Skip to main content
Money Melon
Menu

Privacy

Privacy Policy

Last updated

This policy explains what Money Melon collects, where it is kept, who it is shared with, and how you stay in control of your own data. It is written from what the current version of the app actually does.

Account information

You need to sign in with a Google or Apple account to use the app. When you sign in, we receive the following from that provider:

  • A generated user identifier

  • Your email address

  • Your display name and profile picture, if the account has them

  • Which provider you signed in with

What you record in the app

Transactions, accounts, budgets, instalments, debts, gold savings, stock holdings, savings goals, notes and anything else you enter are stored in a database on your own device.

None of this is sent to our servers in normal use. It leaves your device only when you turn on backup, attach an image to a transaction, or use an AI feature, as described below.

Images and backup files in the cloud

Images you attach to a transaction are uploaded to our storage, separated by account identifier.

Backup files are held in our storage, separated by your account identifier. A backup is a copy of the whole database, so it contains all of your transactions.

What the AI features process

When you scan a receipt, scan a transfer slip, or paste text for the AI to split into entries, that image or text is sent to Google's AI service through Firebase for processing, and the result is returned to the app.

We send only what you chose to submit that time, along with your list of categories so the AI can categorise the items. We do not send your transaction history with it.

Transfer slips often show a recipient's name and account number in the image. Think about that before scanning, and do not submit anything you would not want processed off your device.

Voice entry

Voice entry uses the speech recognition built into your device's operating system, so the audio is handled under Apple's or Google's settings and policies, depending on the device.

The app receives text back and then sends that text to be split into entries by AI, exactly as it would with pasted text. We do not keep audio recordings.

Usage data

We use Firebase Analytics to see which features get used, so we know what to work on next. Our own code sets the rule that only the type of action, aggregate counts and true/false values may be sent.

We deliberately never send the following to analytics:

  • Any amounts of money

  • Transaction, account, category or person names

  • The contents of your notes

Account attributes and crash data

Alongside usage events we record account-level attributes for segmentation: whether you are on a free or paid plan, your language, your primary currency, a rough bucket for how many books you have, and whether you have used the AI or budget features.

When the app hits an error we use Firebase Crashlytics to record the error details, device model, app version and your account identifier, so we can trace the cause and fix it.

Both systems tie the data to your account identifier, which makes it indirectly identifiable to you.

Purchase and subscription data

We use RevenueCat to manage subscription status alongside Apple App Store and Google Play billing, and we send it your account identifier, email address and display name so that your access is tied to your account and can be restored on a new device.

We never see or store your card or payment details. Those stay with the store.

Price data requests

When the app shows gold prices, stock prices or exchange rates, it requests that data from external providers. As with any internet connection, this lets those providers see your IP address and which symbol was requested.

We do not send your account identifier or any of your transaction data with these requests.

What we do not collect or do

To be explicit, none of the following happens in the app:

  • We never ask for banking passwords or credentials, and we do not connect to your bank account.

  • We do not collect your device's location.

  • We do not sell or rent your personal data.

  • There is no ad network in the app, and we do not share your data with advertising providers for tracking.

  • We do not use server-sent push notifications. Every notification is generated on your own device.

Device permissions

The app asks for a permission only when you use the feature that needs it: camera and photo library for scanning receipts and attaching images, microphone for voice entry, and notifications for upcoming transactions.

You can refuse or withdraw any of these at any time in your device settings. The related feature stops working, but the rest of the app carries on as normal.

Service providers we use

We use the following third-party services to run the app. Each has its own privacy policy:

  • Firebase Authentication for sign-in

  • Firebase Storage for backup files and attached images

  • Firebase AI for reading receipts and slips

  • Firebase Analytics and Firebase Crashlytics for usage and crash data

  • Firebase App Check to verify that requests come from the real app

  • RevenueCat for subscription status

  • Apple App Store and Google Play for payment

  • Providers of gold, stock and exchange rate data

Processing outside your country

The providers above are global services, so your data may be stored or processed on servers outside the country you live in, where data protection standards may differ from those at home.

Disclosure of information

Beyond the service providers listed above, we disclose your information only in these cases:

  • Where the law requires it, such as complying with a court order or a lawful request from an authority.

  • Where reasonably necessary to protect our rights, your safety or the safety of others, or to investigate fraud and abuse.

  • In a transfer of the business, where the recipient is bound by this policy and we give you notice in advance.

Retention and deletion

We keep your account information, backup files and images for as long as your account is active.

When you delete your account from the profile screen in the app, we delete the account, the backup files and the images held in our storage. Data on your own device you have to delete yourself.

Usage and crash data already collected may remain in the providers' systems for their own retention periods.

If you want data deleted without going through the app, contact us at moneymelon.team@gmail.com.

Your rights

You can ask to access, receive a copy of, correct or delete your personal data, object to or restrict certain processing, and withdraw consent you have given.

You can export your own transaction data as a PDF or CSV file from within the app at any time.

To exercise any other right, or if you have questions, contact us at moneymelon.team@gmail.com. We will respond within 15 business days.

Children

The app is not directed at children under 13, and we do not knowingly collect personal data from children under 13.

If we find that a child under 13 has provided information, we will delete it from our systems. If you are a parent or guardian and know that your child has given us information, please contact us at moneymelon.team@gmail.com.

Security

Backup files and images in our storage are separated by account identifier, and access requires authentication as that account. Data in transit to all providers is encrypted.

No system is perfectly secure, so we also recommend keeping the Google or Apple account you sign in with secure and turning on two-factor authentication for it.

Changes to this policy

We may update this policy when the app gains features or we change providers. Changes take effect when posted on this page, with the last updated date shown at the top.

For changes that materially affect you, such as collecting a new type of data or sending data to a new provider, we will give at least 30 days' notice through the app or by email to the address on your account.

Contact us

If you have questions about this policy, or want to exercise a right over your personal data, contact us at moneymelon.team@gmail.com.