Privacy Policy
Last updated: 02 January 2026
1. Introduction
Welcome to KitaReceipt. We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our receipt management application.
2. Information We Collect
We collect information that you provide directly to us, including:
- Account Information: Email address, name, and password when you register for an account.
- Receipt Data: Images, merchant information, dates, amounts, categories, tags, and notes that you upload or enter.
- Usage Data: Information about how you interact with our application, including access times and pages viewed.
- Device Information: Browser type, operating system, and device identifiers.
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Process and store your receipt data securely
- Send you technical notices and support messages
- Respond to your comments, questions, and requests
- Monitor and analyze trends and usage patterns
- Detect, investigate, and prevent fraudulent transactions and other illegal activities
4. AI Processing
KitaReceipt uses Google's Gemini AI to automatically extract information from receipt images. When you upload a receipt image, it is sent to Google's AI services for processing. The extracted data is stored in your account and associated with your receipts. Google's AI processing is subject to Google's privacy policies and data handling practices.
5. Google Drive Integration
If you choose to enable Google Drive sync, we will access your Google Drive using the drive.file scope, which only allows access to files created by KitaReceipt. We create a dedicated folder to store your receipt backups and a spreadsheet containing your receipt data. We do not access any other files in your Google Drive.
6. Data Storage and Security
Your data is stored securely on Supabase infrastructure. We implement appropriate technical and organizational measures to protect your personal information, including encryption in transit and at rest, Row Level Security (RLS) policies, and secure authentication mechanisms. However, no method of transmission over the Internet or electronic storage is 100% secure.
7. Data Retention
We retain your personal information for as long as your account is active or as needed to provide you services. You can delete your receipt data at any time through the application. If you wish to delete your account entirely, please contact us.
8. Your Rights
You have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Disable optional features like Google Drive sync at any time
9. Third-Party Services
We use the following third-party services:
- Supabase: Database, authentication, and file storage
- Google Gemini AI: Receipt image processing and data extraction
- Google Drive: Optional backup and sync functionality
Each of these services has their own privacy policies that govern how they handle your data.
10. Analytics
We use a self-hosted instance of Umami Analytics to understand how our website is used. This is a privacy-friendly analytics tool that:
- Does not use cookies
- Does not collect personal data (no IP addresses stored)
- Does not track across websites
We collect only aggregate, anonymous data: page views, referrer sources, country, device type, and browser. This data is stored on our servers located in Indonesia and is not shared with third parties.
11. Cookies
We use essential cookies to maintain your session and authentication state. These cookies are httpOnly and secure, preventing access by client-side scripts. We do not use tracking or advertising cookies.
12. Children's Privacy
KitaReceipt is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. You are advised to review this Privacy Policy periodically for any changes.
14. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at the email address associated with your account or through our support channels.