Glimm: Expense Track Pro

Privacy
Policy

Effective Date: May 6, 2026

Glimm ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use the Glimm: Expense Track Pro mobile application ("App"), available on Android and iOS. Please read this policy carefully. If you do not agree with its terms, please do not access or use the App.

This Privacy Policy applies to users globally. Depending on your jurisdiction, additional rights or obligations may apply, and we aim to respect all applicable data protection frameworks including the EU General Data Protection Regulation (GDPR), India's Digital Personal Data Protection Act (DPDPA), the California Consumer Privacy Act (CCPA), and others.

1. Information We Collect

1.1 Information You Provide

When you use the App, you may provide us with information such as:

  • Name and email address (when creating an account via Firebase, Google Sign-In, or Apple Sign-In)
  • Profile photo (if provided through your connected Google or Apple account)
  • Expense records, amounts, categories, notes, and dates that you manually enter
  • Optional location data when you choose to tag an expense with a geographic location

1.2 Information Collected Automatically

When you use the App, we and our third-party service providers may automatically collect:

  • Device information (device model, operating system, unique device identifiers)
  • App usage data (features used, frequency of use, crash logs)
  • IP address and approximate geolocation (derived from IP, not GPS)
  • Firebase Analytics data (anonymized usage metrics)
  • Firebase Crashlytics data (error and crash reports to improve stability)

1.3 Location Information

The App may request access to your precise GPS location to allow you to optionally tag expense entries with a location. This permission is optional and can be granted or revoked at any time through your device settings. We do not track your location in the background or continuously monitor your whereabouts.

1.4 Authentication Data

When you sign in using Google Sign-In, Apple Sign-In, or Firebase Email/Password Authentication, we receive limited profile information (such as your name, email address, and profile picture) directly from those identity providers. We do not receive or store your passwords from these third-party services.

2. How We Use Your Information

We use the information we collect for the following purposes:

  • To create and manage your user account
  • To enable core App features such as expense logging, categorization, and analysis
  • To personalize your experience within the App
  • To synchronize your data securely across your devices via Firebase
  • To diagnose technical issues and improve App performance (via Crashlytics and Analytics)
  • To communicate with you about important updates, changes to policies, or support inquiries
  • To comply with legal obligations and enforce our Terms and Conditions

We do not use your personal expense data for advertising purposes, and we do not sell your data to third parties.

3. Legal Basis for Processing

If you are located in the European Economic Area (EEA), United Kingdom, or other jurisdictions with similar data protection laws, our legal bases for processing your personal data are:

  • Contractual necessity: To provide the services you have requested (account creation, expense tracking, data sync)
  • Legitimate interests: To improve the App, prevent fraud, and ensure security
  • Consent: For optional features such as location tagging and analytics (you may withdraw consent at any time)
  • Legal obligation: To comply with applicable laws and regulations

4. Sharing of Your Information

We do not sell, trade, or rent your personal information to third parties. We may share your data in limited circumstances:

4.1 Service Providers

We use Firebase (provided by Google LLC) as our backend infrastructure for authentication, data storage (Firestore), and analytics. Firebase operates under Google's Privacy Policy and Google Cloud Terms of Service.

4.2 Legal Requirements

We may disclose your information if required to do so by law, court order, or governmental authority, or if we believe disclosure is necessary to protect the rights, property, or safety of Glimm, our users, or others.

4.3 Business Transfers

In the event of a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred as part of that transaction. We will notify you before your data becomes subject to a different privacy policy.

5. Data Retention

We retain your personal data for as long as your account is active or as needed to provide the App's services. If you delete your account, we will delete or anonymize your personal data within 30 days, unless we are required to retain it longer under applicable law.

Aggregated and anonymized data (such as usage statistics) may be retained indefinitely as it cannot be used to identify you personally.

6. Data Security

We implement industry-standard technical and organizational measures, including:

  • Firebase Security Rules to restrict unauthorized data access
  • Encrypted data transmission using HTTPS/TLS protocols
  • Firebase Authentication for secure user identity management
  • Regular security reviews and monitoring of our systems

7. Your Rights & Choices

Depending on your jurisdiction, you may have certain rights regarding your personal data:

7.1 Access & Portability

You have the right to request a copy of the personal data we hold about you. Contact us at sudonote@gmail.com.

7.2 Correction

You may update or correct inaccurate information directly within the App's profile settings or by contacting us.

7.3 Deletion

You have the right to request deletion of your account and associated personal data within 30 days. Submit a request via our Account Deletion page.

7.4 Opt-Out of Analytics

You may opt out of Firebase Analytics data collection by disabling analytics in your device settings or by contacting us.

7.5 Location Permissions

You can manage location permissions at any time through your device's OS settings. Revoking access only disables location tagging.

7.6 GDPR Rights (EEA/UK)

Right to object to processing, restrict processing, lodge a complaint with your local supervisory authority, and withdraw consent.

7.7 CCPA Rights (California)

Right to know what personal information is collected, request deletion, and opt out of the sale of personal information. We do not sell personal information.

8. Children's Privacy

The App is not directed to children under the age of 13 (or the applicable minimum age in your jurisdiction). We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at sudonote@gmail.com and we will take steps to delete such information promptly.

9. Third-Party Services

The App uses the following third-party services that may collect and process data independently:

Firebase Authentication

Secure sign-in (Google LLC)

Google Sign-In

Account creation & authentication (Google LLC)

Apple Sign-In

Account creation & authentication (Apple Inc.)

Firebase Firestore

Secure, cloud-based data storage (Google LLC)

Firebase Analytics

Anonymized usage analytics (Google LLC)

Firebase Crashlytics

Crash reporting & performance monitoring (Google LLC)

We are not responsible for the practices of third parties. We encourage you to review their privacy policies.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States, where Google/Firebase operates data centers.

When we transfer personal data from the EEA or UK, we rely on appropriate safeguards such as Standard Contractual Clauses (SCCs) as approved by the European Commission.

11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, regulatory, or operational reasons. When we make material changes, we will update the effective date and may notify you via the App or email.

Your continued use of the App after any changes constitutes your acceptance of the updated Privacy Policy.

12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

📱

App Name

Glimm: Expense Track Pro

🌐

Platforms

Android & iOS

We will respond to all legitimate requests within 30 days. If you are unsatisfied with our response, you have the right to lodge a complaint with your local data protection authority.

© 2026 Glimm. All rights reserved.