Privacy Policy
Last Updated: April 7, 2026
This Privacy Policy describes how Bujit AI ("we", "us", or "our") collects, uses, and protects your information when you use the Bujit mobile application ("App").
1. Information We Collect
1.1 Information Stored Locally on Your Device
- Transaction data (amounts, notes, categories, dates) — stored via Apple's SwiftData framework
- Budget settings and preferences
- App settings (currency, language, appearance)
- Receipt images — saved as files on your device
This data is never permanently stored on our servers.
1.2 Information Processed Through AI Services
When you use AI-powered features, the following data is temporarily sent to our secure proxy server and forwarded to Google's Gemini API:
- Voice input: Speech transcription text (not raw audio) for expense parsing
- Receipt scanning: Receipt image for amount, merchant, and category extraction
- AI chat: Your question along with a summary of your transaction data
This data is transmitted securely via HTTPS and is not permanently stored on our servers.
1.3 On-Device Speech Processing
When you use voice input, the App uses Apple's Speech Recognition framework to convert your speech to text on your device. Only the resulting transcription text is sent to our AI service.
1.4 Authentication Data
We use Firebase Anonymous Authentication. This creates a random anonymous identifier on your device. No personally identifiable information is collected or required.
1.5 Subscription Data
Payment processing is handled entirely by Apple and RevenueCat. We do not collect, process, or store your payment information.
2. How We Use Your Information
- To provide expense tracking and budgeting features
- To process voice commands and receipt images via AI
- To provide AI-powered spending insights and chat responses
- To enforce rate limits and prevent abuse of AI services
- To improve the App's functionality and user experience
3. Data Sharing
We do not sell, rent, or share your personal data with third parties. Data is only shared with:
- Google (Gemini API): For AI processing of voice, receipt, and chat features
- Firebase (Google): For anonymous authentication only
- RevenueCat: For subscription management
- Apple: For payment processing through the App Store
4. Data Security
- All financial data is stored locally on your device and encrypted by iOS
- API communications use HTTPS encryption
- Our proxy server validates authentication tokens and enforces rate limits
- API keys are stored server-side and never embedded in the App
5. Data Retention
- Local data: Retained on your device until you delete the App
- AI processing data: Not retained beyond the API request/response cycle
- Anonymous auth tokens: Managed by Firebase, linked to your device only
6. Your Rights
- Access: All your data is stored locally and accessible at any time
- Deletion: Deleting the App removes all local data
- Opt-out: Use manual entry to avoid any data being sent externally
- Contact support@bujitai.com for any server-side data deletion requests
7. Children's Privacy
Bujit is not directed at children under 13. We do not knowingly collect information from children.
8. Changes to This Policy
We may update this Privacy Policy from time to time. Continued use after changes constitutes acceptance.
9. Contact Us
If you have questions, contact us at support@bujitai.com.