device's existing iCloud settings.
- On Android — backup is off until you explicitly tap "Connect Google Drive." Google's own sign-in screen will show your Google account name, email, and photo — that's Google's standard sign-in screen, not something GigReceipts asks for. GigReceipts itself never receives, stores, or sends that information anywhere; the app only keeps a scoped access token limited to files GigReceipts itself creates (Google's `drive.file` permission), never your existing Drive files or folders. You can disconnect anytime from Backup & Restore in the app menu, which stops future backups.
- What's included — your receipts, line items, receipt photos, deduction settings, and merchant lookup cache.
- What's never included — your device identifier, unlock status, or AI Assist credit balance. Those stay tied to our servers only and are re-checked separately after any restore.
- Manual export — you can also download a single backup file (a .zip with your data and photos) and share or store it however you choose, or restore from a file you previously saved.
What is sent off your device, and why
Some data has to leave your device for the app's core features to work — scanning, categorizing, and (optionally) AI-assisted cleanup. Here's exactly what each feature sends:
| Feature | What's sent | Why |
|---|---|---|
| Every request to our servers | A session token that carries your device identifier and account status (unlock status, scan counts) | Authenticates the request and enforces free-tier limits — this is attached automatically to nearly every server call, not just the specific features below |
| Receipt scanning | Recognized text and its position on the page (no photo) | To identify the merchant, date, and total automatically |
| Automatic OCR help (on by default, no photo involved) | The same recognized text from the scan above — never the photo — sent only when GigReceipts can't confidently resolve two or more of merchant, date, total, or category on its own | At GigReceipts' discretion, we send that text to a third-party AI provider (currently Google) to fill in the fields our own matching couldn't. Free of charge to you; you can turn this off anytime in Settings. |
| AI Assist (optional, credit-metered) | The receipt photo itself, only when you tap "AI Assist" | Sent to a third-party AI vision provider (currently Google; we may also use providers like OpenAI or xAI/Grok) to read messy or handwritten receipts and split out line items |
| Merchant categorization | Merchant name and, if present, line items | To suggest the right expense category |
| Spending estimates | How many receipts you've scanned per category, per month — counts only | To forecast your scanning pace on the Estimates card. Never merchant names, amounts, or images. |
| Usage quality tracking | Which method finalized a receipt (automatic, AI-assisted, or manual) and which fields you edited | To improve scan accuracy over time. Never the receipt content itself. |
| Purchases | The purchase token or transaction ID issued by Apple/Google when you unlock the app | Verified against Apple/Google to confirm a genuine purchase |
| Device attestation | A token generated by Google Play Integrity (Android) or Apple DeviceCheck (iOS) | Confirms requests come from a genuine copy of the app on a genuine device, so free-tier limits can't be trivially bypassed |
Who we share data with
- AI providers — currently Google (Gemini); we may also use providers like OpenAI or xAI/Grok, and may change or add providers over time without notice. Whichever provider is active receives: the receipt photo when you use AI Assist; and recognized receipt text when automatic OCR help kicks in.
- Apple and Google — separately, receive device-attestation and purchase-verification tokens generated by their own SDKs (a different Google service than the AI features above), used only to confirm your device and purchases are genuine.
We don't sell your data, and we don't share it with data brokers or advertisers. GigReceipts has no ad integrations.
How long we keep things
- Your device record — kept for as long as the app is installed, to enforce free-tier limits, unlock status, and prevent abuse. It's tied to your device identifier only, never your name, email, or receipt content, and isn't deleted automatically; uninstalling the app stops it from being linked to any further activity.
- AI Assist results — if you use AI Assist, the extracted result (merchant, date, items, totals) is cached for 24 hours so you're not double-charged a credit if you back out and reopen a pending scan. It's automatically deleted after 24 hours.
- Operational logs — we keep standard server logs (timestamps, request outcomes, error details) to run the service, debug problems, and detect abuse like scripted clients exceeding fair-use limits. These aren't used to build a profile of your activity.
- Cloud backup data — stored in your own iCloud or Google Drive account, not ours, so it's kept for as long as you keep it there. Deleting it is entirely up to you, through Apple's or Google's own storage management, or by disconnecting/deleting it from the app.
Your choices
Because there's no account, there's nothing to "delete" server-side beyond uninstalling the app, which severs the device identifier from any further activity. There are two separate AI features, and each is your choice: the automatic OCR-text help described above is on by default and can be turned off entirely in the app's Settings menu (this also stops your OCR text from going to our AI provider at all, not just the prompt); and the photo-based "AI Assist" is always a manual, per-scan choice — you can always use standard scanning instead, which never sends the receipt photo anywhere. On Android, Google Drive backup is off by default and can be disconnected anytime from Backup & Restore in the app menu. On iPhone, backup follows your device's iCloud settings — you can turn iCloud access off for GigReceipts from your iPhone's Settings app.
Age requirement
GigReceipts is intended for users 18 and older. It's not directed at children, and we don't knowingly collect data from anyone under 18.
Changes to this policy
If this policy changes, we'll update the date at the top of this page.
Contact
Questions about this policy or your data? Email support@gigreceipts.app.