Legal
Expenser Privacy Policy
Expenser is an expense-tracking app for iPhone and Apple Watch. This policy explains what data the app handles, where it goes, how long it remains, and the choices available to you.
Summary
Expenser does not include advertising SDKs, third-party analytics, or cross-app tracking. IAM CLOUD.IA LLC does not operate an Expenser account system or a separate server that receives your ledger. Your data is handled on your devices, in your Apple iCloud account when CloudKit or iCloud Drive features are used, and by Wise only when you choose to connect the Wise integration.
Data the app handles
Financial and transaction information
The app stores the records you create or import, including amounts, currencies, transaction types, dates, payment methods, categories, merchants, payer names, notes, tags, recurrence settings, and reconciliation status. These records are stored locally and may sync to your private CloudKit database. Records in a ledger you deliberately share are available to the participants you invite through Apple CloudKit Sharing.
Receipts and other user content
If you choose a receipt or photo, the image is attached to the corresponding transaction. It is stored with the app’s local data and may sync through CloudKit with that record. Expenser requests access only when you use the receipt feature. Receipt images are not included in the app’s JSON backup export.
Location
The Apple Watch app can request your precise location when you use location-assisted expense logging. Apple reverse-geocoding services convert the temporary coordinates into a place name. The watch can transfer the coordinates and place name to your paired iPhone; Expenser stores the resulting place name with the expense, but does not persist the raw coordinates in its ledger. The stored place name may sync through CloudKit. Location is not used for advertising or tracking.
Wise integration
Connecting Wise is optional. The app stores the read-only Wise API token in the device Keychain and sends it directly to api.wise.com to retrieve the selected Wise profile and recent account activity. Requests may include the Wise profile identifier and the date from which activity should be returned. Imported transaction titles, descriptions, amounts, currencies, dates, identifiers, and statuses become Expenser ledger records and may then sync through CloudKit. IAM CLOUD.IA LLC does not receive the token or proxy these requests through its own server. Wise processes these requests under its own privacy terms.
Backups
When you create a backup, Expenser writes a JSON file to the app’s iCloud Drive container when available, or to local app storage otherwise. Backups contain categories, merchants, and transaction fields. They exclude receipt images and stored location names.
Diagnostics and notifications
Expenser uses Apple push notifications to receive CloudKit change notifications. The app does not include a third-party crash-reporting or analytics SDK. Apple may process service, device, diagnostic, iCloud, notification, and App Store information under Apple’s own privacy terms.
Purposes and legal choices
The data described above is used only to provide features you request: saving and organizing expenses, synchronizing and sharing ledgers, attaching receipts, adding a location label, importing Wise activity, creating backups, and keeping devices up to date. Expenser does not sell personal data and does not use it for targeted advertising or tracking.
Optional features are controlled by you. You can decline or withdraw camera, photo-library, location, notification, iCloud, or Wise access without using those features.
Retention and deletion
Local ledger data remains until you delete individual records or remove the app and its local data. CloudKit data remains in your iCloud account until you delete the corresponding records or remove Expenser’s stored iCloud data through Apple’s iCloud storage controls. Shared data can remain available to other participants until the share owner stops sharing or deletes it. Backup files remain until you delete them in Expenser’s Backup Data screen or from iCloud Drive.
Disconnecting Wise deletes the stored API token and stops future imports; transactions already imported remain in the ledger until you delete them. Resetting Wise transactions removes the imported copies and downloads them again while the integration remains connected.
Withdrawing consent and changing permissions
You can change app permissions in iPhone Settings under Privacy & Security or under Apps > Expenser. You can disable Expenser’s iCloud access and manage or delete its iCloud data from your Apple Account’s iCloud storage settings. In Expenser Settings you can disconnect Wise, stop an active CloudKit share, delete backups, and remove ledger records. Removing a permission stops new use of that permission but does not automatically erase records already saved from it.
Sharing and service providers
Data is disclosed only as needed for the features you select:
- Apple: local platform services, CloudKit sync and sharing, iCloud Drive backups, push notifications, photo selection, location and reverse geocoding, and App Store distribution.
- Wise: profile and activity API requests when you connect a Wise token.
- People you invite: records in a ledger you explicitly share through CloudKit Sharing.
No data is shared with advertising networks or data brokers.
Children
Expenser is a general-audience finance utility and is not directed to children. The app does not knowingly create developer-held profiles of children.
Security
Wise tokens are stored in the Apple Keychain. CloudKit and iCloud Drive transfers use Apple’s platform security, and Wise requests use HTTPS. No system can be guaranteed completely secure; protect access to your devices, Apple Account, shared-ledger invitations, and Wise token.
Changes to this policy
This policy may be updated when Expenser’s features or data practices change. The effective date above will be revised, and material changes will be reflected in the policy available from the app and its App Store listing.
Contact
For privacy questions or requests, contact IAM CLOUD.IA LLC through the support link on Expenser’s App Store product page or the repository’s maintainer contact at github.com/GINNOV/Expenser. Do not post financial records, API tokens, receipt images, precise locations, or other sensitive data in a public issue.