Privacy Policy

Your privacy is our priority

Last Updated: December 16, 2024

Introduction

Axonate Tech ("we," "our," or "us") operates the Settlr mobile application ("App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and services.

We are committed to protecting your privacy and handling your personal and sensitive user data in accordance with applicable laws, including compliance with Google Play's User Data Policy and all relevant data protection regulations.

Important: By using Settlr, you consent to the collection, use, and disclosure of your information as described in this Privacy Policy. If you do not agree with this policy, please do not use our App.

Developer:Axonate Tech

Contact Email:settlr@axonatetech.com

Website:settlr.axonatetech.com

Personal and Sensitive Information We Collect

We collect information that you provide directly to us and information that is automatically collected when you use our App. All data collection is limited to providing core app functionality and improving user experience.

1. Personal Information You Provide

  • Account Information: Name, email address, phone number (optional), password (encrypted using bcrypt)
  • Profile Information: Profile picture/avatar, bio, display name, UPI ID (for settlement purposes)
  • Authentication Data: Encrypted passwords, OAuth tokens (for Google Sign-In), session tokens (JWT)

2. Financial & Transaction Data

  • Expense Records: Amount, description, date, category, receipt images (optional)
  • Settlement Records: Payment history, settlement status, transaction timestamps
  • Group Data: Group names, member lists, shared expenses, group activity logs
  • Important: We do NOT store complete payment card details, CVV, or PIN numbers. Payment processing is handled externally.

3. Device & Usage Information (Automatically Collected)

  • Device Information: Device type, operating system version, unique device identifiers, mobile network information
  • Usage Data: App features used, time spent in app, interaction patterns, error logs
  • Push Notification Tokens: For sending reminders and notifications (Expo Push Tokens)

4. Location Data (When Permission Granted)

  • Precise Location: GPS coordinates when using "Nearby Users" features
  • Location Usage: Used ONLY for user-facing features (finding nearby users)
  • Control: You can revoke location permission at any time in device settings. Location is NEVER used for advertising or analytics.

5. Camera & Storage (When Permission Granted)

  • Camera Access:Scan the QR code to add a friend

How We Use Your Information

We use your personal and sensitive user data only for the purposes disclosed below and within the reasonable expectations of users. We do NOT use your data for advertising, selling to third parties, or any undisclosed purposes.

Core App Functionality

  • Creating and managing user accounts
  • Recording and tracking expenses
  • Calculating balances and settlements
  • Syncing data across your devices

Communication

  • Sending payment reminders and notifications
  • Email updates about your account
  • Responding to support requests
  • Important service announcements

Improvements & Analytics

  • Analyzing usage patterns (aggregated data)
  • Debugging and fixing technical issues
  • Developing new features
  • Improving app performance

Security & Compliance

  • Preventing fraud and abuse
  • Authenticating users and managing sessions
  • Complying with legal obligations
  • Protecting user safety

What We DON'T Do With Your Data

  • ❌ We do NOT sell your personal data to third parties
  • ❌ We do NOT use your data for advertising or ad personalization
  • ❌ We do NOT share data with data brokers or aggregators
  • ❌ We do NOT use location data for purposes other than stated features
  • ❌ We do NOT access your data more than necessary for app functionality

Data Sharing & Disclosure

We DO NOT Sell Your Data

Your personal information is NEVER sold, rented, or traded to third parties for monetary consideration. We only share data in the limited circumstances outlined below, with your consent or as required by law.

1. With Other App Users (With Your Consent)

When you create or join a group, the following information is visible to other group members:

  • • Your name and Avtar
  • • Expenses you've added to the group
  • • Your share of group expenses
  • • Settlement history within the group

2. Service Providers & Processors

We share data with trusted third-party service providers who assist us in operating our App:

  • Cloud Hosting: Contabo (for secure application and data hosting)
  • Email Services: Self-hosted email server (used for sending notifications and support emails)
  • Push Notifications: Expo Push Notification Service
  • Authentication: Google OAuth (when you use Google Sign-In)
  • Analytics: Aggregated, anonymized usage data only (no personal identifiers)

All service providers are contractually obligated to protect your data and use it only for the purposes we specify.

3. Advertising Partners (Non-Personalized Ads Only)

Settlr displays advertisements to support the free version of the app. We use:

  • Google AdMob: For serving non-personalized advertisements
  • Important: We use ONLY non-personalized ads (contextual ads based on app content)
  • Location Data: Location data is NEVER shared with AdMob or used for ad targeting
  • No Tracking: Ads do not track your personal information or behavior across apps
  • No Selling Data: We do NOT sell your personal data to advertisers

All advertising complies with Google Play's Ads Policy. Ad revenue helps us keep the app free for all users.

4. Legal Requirements & Safety

We may disclose your information if required by law or when we believe in good faith that disclosure is necessary to:

  • • Comply with legal obligations, court orders, or government requests
  • • Enforce our Terms of Service and protect our rights
  • • Investigate fraud, security issues, or technical problems
  • • Protect the safety and security of our users or the public

5. Business Transfers

In the event of a merger, acquisition, reorganization, or sale of assets, your information may be transferred. You will be notified via email and/or prominent notice in the App of any such change, and your choices regarding your information.

Google Play Data Safety

Our app's Google Play Store listing includes a "Data Safety" section that summarizes our data practices. This Privacy Policy provides comprehensive details about all data collection, use, and sharing practices disclosed in the Data Safety section.

Data Security

We implement industry-standard security measures to protect your personal and sensitive user data. All data is handled securely using modern cryptography and secure transmission protocols.

Encryption in Transit

All data transmitted between your device and our servers is encrypted using HTTPS/TLS 1.3

Password Security

Passwords are hashed using bcrypt with salt before storage. We never store plain-text passwords

Secure Authentication

JWT tokens with automatic expiration and refresh. Session management with secure cookie attributes

Database Security

PostgreSQL with encrypted connections, access controls, and regular automated backups

Access Controls

Strict authentication and authorization. Users can only access their own data and shared group data

Monitoring & Alerts

24/7 security monitoring, anomaly detection, and incident response procedures

Note: While we implement strong security measures, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security but continuously work to protect your information.

App Permissions Explained

Settlr requests certain Android permissions to provide core functionality. You have full control over these permissions and can revoke them at any time in your device settings. Below is a transparent explanation of why we need each permission:

Location Permission (ACCESS_FINE_LOCATION, ACCESS_COARSE_LOCATION)

Why we need it:

  • • To enable "Find Nearby Users" feature for splitting expenses with people near you

Important: Location is accessed ONLY when you actively use these features. We do NOT track your location in the background. Location data is NEVER used for advertising or shared with advertisers.

Camera Permission (CAMERA)

Why we need it:

  • • To scan QR codes for adding friends

We do not capture, store, or upload photos or videos. The camera is used only in real-time to scan QR codes for connecting with friends.

Microphone Permission (RECORD_AUDIO)

Do we use this permission?

  • • We do NOT currently use microphone access in the app
  • • This permission is included for potential future features (voice notes for expenses)
  • • If we add voice features in the future, we will update this policy and request your consent

We do NOT record, store, or transmit any audio without your explicit consent for a specific feature.

Storage / Photos Permission

Do we use this permission?

  • • We do NOT request or use any storage or photo access permissions
  • • The app does NOT read, upload, or store photos from your device
  • • Profile pictures are selected only from predefined avatars available within the app

Since the app does not access device storage or media files, your personal photos remain completely private and untouched.

Notification Permission (POST_NOTIFICATIONS)

Why we need it:

  • • To send you payment reminders
  • • To notify you when expenses are added to your groups
  • • To alert you when someone settles up with you
  • • To send important app updates and announcements

You can disable or customize notifications in App Settings. Notification tokens are securely stored and never shared.

Internet/Network Permission (INTERNET, ACCESS_NETWORK_STATE)

Why we need it:

  • • To sync your expense data with our servers
  • • To enable real-time updates and notifications
  • • To communicate with our API for all app features

Your Control Over Permissions

You can manage all permissions in your device Settings → Apps → Settlr → Permissions. If you deny a permission, certain features may not work, but the core expense tracking functionality will still be available. We respect your choices and will never manipulate you into granting permissions.

Data Retention & Deletion

We retain your personal information only for as long as necessary to provide you with our services and as required by law. You have full control over your data and can request deletion at any time.

Active Account Data

While your account is active, we retain your personal information, expense records, and group data to provide continuous service.

Inactive Accounts

If your account remains inactive for 3 years, we may send you a reminder email. If you don't respond within 30 days, we may delete your account and associated data (except where we're required to retain it for legal or regulatory purposes).

Backup & Recovery

Backup copies of your data may persist in our backup systems for up to 90 days after deletion for disaster recovery purposes. These backups are securely stored and inaccessible for normal use.

How to Delete Your Account

You can delete your account and all associated data at any time using any of these methods:

Upon account deletion, all your personal data, expense records, and group memberships will be permanently removed within 30 days. Financial records may be retained for up to 7 years where legally required for tax and regulatory compliance.

Your Rights

You have control over your personal information. We respect your rights under applicable data protection laws including GDPR, CCPA, and other privacy regulations. You have the following rights:

Right to Access

Request a copy of all personal data we hold about you. We will provide this in a structured, commonly used format.

Right to Data Portability

Request a machine-readable copy of your data that you can transfer to another service provider.

Right to Rectification

Request correction of inaccurate or incomplete personal data. You can also update most information directly in app settings.

Right to Erasure (Deletion)

Request deletion of your personal data. See "How to Delete Your Account" section above for deletion methods.

Right to Object

Object to processing of your personal data for specific purposes such as direct marketing or profiling.

Right to Restrict Processing

Request that we limit the processing of your personal data in certain circumstances (e.g., while verifying accuracy).

Right to Withdraw Consent

Withdraw consent for data processing at any time. This will not affect the lawfulness of processing before withdrawal.

Right to Lodge a Complaint

File a complaint with your local data protection authority if you believe we have violated your privacy rights.

How to Exercise Your Rights

To exercise any of these rights, please contact us at:

  • • Email: settlr@axonatetech.com
  • • Subject line: "Privacy Rights Request - [Your Right]"
  • • Include your account email and specific request details

We will respond to your request within 30 days as required by applicable privacy laws.

Children's Privacy

Settlr is intended for users aged 13 years and older. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at settlr@axonatetech.com, and we will delete such information from our systems promptly.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will:

  • • Update the "Last Updated" date at the top of this policy
  • • Notify you via email (if you've provided one)
  • • Display a prominent in-app notification
  • • For significant changes, request your consent where required by law

We encourage you to review this Privacy Policy periodically. Continued use of the App after changes indicates your acceptance of the updated policy.

Contact Us

Get in Touch - Privacy Inquiries

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Company: Axonate Tech

Privacy Contact Email: settlr@axonatetech.com

App Name: Settlr - Split Bills & Expenses

Response Time: Within 48 hours for general inquiries, 30 days for data rights requests

Note: For immediate assistance with account-related issues, please use the "Contact Support" option in the App Settings.

Legal Compliance

Google Play Policy Compliance

This Privacy Policy complies with Google Play's User Data Policy, including requirements for transparent data collection, secure handling of personal and sensitive user data, and restrictions on data usage. We adhere to all policies regarding permissions, data sharing, and user rights.

Data Protection Regulations

We comply with applicable data protection laws, including GDPR (European Union), CCPA (California), and other regional privacy regulations. We respect user rights to access, rectification, erasure, portability, and objection.

Financial Data Security

Financial transaction data is handled in accordance with applicable financial regulations. We use encryption, secure transmission (HTTPS/TLS), and access controls to protect your financial information. We do NOT publicly disclose any personal and sensitive user data related to financial activities.