Legal

Privacy Policy

Effective June 4, 2026

This Privacy Policy describes how BoostingIN Technologies Private Limited ("BoostingIN", "we", "us", or "our") collects, uses, and protects information when you use the Expense Report Generator mobile application and its companion web dashboard and manager approval portal (collectively, the "Service").

1. Information We Collect

  • Account information: email address, display name, and authentication credentials managed by our backend provider.
  • Expense data: receipt photos, OCR-extracted line items, amounts, dates, categories, GST details, vendor names, and notes you enter.
  • Approval data: manager email, approval action (approve/reject/resubmit), comments, timestamp, IP hash, and user agent string.
  • Device & diagnostic data: app version, schema version, and anonymous crash/error logs.

2. How We Use Your Information

  • To provide expense capture, report generation, and approval routing.
  • To authenticate users and enforce access controls.
  • To generate signed, short-lived URLs for receipt files shared with approvers.
  • To maintain an audit trail of manager approval actions.
  • To diagnose errors and improve reliability.

3. Local-First Drafts

Draft expenses created in the Android app remain on your device until you explicitly tap "Send for approval". We do not sync, read, or store draft content before submission.

4. Data Storage & Security

  • Receipt files are stored in a private storage bucket; access is granted only via short-lived signed URLs.
  • Row-Level Security (RLS) ensures users can only access their own reports; administrators have scoped access governed by role policies.
  • Manager approval links use single-use, expiring tokens.
  • All data is transmitted over TLS.

5. Data Sharing

We do not sell your data. We share information only:

  • With managers you explicitly designate as approvers for a report.
  • With infrastructure providers (authentication, database, storage) strictly to operate the Service.
  • When required by applicable law.

6. Data Retention

Submitted reports, approval actions, and receipt files are retained for as long as your account is active or as required to comply with legal, accounting, and audit obligations. You may request deletion of your account and associated data at any time.

7. Your Rights

Subject to applicable law, you may request access, correction, export, or deletion of your personal data by contacting us at the address below.

8. Children's Privacy

The Service is not directed to children under 13, and we do not knowingly collect data from them.

9. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be notified within the app or via email. Continued use of the Service constitutes acceptance.

10. Contact Us

BoostingIN Technologies Private Limited
Email: info@boostingin.com