By using AmigoBill, you agree to the collection and use of information as described in this policy.
1. Information We Collect
1.1 Account Information
When you create an account directly in the app, we collect:
- Username — you may choose an email address as your username, in which case that email address is stored as your username
- Display name
- Password (transmitted securely over TLS and never stored in plain text)
- Phone number (optional)
1.2 Sign in with Google / Sign in with Apple
You can also create an account or sign in using Google or Apple. In that case:
- Sign in with Google — the Google Sign-In SDK returns a signed identity token for your Google account, which we send to our server to verify who you are and create or match your account. The token identifies your Google account (including your email address) to our server.
- Sign in with Apple — we request your name and email address from Apple. Apple only provides these on your firstauthorization, and our server stores them from that first sign-in. If you use Apple’s “Hide My Email”feature, we only ever receive Apple’s private relay address, not your real email address.
We do not receive your Google or Apple password.
1.3 Content You Provide
While using the app, you may create or upload:
- Bills and expenses — amounts, currencies, categories, titles, descriptions, dates, who paid, and how each bill is split between participants
- Events and trips — event names, type (trip / gathering / other), dates, and participants
- Friends — friend requests you send, accept, or reject, and the connections that result
- Attachments — photos and files (such as receipts) that you choose to upload from your camera, photo library, or file browser
- Trip-planning requests — destination cities, departure and return dates, and preferences you submit to generate AI-powered trip itineraries
1.4 Camera, Photos, and Files
The app requests access to your camera, photo library, and files only so you can attach receipts and documents to a bill. Access is requested at the moment you choose to add an attachment, and we only receive the specific items you select. We do not scan or browse your camera roll or file system in the background.
1.5 Automatically Collected Information
- Push notification token — we use Firebase Cloud Messaging (Google) to deliver notifications. Firebase generates a device registration token for this purpose.
- Analytics data — we use Firebase Analytics to understand how the app is used. This includes screens you view and a small set of in-app actions (creating a trip, adding an expense, adding a friend, generating an AI trip plan, switching display currency, signing in, and signing up), along with the device and app information Firebase collects by default (such as device model, operating system version, app version, language, and coarse region). When you are signed in, we associate this analytics data with your user ID. Your user ID is cleared from analytics when you sign out.
- Crash reports — we use Firebase Crashlytics. If the app crashes or hits an error, we receive a crash report containing a stack trace and device state (device model, OS version, app version).
- Performance data — we use Firebase Performance Monitoring to measure app start time, screen rendering, and the response time of requests to our own API (URL, HTTP method, status code, and duration).
- Basic technical data — standard server logs for requests made to our servers, including IP address and timestamps.
Analytics, crash reporting, and performance collection are disabled in development builds and enabled in the released app.
We do not collect precise location data, we do not read your contacts, and we do not use advertising identifiers or share data with advertising networks.
2. How We Use Your Information
We use the information we collect to:
- Create and manage your account, and authenticate you securely
- Record, calculate, and display shared expenses and balances between you and your friends
- Generate expense summaries, currency conversions, and settlement suggestions (“who owes whom”)
- Generate AI-assisted trip itineraries based on the details you provide
- Send you push notifications (e.g., activity related to your bills or groups)
- Understand which features are used, diagnose crashes, and improve performance and reliability
We do not sell your personal data, and we do not use it for third-party advertising.
3. Data Stored on Your Device
Some data is stored locally on your device using platform-provided encrypted secure storage, including:
- Authentication tokens (access and refresh tokens)
- Your language and display-currency preferences
- Your notification preference
- Whether you have completed onboarding
- Trip plans you choose to save
This data never leaves your device except as needed to communicate with our servers, and it is removed when you log out or uninstall the app.
4. Data Sharing with Other Users
AmigoBill is a social expense-splitting app. Certain information is visible to other users by design:
- Your username and display name are discoverable by other users through in-app user search, and are visible to users you connect with as friends
- Expenses, amounts, categories, descriptions, who paid, and how bills are split within a shared event or trip are visible to the other participants of that event or trip
- Attachments you upload (such as receipts) are visible to the other participants of that event or trip. Attachments are stored on our hosting provider and served over a direct file link — treat anyone who obtains that link as able to view the file. Do not attach documents containing sensitive information you would not want shared with the participants of that event.
Please only share expense details with people you trust.
5. AI Trip Planning
When you request an AI-generated itinerary, the details you submit (destination cities, travel dates, and preferences) are sent to our server, which uses an AI model to generate the itinerary. Only the trip details you enter are sent for this purpose — your expenses, friends, and account data are not part of the request. Generated plans you choose to save are stored on your device, not on our servers.
6. Third-Party Services
We use the following third-party services, which may process limited data on our behalf:
| Service | Purpose | Data involved |
|---|---|---|
| Firebase Cloud MessagingGoogle | Push notifications | Device push token |
| Firebase AnalyticsGoogle | Product usage analytics | Screen views, in-app events, user ID, device/app info |
| Firebase CrashlyticsGoogle | Crash reporting | Stack traces, device and app state |
| Firebase Performance MonitoringGoogle | Performance measurement | App/screen timings, API request timings |
| Google Sign-InGoogle | Optional sign-in method | Google identity token |
| Sign in with AppleApple | Optional sign-in method | Apple identity token, name and email on first sign-in |
| Railwayhosting | Backend API and file hosting | Data sent to our servers, including attachments |
| Google FontsGoogle | Typography | May fetch font files at first run |
Each provider processes data in accordance with its own privacy policy:
- Google/Firebase: firebase.google.com/support/privacy
- Apple: apple.com/legal/privacy
- Railway: railway.com/legal/privacy
7. Data Retention
- Account data and expenses are retained for as long as your account is active, so that shared balances remain consistent for all participants.
- Analytics, crash, and performance dataare retained according to Firebase’s retention settings, and are held in aggregate or pseudonymous form.
- Locally stored data (tokens, preferences, saved trip plans) is deleted when you log out or uninstall the app.
- If you deactivate your accountfrom within the app, your account is disabled and you are signed out. We delete or anonymize your personal data within a reasonable period, except where retention is required for legal reasons or to preserve the integrity of other users’ shared expense records — an expense you paid for still needs to be reflected in your friends’ balances.
8. Data Security
We take reasonable measures to protect your information:
- All communication with our servers uses HTTPS/TLS encryption
- Authentication uses short-lived access tokens with secure, automatic refresh
- Sensitive data on your device is stored using platform-provided encrypted storage (Android Keystore / iOS Keychain)
- Passwords are never stored on your device
- You can change your password at any time from the app
No method of transmission or storage is 100% secure, but we work to protect your data using industry-standard practices.
9. Your Choices
- Notifications — you can turn push notifications off at any time from the Profile screen, or in your device settings.
- Language and currency — you choose your display language (English, Spanish, Azerbaijani) and base currency in the app; these are stored on your device.
- Profile — you can edit your display name and username, and change your password, from the Profile screen.
- Account — you can deactivate your account from the Profile screen.
- Attachments — attaching a receipt is always optional, and you can delete an attachment you uploaded.
10. Your Rights
Depending on your jurisdiction (including under the GDPR), you may have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Delete your account and associated personal data
- Export your data in a portable format
- Object to or restrict certain processing
To exercise any of these rights, contact us using the details below.
11. Children’s Privacy
AmigoBill is not directed at children under the age of 13 (or the minimum age required in your jurisdiction). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
12. International Data Transfers
Our servers and our third-party providers may be located in countries other than your own. By using the app, you acknowledge that your data may be transferred to and processed in such countries, subject to appropriate safeguards.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through the app or by updating the “Last updated” date above. Continued use of the app after changes take effect constitutes acceptance of the revised policy.
14. Contact Us
If you have questions about this Privacy Policy or your data, contact us at:
efendi.kerem02@gmail.com
This policy applies to the AmigoBill mobile application (iOS and Android).