f Fiskal
Privacy Policy
Fiskal · Legal

Privacy Policy

Fiskal is a personal-finance app with one purpose: showing you where your money goes, down to the item, by category and tag. This policy explains what Fiskal collects, why, where it lives, who it's shared with, and the choices you have.

Last updated  July 10, 2026 Version  1.1 Applies to  Fiskal iOS & Android
Photos stay yours
Receipt images are held only on your device and deleted as soon as the bill is read — never stored on our servers.
No ads, no selling
We never sell your data, show ads, or build advertising profiles — of any kind.
No ad tracking
Usage analytics and crash reports go only to Google Firebase to keep the app working — never for advertising or cross-app tracking. No contacts, no precise location.
01

Who we are

Fiskal is a personal-finance app whose single purpose is to tell you where your money is going, at the item level, broken down by category and tag.

  • Data controller: Fiskal is operated by an individual (no registered company) — Milos Micunovic, Vojina Katnica 19, Podgorica, Montenegro.
  • Privacy contact: mmicunovic1@gmail.com.
  • App: Fiskal for iOS and Android.

By creating an account and using Fiskal, you agree to the handling of your data as described here.

02

What data we collect

We collect only the data needed to run the app. We do not sell your data, show ads, or build advertising profiles.

Category
What it includes
Account identity
Your email address, display name, and a unique account identifier issued by Firebase Authentication.
Financial data
Bills (store, date, total, amount paid), items (printed text, tidied name, optional price, quantity, category, tags), budgets, tag rules, and a private category-learning table.
Receipt photos
Images you capture, processed so their text can be read (see §6).
Fiscal QR codes
Identifiers read from a supported fiscal receipt, used to fetch the official itemised invoice from the issuing country's verification service (see §5.4).
Fiskal AI subscription
If you subscribe: the store's proof of purchase (purchase token or signed transaction), the product purchased, your household identifier, any promo code you redeem, and the verified subscription status and expiry (see §5.3). We never receive your payment-card details.
Usage & crash data
In-app events such as screen views and sessions, a coarse city-level location derived from your IP address, device / app-instance identifiers, and crash reports with device state — via Firebase Analytics and Crashlytics. Never used for advertising.
Device settings
Theme, language, "after scanning" preference, saved filters, and AI Smart-Sort settings — stored only on your device, never sent to us.

Sign-in

Sign-in is handled by Firebase Authentication (Google) using Sign in with Google, Sign in with Apple, or email and password. Fiskal never sees or stores your Google or Apple password. If you sign in with email, your password is managed by Firebase Authentication and is not stored by us in readable form.

Item prices are optional and are never invented — a missing price is recorded as unallocated, not guessed.

What we do not collect

No device contacts, precise location, or background sensor data. No advertising or cross-app tracking SDKs, and we never sell your data. We never receive your payment-card details — payments are processed entirely by the app store.

03

How we use your data

We use your data to:

  • Authenticate you and keep you signed in.
  • Store, sync, and display your bills, items, budgets, tags, and spending breakdowns.
  • Read receipts you photograph or scan, and automatically categorise and tidy item names.
  • Share data within your household, if you choose to share (see §7).
  • Verify your Fiskal AI purchase and keep your subscription's access up to date (see §5.3).
  • Operate, secure, and debug the service.
  • Understand how the app is used and diagnose crashes, through analytics and crash reporting (see §2).

We process this data because it is necessary to provide the service you asked for (performing our contract with you) and to keep that service secure.

04

Where your data is stored

  • Cloud database: your account record and all financial data are stored in Google Cloud Firestore (Firebase project fiskal-2), under your household's data space.
  • On your device: Firestore keeps an offline copy on your device so the app works without a connection and syncs when you reconnect. Receipt photos awaiting processing are also held on your device (see §6).

Google processes this data on our behalf as a sub-processor. See Google's privacy and Firebase data-processing terms for details of their infrastructure and safeguards.

05

Third parties and where data flows

Fiskal shares data with the following service providers, only as needed to deliver features.

5.1 · Google Firebase (Authentication, Firestore, Analytics, Crashlytics)

Receives your account identity and all the financial data described in §2. Acts as our authentication provider and database host. We also use Firebase Analytics and Firebase Crashlytics, which send the usage, coarse-location, device-identifier, and crash-diagnostic data described in §2 to Google so we can measure usage and fix crashes.

5.2 · Fiskal's receipt-reading service (AI)

All AI processing is cloud-based and routed only through Fiskal's own backend service — your device never talks to an AI provider directly.

  • Photo extraction: when a receipt photo needs reading, the image is sent to Fiskal's backend, which uses an AI model (Google Gemini) to extract the text and line items.
  • Enrichment: item text your device does not already recognise from your private mapping table is sent to Fiskal's backend to assign a category and tidy the item name. Items your device already recognises are handled on-device and are not sent.

The receipt-reading service uses Google's Gemini API on a paid plan, under which Google acts as a data processor and does not use your images or text to train or improve any AI model. Google retains this data only briefly, to detect and prevent abuse, and for no other purpose.

5.3 · App stores and purchase verification (Google / Apple)

If you subscribe to Fiskal AI, the purchase and payment run through Google Play or the Apple App Store under their own terms and privacy policies. To confirm the purchase is genuine, Fiskal's backend sends the store-issued proof of purchase to Google's Play verification service or Apple's App Store server API and receives the subscription's status in return. The stores also send our backend server-to-server notifications about renewals, cancellations, and refunds, so your access stays correct even when the app is closed. Proof of purchase is kept on your device until verification succeeds.

5.4 · Official fiscal-receipt services (QR scan)

When you scan a supported fiscal-receipt QR code, the app sends the identifiers encoded in the QR code (such as the invoice or receipt code, the seller's tax identification number, and the receipt timestamp) directly from your device to the official receipt-verification service of the country that issued the receipt, and receives the official itemised receipt in return.

  • Supported countries currently include Montenegro, Albania, Serbia, Slovakia, Ukraine, Kazakhstan, Uzbekistan, Kyrgyzstan, Ecuador, and Brazil — each lookup goes only to that country's own government or government-authorised endpoint (for example mapr.tax.gov.me for Montenegro). Taiwanese e-invoice QR codes are decoded entirely on your device, with no lookup.
  • These are public verification endpoints; the request contains only the identifiers printed on your receipt and no account information.

5.5 · No other recipients

We do not share your data with advertisers, data brokers, or analytics vendors.

06

Receipt photo handling

  • This applies to photos you take with the camera and to images you import from your photo library.
  • A receipt photo is held only on your own device, inside the app's private storage area protected by your device's operating-system sandbox, while the bill waits to be read.
  • When the photo needs reading, it is sent to Fiskal's receipt-reading service for text extraction (see §5.2) and is not stored on our servers.
  • The on-device copy is deleted automatically as soon as the bill is resolved (once its text has been extracted) or if you discard the bill.

We never block you from capturing a receipt: if you are offline, the bill simply queues on your device and is processed when you reconnect.

07

Household sharing

Fiskal is built around a shared household ("Space"):

  • When you sign up, a private household containing only you is created automatically.
  • You can invite others with a single-use invite code that expires after a limited time.
  • Everyone in a household can see all of that household's data — bills, items, tags, budgets, and rules. Each bill records who added it.
  • If you leave a household, the data you contributed stays with that household and is not moved to your new one.

Only members of your household, and our service providers acting on our behalf (§5), can access your household's data. Access is enforced by server-side security rules.

08

Data retention

  • Your financial data is retained for as long as your account exists, so your spending history stays available to you and your household.
  • Receipt photos are retained only transiently on your device and deleted when the bill resolves (§6); they are not retained on our servers.
  • Subscription verification records (§5.3) are retained while your account exists, so your access can be kept correct and purchases are not granted twice.
09

Your rights and choices

Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, contact us at mmicunovic1@gmail.com.

Within the app:

  • Edit or delete individual bills, items, tags, and budgets at any time.
  • Export your data — from the app's Privacy & data screen, export your household's data at any time as a JSON file, delivered through your device's share sheet (generated on your device and not uploaded anywhere by us). The export includes your household's bills and items, tags, tag rules, budgets, learned category mappings, installment plans, and bundles — but not receipt images. In a shared household, the export includes the household data contributed by all members.
  • Delete your account and data — from within the app's Privacy & data screen, or at fiskal-app.com/account-delete. Note that bills in a shared household remain with the other members after your account is deleted.
Analytics and crash diagnostics

Fiskal collects the usage and crash-diagnostic data described in §2 to operate and improve the app. This data is not used for advertising and is not sold.

10

Security

  • All household data access is gated by server-side Firestore security rules scoped to your household.
  • Account credentials are handled by Firebase Authentication; we never store your Google or Apple password.
  • Data in transit to Firebase and to the receipt-reading service is protected in transit.

No system is perfectly secure, but we take reasonable measures to protect your data.

11

Children

Fiskal is a personal-finance tool intended for adults and is not directed to children under 16. We do not knowingly collect data from children. If you believe a child has provided us data, contact us and we will delete it.

12

Region and currency

Fiskal's home market is Montenegro, and fiscal-receipt QR lookup is supported for the countries listed in §5.4. The app supports selecting a display currency per household; it does not perform currency conversion.

13

International transfers

Your data is processed by Google's cloud infrastructure and by Fiskal's backend service, which is currently hosted in Nuremberg, Germany. Google's infrastructure may process data in other regions in accordance with Google's own data-processing terms. Fiscal-receipt QR lookups (§5.4) go directly from your device to the official verification service of the country that issued the receipt.

14

Changes to this policy

We may update this policy as the app evolves. When we make material changes we will update the "Last updated" date above and, where appropriate, notify you in the app.

Section 15

Contact us

Questions or requests about this policy or your data? Reach out and we'll respond.

PostVojina Katnica 19, Podgorica, Montenegro
ControllerMilos Micunovic (individual)