AutoTally

Privacy Policy

Effective 7 August 2026 · Last updated 7 August 2026

The short version

1. Who we are

AutoTally (“the app”, package com.autotally.app) is published by XypherLabs (“we”, “us”), the data controller for the limited processing described below.

Privacy questions, requests and complaints: xypherlabs.dev@gmail.com. We aim to respond within 30 days.

This policy explains what happens to information when you use the app. It applies to the AutoTally Android application only.

2. What stays on your device

AutoTally is local-first. The following is written to a private database inside the app’s own storage, which no other app can read, and is not transmitted to us or to anyone else:

Uninstalling the app, or clearing its storage from Android settings, permanently deletes all of it. Because it never leaves your device, we cannot recover it for you.

3. Notification access and auto-capture

AutoTally’s main feature reads the notifications your bank, card and payment apps already post to your phone, and turns them into transaction records. This is optional and off until you grant it.

What it reads

When you enable notification access, Android delivers notifications to the app. AutoTally only processes notifications posted by messaging apps and financial apps (banks, cards, wallets). Notifications from other apps are discarded without being stored.

What it does with them

The notification text is analysed entirely on your device, by pattern matching built into the app, to extract an amount, a direction (money in or out), a merchant and — where present — an account reference. No notification content is uploaded, transmitted, shared or used for advertising. There is no cloud parsing step.

What it does not do

Turning it off

You can revoke notification access at any time from Android Settings → Notifications → Device & app notifications (the exact path varies by manufacturer), or switch auto-capture off inside AutoTally’s own Settings. Capture stops immediately; records already created stay on your device until you delete them.

4. What is collected, and by whom

The app uses Google services for stability, measurement and advertising. Those services collect the data described below directly from your device, under Google’s own privacy policy. We see only aggregated reports.

ServiceWhat it collectsWhy
Google AdMob
(advertising)
Advertising identifier, IP address, device and app information, ad interactions and approximate location derived from IP To show the banner and full-screen ads that fund the app, to measure them and to limit repetition
Firebase Analytics
(usage measurement)
A randomly generated app-instance identifier, plus events such as screens opened, onboarding steps completed, permissions granted or denied, whether a capture succeeded or failed, and features used. Google automatically attaches approximate country, language, device model and OS version To understand which features are used and where the app fails, so it can be improved
Firebase Crashlytics
(stability)
Crash and error reports: stack traces, device model, OS version, app version, and a crash-instance identifier To find and fix crashes
Firebase Remote Config App and device information needed to deliver configuration values To adjust app settings without shipping an update

Not included in any of this: your transaction amounts, merchants, balances, account details, notes, or the content of any notification. Analytics events record that something happened — never the financial detail of what.

5. Merchant logos (optional)

If “Merchant logos” is switched on in Settings, AutoTally tries to show a brand’s icon next to a transaction. It resolves that icon in this order:

Never sent in that request: the amount, the date, your account, your balance, the notification text, or anything identifying you. Only a public brand domain.

Switching the setting off stops all lookups and deletes the logos already downloaded.

6. Things you choose to send

Back up to Drive

“Back up to Drive” creates a single backup file containing your entire ledger — transactions, accounts, budgets, goals and mandates — and hands it to the Google Drive app for upload to your own Google account. Your app-lock PIN is deliberately excluded.

Please note: the backup file is not encrypted by AutoTally beyond its container format, and once it reaches Drive it is governed by Google’s terms and by your own Google account security. This is the one action that intentionally moves your financial data off the device. It happens only when you tap it.

Export and share

Exports (PDF statement, CSV, Excel) are written to your device and go only where you choose to send them. We receive nothing.

Restore

Restoring reads a backup file you select through Android’s document picker. The file is read locally.

Rate the app

“Rate AutoTally” opens the Google Play Store. Anything you do there is between you and Google.

7. What we never ask for

The app declares exactly one runtime Android permission (posting notifications) alongside internet access and a restart receiver. Auto-capture runs on a special access you grant yourself in system settings.

8. Legal bases for processing (EEA and UK)

Where the GDPR or UK GDPR applies, we rely on the following bases:

9. Your rights

If you are in the EEA, the UK or Switzerland you have the right to access, rectify, erase, restrict, port and object to the processing of your personal data, and to withdraw consent at any time.

How these work in practice for an app of this design:

10. United States privacy rights

We do not sell personal information for money. If you have enabled personalised advertising, the sharing of advertising identifiers with Google for cross-context behavioural advertising may be treated as a “sale” or “sharing” under the California Consumer Privacy Act and similar state laws.

To opt out, open Settings → “Ad privacy choices” inside the app where available, or use Android Settings → Privacy → Ads to opt out of ad personalisation and reset your advertising ID. California residents may also exercise rights of access and deletion by contacting us; note that the financial data the app holds is stored only on your own device and is not accessible to us.

We do not knowingly process sensitive personal information for the purpose of inferring characteristics about you.

11. Children

AutoTally is a personal finance tool intended for adults. It is not directed to children, and we do not knowingly collect personal information from children under 13 (or under the applicable age of digital consent in your country, which is up to 16 in parts of the EEA). If you believe a child has provided information through the app, contact us and we will act on it.

12. Retention

13. Security

Your data sits in the app’s private storage area, which Android isolates from other apps. You can add an app lock with a PIN and, where your device supports it, biometric unlock; the PIN is stored as a one-way hash and never leaves the device.

No method of electronic storage is perfectly secure. In particular, a device that is rooted, shared or unlocked, or a backup you upload to a cloud account, sits outside the protections the app can offer.

14. International transfers

The Google services listed above process data on servers that may be located outside your country, including in the United States. Google relies on the European Commission’s Standard Contractual Clauses and equivalent safeguards for those transfers. Your on-device financial data is not transferred anywhere.

15. Third-party services

The app integrates the following. Their handling of data is governed by their own policies:

16. Changes to this policy

We may update this policy as the app changes. The “Last updated” date at the top will always reflect the current version, and material changes will be announced in the app or in the Play Store listing. Continuing to use AutoTally after an update means you accept the revised policy.

17. Contact

Questions, requests or complaints about privacy:

XypherLabs
xypherlabs.dev@gmail.com