Who we are
Budget AI is operated by ALI Jan under the developer name NexVion, based in Pakistan. This policy explains how we process information when you use Budget AI, visit this website, or contact us. Contact: nexvion26@gmail.com.
What we collect and why
To provide your account and finance tracking, Budget AI processes your first and last name, email address, occupation if provided, settings, accounts, transactions, categories, savings goals and import drafts. Authentication credentials are handled by Appwrite Authentication. Financial records are cached on your device and synced to Appwrite. Profile pictures currently remain on your device.
We use this information to authenticate you, display and sync your records, create summaries, and provide features you choose. We do not ask for your bank password, move money, or access your SMS inbox.
Optional voice input
Your device speech service converts speech into text and may process audio online under its own terms. Budget AI does not itself upload audio recordings. When AI parsing is available, transcripts and category names are sent through Appwrite to OpenRouter and a serving model provider to prepare a transaction draft. You review the result before saving. Voice is optional; manual typing is always available.
Optional notification access
Android notification access is a broad system permission. Budget AI also requires your agreement and selection of supported source apps before it processes their alerts, including when Budget AI is closed. It checks the source before reading notification text. Support depends on app, alert format and language; it does not cover every bank or wallet. iOS does not offer this feature.
On-device processing filters authentication-related alerts and reduces recognized transactions to amount, currency, direction, source and time. Filters can make mistakes. In local-only mode, original text, merchant names, account numbers and balances are not stored in new notification drafts or sent to Appwrite. Minimized fields are queued on the device, then synced as drafts for review.
The private queue holds up to 500 entries. Entries older than 24 hours are removed when the queue is next accessed or a new alert is captured. Device background restrictions may delay or prevent capture. Disable importing in Settings or revoke Android notification access to stop it; disabling clears pending alerts. Signing out or switching accounts clears capture consent and pending alerts. Previously imported records remain until deleted. Drafts from older app versions may contain original alert text until you delete them.
Optional notification AI
“Use AI for unrecognized alerts” is separately opted in and off by default. Supported financial alerts that local parsing cannot interpret may be stored temporarily as redacted text. The app attempts to remove authentication alerts, long identifiers, email addresses and links. Redaction is imperfect; names and other personal details may remain.
When the app is active, this redacted text is sent through Appwrite to OpenRouter and a serving model provider. The current fallback chain uses Qwen3.8 27B Free, Ling Flash Fin Free, Ling Flash Sante Free, then Solar Mini4; serving providers may vary. Requests require OpenRouter’s no-data-collection and zero-data-retention routing settings and fail rather than relaxing them. These routing settings do not guarantee deletion of all infrastructure logs or records required by law. Only parsed transaction fields are saved in new notification drafts. You review drafts before confirmation.
You may leave notification AI off and use local parsing or manual entry. Disabling importing clears pending device entries but cannot recall an in-flight request already sent to a provider.
App alerts and email imports
If you enable Budget AI push alerts, a device push token is registered with Appwrite. Appwrite and Firebase Cloud Messaging deliver generic app alerts; messages are designed not to include amounts or merchant names. This permission is separate from permission to read other apps’ notifications. You can disable app alerts in Settings.
Bank email import and Gmail connection are not available for public use in this release. Do not forward financial email unless the app explicitly confirms an active import address and presents the related disclosure and consent.
Service providers and transfers
We use Appwrite for authentication, data storage and backend functions; OpenRouter and its serving providers for enabled AI features; and Firebase Cloud Messaging for enabled Android push delivery. Device speech services and your chosen email provider process their respective requests. This website is hosted on Vercel.
Appwrite is configured in its New York region. Service providers may process information in the United States and other countries outside Pakistan or your country of residence. We share information only as needed to operate the features described, respond to requests, protect the service, or meet legal obligations. Budget AI has no AdMob or advertising SDK and does not sell personal data.
Provider information: Appwrite, OpenRouter, Firebase, and Vercel.
Website and support messages
The website does not connect to your Budget AI account. We do not add advertising trackers or analytics cookies. Vercel processes technical request information such as IP address, browser information and request timing to serve and secure the site. Fonts are served locally.
The contact form prepares a message in your own email application; it does not silently submit data to a website database. Messages you send to our Gmail support address, including your email address and any details you include, are processed to answer your request. Do not include passwords, OTPs, card numbers or bank statements.
Retention and deletion
Your account and financial records remain until you remove them or request account deletion. You can request deletion in the app or on our account-deletion page. We aim to complete verified requests within 30 days and will communicate any delay and its reason. A shorter applicable legal deadline takes precedence.
Deletion covers your login and associated personal records. Shared exchange rates are not personal account records and remain. Offline copies on another device are not remotely erased; clear app data or uninstall on those devices. Infrastructure backup and operational-log retention depends on the relevant provider; we do not promise immediate erasure from backups. Any information retained for an applicable legal obligation is limited to that purpose and period. Contact us for the retention details relevant to your request.
Support correspondence is kept as needed to resolve your request and maintain necessary service or legal records. You can also request deletion of that correspondence.
Your rights and choices
You can edit your profile, export records, remove individual entries, disable optional permissions and request account deletion. Depending on your jurisdiction, you may have rights to access, correct, erase or receive a copy of your information, restrict or object to processing, withdraw consent, or complain to a data-protection authority. Email us to make a request; we may verify account ownership, but will not ask for your password.
Core account processing provides the service you request. Optional permissions and notification AI rely on your choices and consent where required. We may process limited records to secure the service, respond to support, or comply with law. Withdrawing an optional permission does not prevent manual tracking or undo processing already completed.
Security, age and updates
Network requests use HTTPS. Access controls and your device screen lock help protect records, but no service can promise absolute security. Protect your account and devices, and report security concerns to our support email.
Budget AI is intended for people aged 16 and over and is not directed at children. Contact us if you believe a child has provided personal information. We will update this policy when our practices change, and request fresh consent for material new optional uses where required.