Privacy Policy
Last updated: August 22, 2026
This Privacy Policy explains how Family Ledger ("the App," "we," "us," or "our"), developed by Polash Mahmud, collects, uses, discloses, and protects information when you use our mobile application. By using Family Ledger, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the App.
1. Information We Collect
a) Account Information
When you sign up or sign in, we collect your name, email address, and profile photo via Firebase Authentication and/or Google Sign-In. This is used solely to create and secure your account.
b) Financial & Household Data You Provide
Expenses, income entries, budgets, categories, bills, rent reminders, notes, and any other financial records you manually enter or import into the App are stored securely in our cloud database (Firebase Firestore) associated with your account.
c) Photos & Media
If you use the Camera or choose an image from your device gallery, that photo (e.g., a receipt or profile picture) is stored and linked to the relevant record. We do not access your camera or gallery unless you initiate that action.
d) SMS Data (Read-Only, On-Device)
If you grant SMS permission, the App can read transaction-related SMS messages already present on your device (e.g., bank or mobile-banking alerts) to help you quickly add expenses by auto-detecting the amount and merchant. This happens only when you actively choose to import from SMS. We do not collect, upload, or store the content of your text messages on any server, and we do not read messages unrelated to financial transactions.
e) Google Drive Data
If you connect your Google account, the App may request limited Google Drive access to save backups or export PDF reports directly into a folder in your own Drive. We only access files created by the App and never browse or read your other Drive files.
f) Voice Input
If you use the voice-entry feature, your spoken audio is converted to text using your device's speech recognition service to fill in an expense description. We do not store audio recordings.
g) Device & Usage Information
We automatically collect limited technical data such as app version, device type, crash logs, and analytics events (via Firebase Analytics) to help us fix bugs and improve the App. A push-notification device token (via OneSignal and Firebase Cloud Messaging) is also collected so we can deliver bill and rent reminders.
2. Permissions Explained
Family Ledger requests the following device permissions. Each is used strictly for the purpose described — never in the background or for advertising.
| Permission | Purpose |
|---|---|
| Camera | Take a photo of a receipt or update your profile picture. |
| Photos / Storage | Attach an existing photo from your gallery and save/export PDF reports. |
| Microphone | Enable voice-to-text entry of expenses. |
| SMS (Read only) | Optionally auto-detect transaction amount/merchant from bank SMS already on your device. |
| Notifications | Deliver bill, rent, and budget reminder alerts. |
| Exact Alarm / Boot | Ensure scheduled reminders fire on time and survive a phone restart. |
| Biometric (Fingerprint/Face) | Lock the App locally; biometric data is processed by your device's OS and never sent to us. |
| Google Drive Access | Back up your data and export reports to your own Google Drive. |
3. How We Use Your Information
- To provide, maintain, and improve the App's core budgeting and expense-tracking features.
- To sync your data securely across your devices via your account.
- To send you bill, rent, and budget notifications you have enabled.
- To generate AI-assisted budgeting suggestions using the descriptions/amounts you provide (see Third-Party Services below).
- To diagnose crashes, fix bugs, and understand feature usage in aggregate.
- To respond to your support requests.
We do not sell your personal or financial data, and we do not use your data for third-party advertising.
4. Third-Party Services
Family Ledger relies on the following trusted service providers, each governed by their own privacy policy:
- Firebase (Google) — Authentication, Firestore database, Analytics, Cloud Messaging.
- Google Sign-In & Google Drive API — optional sign-in and backup/export to your own Drive.
- OneSignal — push notification delivery.
- Google Gemini API — powers the optional in-app AI assistant; only the text you submit to the assistant (e.g., a question or expense description) is sent for processing.
These providers may process data on servers located outside your country, under their respective security and privacy safeguards.
6. Data Security
We use industry-standard measures to protect your data, including encrypted transport (HTTPS/TLS), Firebase security rules that restrict access to your own data, and encrypted on-device secure storage for sensitive values such as API keys. Biometric authentication data never leaves your device. While we work hard to protect your information, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Data Retention & Deletion
We retain your data for as long as your account is active, so you can access your financial history. You are always in full control of your data and can remove it at any time, in two ways:
a) Delete Your Data (keep your account)
Inside the App, under Settings → Data Management, you can delete individual expenses, budgets, bills, receipts, or clear all of your financial records in one action, while keeping your account and login active. This action is immediate and cannot be undone.
b) Delete Your Account (everything)
If you'd rather leave entirely, go to Settings → Account → Delete Account inside the App and confirm. This permanently deletes your profile, all financial records, receipt photos, bill/rent reminders, notification tokens, and AI assistant history from our systems. If you can't access the App, you may request the same by emailing polashmahmud@gmail.com from your registered email with the subject "Account Deletion Request."
Deletion requests are processed within 30 days. Anonymous, aggregated analytics that cannot be linked back to you may be retained, along with anything we are legally required to keep. Backups you manually saved to your own Google Drive are unaffected and can be removed directly from your Drive. Full step-by-step instructions are also on our dedicated Data Deletion page.
8. Children's Privacy
Family Ledger is intended for general household/family financial management and is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal data, please contact us so we can delete it.
9. Your Rights & Choices
- You can review, update, or delete your data at any time from within the App.
- You can revoke Camera, Microphone, SMS, or Notification permissions at any time from your device's system settings — the App will simply disable the related optional feature.
- You can disconnect Google Drive access from your Google Account settings.
- You can request a copy or deletion of your data by contacting us (see below).
10. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with a revised "Last updated" date. Continued use of the App after changes take effect constitutes acceptance of the revised policy.
11. Contact Us
If you have questions about this Privacy Policy or your data, contact:
Polash Mahmud
Email: polashmahmud@gmail.com