Privacy Policy
Last updated: January 1, 2026
This Privacy Policy describes how No Accounting (Sole Proprietor) ("we", "us", or "our") collects, uses, and shares information when you use No Accounting (the "Service") — a project management and accounting application that processes invoices and receipts from your Google Drive using AI to produce structured transaction data.
1. Information We Collect
Account information
When you create an account we collect your name, email address, and password (hashed). If you sign in with Google we receive your name, email address, and profile picture from Google.
Google Drive content
With your explicit consent we access files in the Google Drive folder that you connect to the Service. We use the drive.file scope, which limits our access to files created by, or explicitly opened with, No Accounting. We do not read or list any other files in your Drive.
Invoice and transaction data
When you place a document (invoice, receipt, bill) into a connected Drive folder, we download it, send it to our AI provider for extraction, and store the resulting structured fields (vendor, date, amount, tax, line items, category) in our database alongside a reference to the original file.
Usage data
We collect minimal technical data required to operate the Service: log timestamps, error reports, IP address, browser type, and pages visited.
2. How Google Drive Access Works
- You initiate the connection from Settings → Google Drive.
- Google shows you a consent screen listing the exact permissions we request.
- We receive a per-user access token scoped to
drive.fileonly. - We use that token to (a) create per-project folders, (b) watch those folders for new files, (c) download new invoice files for AI extraction, and (d) move processed files into Year/Category sub-folders.
- You can revoke our access at any time from Settings → Disconnect, or from your Google Account permissions page.
3. How Invoice Processing Works
- A new file appears in a connected Drive folder.
- We download the file to a secure temporary location.
- We send the file contents to Google Gemini for structured field extraction.
- Gemini returns a JSON object (vendor, total, tax, dates, line items, confidence score).
- We store the extracted fields in our database and link them to the original file.
- You review, edit, and approve the extracted data in your dashboard.
4. Use of Google Gemini AI
We use Google's Gemini API to extract structured data from invoices. Invoice content is sent to Gemini solely for this purpose. Per Google's Gemini API terms, your content is not used to train Google's models when processed through the paid API tier we use.
5. How We Use Your Information
- To provide, operate, and maintain the Service.
- To extract, organize, and display your accounting data.
- To authenticate you and secure your account.
- To respond to support requests.
- To send transactional emails (account verification, password reset, security alerts).
- To detect, prevent, and address technical issues and abuse.
We do not sell your personal information. We do not use your invoice data or Drive content for advertising.
6. Data Sharing
We share data only with the following categories of service providers:
- Supabase — database, authentication, and file storage.
- Google (Drive, Gemini) — file access and AI extraction.
- Lovable Cloud — application hosting and OAuth gateway.
We may disclose information if required by law, valid legal process, or to protect the rights, property, or safety of No Accounting (Sole Proprietor), our users, or others.
7. Data Retention
We retain your account data for as long as your account is active. Extracted transaction data is retained until you delete it or close your account. Original invoice files remain in your Google Drive — we do not copy them to long-term storage. When you delete your account, we delete your data within 30 days, except where retention is required by law (e.g., tax records).
8. Data Deletion Requests
You can delete individual transactions and documents from your dashboard at any time. To delete your entire account and all associated data, email us at hello@noaccounting.app or use the account deletion option in Settings. We will confirm deletion within 30 days.
9. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you.
- Correct inaccurate information.
- Delete your information.
- Export your data in a portable format.
- Object to or restrict certain processing.
- Withdraw consent (e.g., disconnect Google Drive).
To exercise these rights, contact us at hello@noaccounting.app.
10. Security
We use industry-standard measures to protect your data: encryption in transit (TLS), encryption at rest, scoped OAuth tokens, row-level security on our database, and regular security reviews. No system is 100% secure; we cannot guarantee absolute security.
11. International Transfers
Your data may be processed in countries other than your own, including the United States. We rely on standard contractual clauses and our providers' security frameworks for cross-border transfers.
12. Children
The Service is not directed to anyone under 16. We do not knowingly collect data from children.
13. Changes to This Policy
We may update this policy from time to time. Material changes will be announced by email or in-app notice at least 14 days before they take effect.
14. Contact Us
No Accounting (Sole Proprietor)
Email: hello@noaccounting.app