Spendo Privacy Policy
Effective date: September 14, 2026 Last updated: September 14, 2026
Spendo helps you organize expenses, income, accounts, budgets, recurring transactions, and savings goals. This Privacy Policy explains what personal information we process, why we use it, who can receive it, and the choices available to you.
1. Who is responsible for your information
Spendo is operated by Ensight Tech, based at Potthofstraße 9, 58095 Hagen, Germany ("we", "us", or "our"). We are responsible for the personal information processed through Spendo.
Telephone: +49 1521 9569952
Website: ensight-tech.de
For privacy questions or requests, email admin@ensight-tech.de.
This policy applies to the Spendo app and our handling of related support requests. Services you independently use, such as Google sign-in or an app you choose to receive an export, also have their own privacy policies.
2. Information we process
Account information
When you create or use an account, we process your account identifier, email address, display name, and profile image or image URL, where available. Firebase Authentication handles sign-in credentials and authentication tokens. If you choose Google sign-in, we receive the basic account information needed to sign you in; we do not receive your Google password.
Financial information you enter
We process the information you add or import, including transaction amounts, dates, income or expense types, merchant or product names, descriptions, categories, currencies, account names and balances, transfers, budget limits, savings goals, and recurring transaction schedules. Information entered in free-text fields becomes part of your records.
Spendo's financial accounts are records you maintain in the app. The current app does not connect to your bank to retrieve transactions or initiate bank payments. Please do not enter bank passwords, card security codes, or other unnecessary secrets in your records.
Receipt scanning
If you use receipt scanning, Spendo accesses the camera with your permission and processes the captured image on your device using Google ML Kit text recognition. Spendo does not upload the receipt image to its cloud database as part of this scanning feature. Extracted details, such as the merchant and total, are used to fill the transaction form. When you save the transaction, those details are treated like other financial records and may sync to your account.
Captured images may remain temporarily in device storage managed by the app or operating system.
Household information
If you create or join a household, we process its name, invitation code, owner and member identifiers, member display names, shared monthly budget, and combined spending total. Your email address may appear as your member name if your account has no display name.
Preferences, activity, and technical information
We process settings such as language, currency, appearance, home layout, notification preferences, and app-lock preference. We also record account activity timestamps to manage recurring transactions and inactivity notices.
Notification delivery uses a device registration token, platform information, token update times, and notification records, including delivery or confirmation status. Our infrastructure providers may process IP addresses, service requests, device or installation identifiers, and technical logs to deliver, secure, and maintain their services.
Support communications
If you contact us, we process your contact details, message, and any attachments you choose to send. Only include financial information necessary to explain your request.
3. How we use information
We use personal information to:
- Create and authenticate accounts and maintain signed-in sessions.
- Store, synchronize, display, and organize your financial records and preferences.
- Calculate balances, spending summaries, budgets, and progress toward goals.
- Run recurring transaction features and deliver reminders or account-related notices.
- Provide household budgets and membership features you choose to use.
- Support imports, exports, receipt scanning, and device widgets.
- Respond to support and privacy requests, prevent misuse, troubleshoot failures, and meet applicable legal obligations.
Spendo does not sell your personal information or use your financial records for targeted advertising. The current app does not integrate advertising networks or use your records to make lending, credit, or eligibility decisions.
4. Storage and service providers
Spendo stores records and preferences locally on your device. When you are signed in, supported account information, settings, and financial records are also stored in Google Firebase to provide cloud features. Local caches support offline access; cloud data is not deleted merely because you uninstall the app.
We use Google Firebase for authentication, Cloud Firestore storage, Cloud Functions, Firebase Cloud Messaging, and Remote Config. These services process the information necessary to provide account access, synchronization, scheduled actions, notifications, and app configuration. Apple or Google notification services may also process push notifications for your device.
For information about Google's handling of service data, see Firebase Privacy and Security and Google's Privacy Policy.
5. When information is shared
We disclose information to service providers as needed to operate Spendo, and in the following circumstances:
- Households you join: other members can see shared household details, member names, budget information, and combined spending totals. Treat invitation codes as private. Leaving a household or deleting your account does not necessarily remove historical contributions from its combined total.
- Exports and sharing you initiate: information you save, print, or share goes to the destination you choose. Those copies are outside Spendo's control.
- Legal and security needs: where required by law, or where legally permitted and necessary to protect people, investigate misuse, or establish or defend legal claims.
- A business transfer: if Spendo is involved in a merger, acquisition, or transfer of operations, relevant information may be transferred subject to applicable privacy requirements and notice where required.
6. Permissions and device privacy
Camera access is used for receipt scanning. File access or a system file picker is used when you choose to import or export records. Notifications require the permissions applicable to your device. You can manage these permissions in device settings; declining an optional permission may prevent the associated feature from working.
If you enable app lock, your device's authentication system checks your fingerprint, face, or device credential. Spendo receives the authentication result, not your biometric template or device passcode.
Notifications and home-screen widgets may display financial information to someone who can see your device. You can manage notification previews and remove widgets through your device settings.
7. Retention and account deletion
We generally retain account information and financial records while your account exists and they are needed to provide the features you use. Inactivity alone does not delete your account: after more than three months of inactivity, recurring transactions may be disabled and their notifications stopped.
You can request account deletion in Profile → Edit Profile → Delete account. You will be asked to confirm and authenticate again. You can export your transaction records before deletion.
Successful account deletion removes your Firebase sign-in account, your user document and its associated collections, and your household membership. Households with remaining members may continue under another owner, and combined historical totals may remain. A household with no remaining members is removed by the deletion flow.
If you cannot access the app, email admin@ensight-tech.de with the subject "Spendo account deletion" and the email address associated with your account. We may ask for information reasonably necessary to verify ownership. Never send your password.
Deleting an account does not erase files you exported, copies held by other people, or device backups outside our control. Local caches on other devices may remain until cleared. Limited technical records or backups, where maintained, may persist until their normal deletion cycle, or longer where required by law or necessary for a specific security incident or legal claim. Any retained information is limited to that purpose.
8. Security
We use authentication, access controls, and encrypted network connections to help protect information. Local app lock provides an additional access control where enabled. No storage or transmission method can guarantee absolute security. Keep your device and account credentials secure, particularly when using shared devices or exporting financial records.
9. Your privacy rights
Depending on the law that applies to you, you may have rights to access, correct, delete, or receive a portable copy of your personal information; object to or restrict certain processing; withdraw consent where processing relies on it; and complain to the relevant data protection authority.
You can edit supported information and export transaction records in the app. For other requests, contact admin@ensight-tech.de. We respond within the period required by applicable law and may verify your identity first. Withdrawing consent does not affect processing that was lawful before withdrawal.
Where applicable law requires a legal basis, we process information as necessary to provide the service you request, for legitimate interests in maintaining and securing the service where permitted and balanced against your rights, to comply with legal obligations, or with consent where required. Optional device permission requests do not replace any separate consent required by law.
10. International processing
Our service providers may process information in countries other than your country of residence. Privacy laws may differ between countries. Where applicable law requires safeguards for international transfers, we use the applicable provider arrangements and legally required transfer mechanisms. Contact us for information about safeguards relevant to your data.
11. Children
Spendo is intended for a general audience managing personal finances and is not directed to children under 13. We do not knowingly collect personal information from children under 13, or below a higher age where applicable law requires parental authorization, without that authorization. If you believe a child has provided information contrary to this policy, contact us so we can investigate and take appropriate action.
12. Changes and contact
We may update this policy when our features, practices, or legal obligations change. We will update the date above and provide additional notice for material changes where required. Where a new use requires consent, we will obtain it before that use begins.
For questions, complaints, or privacy requests:
Ensight Tech
Potthofstraße 9
58095 Hagen
Germany
Telephone: +49 1521 9569952
Email: admin@ensight-tech.de
Website: ensight-tech.de