ExpenT Privacy Policy

Effective 28 September 2026

ExpenT is provided by Aceaum Solutions Private Limited, India. This policy explains how the ExpenT Android application handles information on a user's device.

Information processed

ExpenT may process transaction amounts, merchant or payee names, dates, payment modes, buckets, categories, notes, payment-alert text, source filters, settings, and receipt files. This information is used to capture, organise, review, report, export, back up, and restore expenses.

SMS expense capture

If the user agrees and grants SMS permission, ExpenT examines new incoming messages on the device to identify outgoing payments, bank debits, refunds, and reversals. Matching expenses enter the private local ledger; upcoming bills remain separate. Capture history retains received source text and its processing decision locally for up to 60 days, including rejected messages. SMS permission is optional; manual entry remains available.

Optional notification capture

Notification access is off by default. If the user accepts ExpenT's disclosure, enables Android notification access, and selects WhatsApp or email source apps, ExpenT examines new visible notifications from those apps for payment-related wording. Optional sender and keyword filters narrow the notifications considered. Text excluded by source filters is not processed. Text admitted to capture processing may remain in local capture history for up to 60 days, including when the payment parser rejects it.

ExpenT does not sign in to WhatsApp or email services and does not read old message or email history. Access can be disabled in ExpenT or Android Settings.

Local storage and limited feedback service

The alpha uses the Internet only when a tester opens the feedback portal and chooses to submit feedback. The service receives a pseudonymous installation identifier and public key for secure handoff, plus the feedback text and category supplied by the tester. It does not receive the user's ledger, SMS content, notification content, receipts, profile, backup files, or backup password. This release has no advertising, analytics, remote logging, online account, or cloud ledger synchronisation. Aceaum does not sell this information.

Camera, photos, and receipts

Camera and photo selection are used only when the user chooses to scan or attach a receipt. Google ML Kit processes the selected image on the device to suggest the amount, merchant, date, reference, and payment mode. The user reviews and may edit every suggestion before saving. Text recognition is bundled with ExpenT and runs locally; ExpenT does not send the image or recognized text to Aceaum or Google.

The file is copied into private application storage. ExpenT uses Android's user-controlled picker rather than broad photo-library or file-system access.

Sharing, exports, and backups

Information leaves ExpenT only after the user starts an export, transaction share, receipt share, or local backup and chooses a destination. New full backups use a password-encrypted .expent container. The user chooses the password; ExpenT and Aceaum do not store it and cannot recover it. Android's document picker can save the encrypted file to device storage, Google Drive, OneDrive, or another installed provider without giving ExpenT access to browse that provider. Information outside ExpenT is governed by the selected recipient or storage provider. Automatic Android cloud backup is disabled.

Upcoming payments and receipt packages

Bill amounts, due dates, original source messages and resolution history remain in private storage and backups. Resolving or dismissing a reminder stops alerts but retains its history; it does not record an expense. Filtered receipt ZIPs contain only the selected transactions and their attached files. Report ZIPs and older compatible backup ZIPs are not password-encrypted: share only with intended recipients.

Retention and deletion

Active records remain until deleted. Deleted expenses and privately stored receipts remain recoverable in Archive for up to 60 days and are then permanently purged. Clearing application storage or uninstalling removes ExpenT's private data immediately. Previously exported or shared files must be deleted separately.

This release does not create a conventional tester username/password account and Aceaum holds no server copy of the ledger. If a tester opens the feedback portal, Aceaum keeps a pseudonymous installation identity and any feedback the tester submits. A tester may ask Aceaum to remove or de-identify those limited server records, subject to applicable legal, security, and audit retention needs. Deleting them does not delete the ledger stored on the tester's phone.

Security and choices

ExpenT uses Android private storage and password-encrypted, integrity-checked .expent backups. Older compatible backup ZIPs and report or receipt ZIP exports are not encrypted. Users should protect their phones, backup passwords, and exported files. Users may decline or revoke optional permissions and may review, edit, exclude, archive, restore, export, or delete records.

Children

ExpenT is a general-audience personal expense utility and is not directed to children.

Changes and contact

The effective date will change when this policy is revised. Developer: Aceaum Solutions Private Limited, India. Support and privacy email: expentsupport@aceaum.com.