Privacy Policy
Last Updated: January 2026
Receivi is designed with privacy as a core principle. This policy explains how we handle your data.
Summary
- All data stays on your device
- We never upload your emails or receipts to any server
- Scanning only happens when you tap "Scan Gmail Now"
- We use Gmail's read-only permission—we cannot send emails or modify your inbox
- You can delete all your data at any time from Settings
What We Access
When you connect your Gmail account, Receivi requests read-only access to your emails. Specifically, we access:
- Email headers: Sender name, subject line, and date
- Email attachments: PDFs, images (JPEG, PNG) that may contain receipts or bills
- Email body text: Only for emails that appear to be receipts (containing keywords like "receipt," "invoice," "order confirmation")
We use the Gmail API scope gmail.readonly, which means we cannot:
- Send emails from your account
- Delete or modify emails
- Access your contacts or calendar
- Make any changes to your Gmail account
When Scanning Happens
Receivi only scans your email when you explicitly tap "Scan Gmail Now." There is no automatic, scheduled, or background scanning. You are always in control of when your inbox is accessed.
Where Your Data Is Stored
All data stays on your device. Receivi does not have any servers or cloud storage. Your receipts, attachments, and account information are stored only in your device's local storage and iOS Keychain.
This means:
- Your data is not uploaded anywhere
- Your data is not shared with anyone
- Your data is not accessible to us or any third party
- If you delete the app, your data is deleted
Data We Collect
Receivi does not collect any personal data, analytics, or telemetry. We do not track:
- How you use the app
- Which receipts you scan
- Any personal information
Third-Party Services
Receivi uses the following third-party services:
- Google Gmail API: To read your emails (with your explicit permission). Google's privacy policy applies to their handling of your Gmail data: https://policies.google.com/privacy
We do not use any analytics, advertising, or tracking services.
Your Rights
You can:
- Disconnect Gmail at any time from Settings. This revokes our access to your inbox.
- Delete all data at any time from Settings. This permanently removes all receipts and disconnects your Gmail account.
- Export your data as a CSV file at any time.
Data Retention
Your data remains on your device until you delete it. We do not have access to your data and cannot delete it remotely.
When you disconnect Gmail:
- Your existing receipts remain on your device
- We can no longer access your inbox
When you delete all data:
- All receipts are permanently deleted
- Your Gmail connection is removed
- All local files are deleted
Security
- Gmail OAuth tokens are stored securely in iOS Keychain
- All communication with Gmail uses HTTPS encryption
- Attachments are stored in your app's sandboxed storage
Children's Privacy
Receivi is not intended for children under 13. We do not knowingly collect data from children.
Changes to This Policy
We may update this policy occasionally. Changes will be posted here with an updated "Last Updated" date.
Contact
If you have questions about this privacy policy, please contact us at privacy@receivi.app.