Spndly
Spndly Privacy Policy
On this page
Summary
Spndly is an offline app. It has no servers, no accounts and no network client. Everything you record stays on your device in an encrypted database. Mauvtek LLC does not collect, receive, see, sell or share any of your data, and has no technical means to do so.
What data Spndly handles
All of the following is created by you, stored only on your device, and never transmitted to us:
- Expense records — vendor or merchant name, date, amount, the currency the receipt was issued in, and the category you assign.
- Receipt images — photos you capture with the camera or import from your photo library.
- Notes and descriptions you type, which may contain whatever you choose to write.
- Mileage trips — distances, dates and trip descriptions you enter.
- Payment cards — the labels you give your own cards (for example "Business Visa"). Spndly is not a payment app and does not process payments.
- Categories, settings and preferences you configure.
Spndly has no login, no account, no email capture, no advertising identifier and no device identifier used for tracking. There is no user ID of any kind, because there is no one to identify you to.
What we collect: nothing
To be explicit about categories App Store and Google Play ask about:
- No analytics or usage statistics.
- No telemetry.
- No crash or diagnostic reporting.
- No advertising, ad networks or advertising identifiers.
- No third-party SDK that transmits data off the device.
- No location tracking. (Mileage is a number you type; the app does not read GPS.)
- No contacts, calendar, microphone or health data access.
- No accounts, no sign-in, no passwords held by us.
Spndly contains no outbound network calls in its application code. Its components — local database and encryption, local file storage, PDF generation, charting, archiving, file selection, document scanning, OS sharing and secure key storage — all operate on the device.
Permissions and exactly why each is used
- Camera — used only when you choose to scan or photograph a receipt. The image is written into the app's own storage. It is not uploaded anywhere.
- Photo library (read) — used only when you choose to import a receipt photo you already have. Spndly reads the single image you select; it does not scan or index your library.
- Photo library (add) — used only when you choose to save a copy of a scanned receipt back to your own photo library.
Every one of these is triggered by a deliberate action you take. Declining any of them leaves the rest of Spndly fully usable; you can still enter expenses by hand.
On-device receipt scanning
When you scan a receipt, the text recognition that pulls out vendor, date and amount runs entirely on your device using the platform's built-in document scanning and machine learning capability. The receipt image is not sent to Mauvtek LLC, and it is not sent to a third-party scanning or OCR service. No internet connection is needed to scan. Extracted values are suggestions you can edit before saving.
When data leaves your device — only by your action
Your data leaves the device in exactly one way: when you explicitly export or share it. That includes CSV export, QuickBooks-format export, PDF reports and .zip backups containing your database and receipt images.
These files are handed to your operating system's standard share sheet, and you choose the destination — email, a messaging app, cloud storage, AirDrop, a local file, or anywhere else. From that moment, the file is governed by the privacy policy and terms of whichever service or person you sent it to, not by this policy. Mauvtek LLC is not a party to that transfer and never receives a copy. Exported CSV and PDF files are not encrypted, so treat them as sensitive.
Data retention and deletion
Mauvtek LLC retains nothing, because it receives nothing. On your device, your data is retained for as long as you keep it: there is no automatic expiry and no cloud copy.
- Delete an individual expense, trip, card or category in the app and it is removed from the local database.
- Uninstalling Spndly destroys the local database and all receipt images in the app's private storage. This is permanent and irreversible. We cannot restore it, because we never held a copy.
- Back up first. Export a
.zipbackup before uninstalling, switching phones, or resetting your device.
Any export you previously shared elsewhere stays wherever you sent it until you delete it there.
Children's privacy
Spndly is a general-audience expense tracking tool intended for adults managing personal or business finances. It is not directed at children, contains no content aimed at children, and has no advertising. Because the app transmits no data at all, Mauvtek LLC does not knowingly or unknowingly collect personal information from anyone, including children under 13, and therefore collects nothing subject to COPPA.
Your rights under GDPR, CCPA and CPRA
These laws govern what a business does with personal information it collects. Mauvtek LLC collects none from Spndly, so there is no profile, no record and no file on our side to act upon.
- Right to know / access. We hold no data about you. Everything the app holds is already in your hands, on your device, and viewable in the app.
- Right to deletion. You delete your data directly, by removing records in the app or uninstalling it. We cannot delete data we never received.
- Right to data portability. Exercise it yourself at any time using the app's CSV, PDF and backup export features. No request to us is required.
- Right to correct. Every field is editable in the app.
- Right to opt out of sale or sharing. We do not sell or share personal information, and never have. We do not engage in targeted advertising or profiling.
- Right to non-discrimination. The app behaves identically for everyone; there is no data-based tiering.
Under the GDPR, Mauvtek LLC does not act as a controller or processor of your app data, because no personal data is transmitted to or processed by us. You are the only party with access to it. If you believe this is inaccurate, contact us and we will investigate.
Security
The app's database is encrypted at rest with SQLCipher using AES-256, and the encryption key is held in platform-provided secure storage (the iOS Keychain or the Android Keystore, via flutter_secure_storage). App data is stored in the operating system's private per-app storage area, which other apps cannot read.
No software is perfectly secure, and device-level protection matters: we strongly recommend using a device passcode or biometric lock, keeping your operating system up to date, and treating any backup file you export as a sensitive financial document, because it is one.
Changes to this policy
If we change this policy we will update the "Last updated" date above and publish the revised version on this page. Because the app does not contact us, the published page is the authoritative version — please check back here when a new app version is released.
Contact
Mauvtek LLC is a limited liability company organized in the State of Arizona, United States. Questions about this policy or about Spndly:
Email: support@mauvtek.com