Qalta

Privacy Policy

Effective date: 6 September 2026

This policy applies to the Qalta mobile app (“the app”) provided by Daniel Tokkozhin (“we”). It explains what stays on your device, what leaves the device, and which companies process that data.

Your journal stays on your device

Accounts, transactions, categories, budgets, goals, recurring items, and similar journal data are stored locally on your device (SQLite). We do not upload your journal to our servers as a cloud copy of the app.

If you use the optional backup feature, copies can be stored in your iCloud account. That storage is provided by Apple and is covered by Apple’s privacy policy.

Account

You sign in with Sign in with Apple. We receive an Apple identity token and create an account with our backend provider, Supabase. That account can include a user ID, an email address (including Apple’s Hide My Email relay), and your name if Apple provides it on first sign-in.

You can delete your account in the app. That removes the account and subscription records we store. Journal data on the device is separate; you can also clear local financial data in Settings.

Subscriptions and purchases

Purchases are processed by Apple. We use RevenueCat to read subscription status. We store a premium flag and AI usage counters (how many voice, image, and document requests you have used) in Supabase, linked to your user ID. We do not receive or store payment card numbers.

Voice, scan, documents, and other AI features

When you use voice input, receipt or document scan, or other AI extraction, the app sends the content you submitted to our backend (Supabase Edge Functions). The backend forwards that content to OpenAI so the app can propose transactions.

Depending on the feature, that content may include:

This is sent only to provide the feature you asked for. We do not store your journal in our database. The backend uses the request to return structured entries and to count usage against your limits.

OpenAI processes the request under its API terms. OpenAI states that, by default, API inputs are not used to train its models. OpenAI may retain data for a limited period to operate the API and for abuse monitoring. See OpenAI’s policies linked below.

AI features are optional. You can add transactions manually without sending this content.

Analytics, crashes, and other network data

What we do not do

Third-party processors

These companies process data as described above. Each has its own privacy policy:

We may also disclose information if required by law, or if we believe in good faith that disclosure is needed to protect rights, safety, or to investigate fraud.

Retention and deletion

To delete account data, use Delete account in the app or email help.qalta.app@outlook.com.

Changes

We may update this policy. The effective date above will change. Continued use after an update means you accept the revised policy.

Contact

Daniel Tokkozhin
help.qalta.app@outlook.com