Flow Wallet Privacy Policy

Effective date: July 16, 2026

Developer: everancii
Contact: [email protected]
Website: https://flowsea.men

This Privacy Policy explains how Flow Wallet handles user data. Flow Wallet is a personal finance app for tracking wallets, transactions, budgets, goals, receipts, settings, optional cloud sync, and optional family sharing.

Summary

Flow Wallet is local-first. Core finance data is stored on your device unless you choose to sign in and enable sync features.

Flow Wallet does not sell user data.

Flow Wallet does not use user data for third-party advertising.

Flow Wallet does not use third-party advertising SDKs.

Data We Collect Or Process

Account Data

If you create an account or sign in, Flow Wallet may process:

  • Email address
  • Display name
  • Authentication identifiers
  • Optional profile information, such as avatar image
  • Google account sign-in information if you choose Google sign-in

This data is used to create and manage your Flow Wallet account, authenticate you, and enable sync features.

Financial Data

Flow Wallet lets you enter and manage:

  • Wallets and account names
  • Transactions
  • Categories
  • Balances
  • Budgets
  • Savings goals
  • Recurring transaction settings
  • Notes and comments you add
  • App preferences related to finance tracking

This data is used only to provide Flow Wallet app features.

When cloud sync is enabled, financial payloads are encrypted on your device before upload. The sync provider stores encrypted financial payloads and required metadata, such as user IDs, record IDs, timestamps, membership status, and sync state. Flow Wallet is designed so the sync provider does not receive plaintext balances, transaction notes, or wallet contents.

Receipt Data

If you use receipt scanning, Flow Wallet may access:

  • Camera images you capture
  • Images you select from your device gallery
  • Text and structured data extracted from receipts
  • Merchant names, item names, totals, taxes, dates, and other receipt fields

Receipt images are used to create transaction drafts. Temporary receipt images are deleted after the receipt workflow is completed or canceled where supported by the app flow.

Flow Wallet uses local/on-device receipt recognition by default. If you enable an optional remote receipt-recognition provider, such as OpenRouter, receipt image bytes, OCR hints, and extraction instructions may be sent to that provider to process the receipt. This optional remote processing is disabled unless you configure and enable it.

Family Sharing Data

If you use family sharing, Flow Wallet may process:

  • Household membership information
  • Member IDs and display names
  • Invite codes
  • Family sharing activity/audit events
  • Public encryption keys
  • Encrypted household keys
  • Encrypted shared wallet and transaction payloads

Family sharing financial payloads are encrypted before upload. Metadata required to operate family sharing, such as member IDs, roles, statuses, timestamps, invite state, and audit events, may be visible to the sync provider.

Device And App Data

Flow Wallet may store or process:

  • App settings
  • Language, theme, formatting, haptic, and notification preferences
  • Local notification schedules
  • Secure device-held encryption keys
  • Device public keys used for encrypted sync
  • Basic technical information needed by app stores, operating systems, Supabase, Google sign-in, or optional providers to deliver their services

Permissions

Flow Wallet may request these Android permissions:

  • Internet: to sign in, sync data, use Google sign-in, and use optional remote receipt processing.
  • Camera: to scan receipts when you choose to take a receipt photo.
  • Photo Picker: to let you choose a single receipt or profile image through the system picker. Flow Wallet does not request broad gallery access and does not use `READ_MEDIA_*` permissions.
  • Notifications: to send reminders if you enable them.
  • Biometric authentication: to support app lock if you enable it.
  • Vibration: to provide haptic feedback if enabled.
  • Receive boot completed: to restore scheduled local reminders after device restart.

Flow Wallet asks for runtime permissions where Android requires them.

How We Use Data

We use data to:

  • Provide personal finance tracking features
  • Save and display wallets, transactions, budgets, goals, and reports
  • Scan and import receipts
  • Authenticate users
  • Sync encrypted data across your devices
  • Enable encrypted family sharing
  • Apply app settings and preferences
  • Send local reminders if enabled
  • Provide support, security, troubleshooting, and account deletion where requested

Service Providers

Flow Wallet may use these service providers depending on the features you enable:

  • Supabase: authentication, database, storage, and sync infrastructure.
  • Google: Google sign-in and Android platform services.
  • OpenRouter or another user-configured remote AI provider: optional receipt recognition only if enabled by you.

Service providers process data only as needed to provide their services. Their handling of data is also subject to their own terms and privacy policies.

Data Sharing

Flow Wallet does not sell user data.

Flow Wallet does not share user data with advertisers.

Flow Wallet may share data with service providers only as needed to operate app features, comply with law, protect users, prevent abuse, or complete user-requested actions.

Data Security

Flow Wallet uses modern platform security features where available, including:

  • HTTPS for network communication
  • Device secure storage for encryption keys where supported
  • On-device encryption before uploading financial sync payloads
  • Per-device and per-household key handling for encrypted sync and family sharing

No system can guarantee absolute security. You are responsible for keeping your device, app account, and recovery information secure.

Data Retention

Local app data remains on your device until you delete it, clear app storage, uninstall the app, or delete it through app features.

Synced account data remains until you delete it, request account deletion, or the data is no longer needed to provide the service.

Temporary receipt images are removed after the receipt workflow is completed or canceled where supported by the app flow.

We may retain limited records when required for legal, security, abuse prevention, or compliance reasons.

Account And Data Deletion

You can request deletion of your Flow Wallet account and associated synced data.

Account deletion page: https://flowsea.men/flow-wallet-delete-account

Deletion contact: [email protected]

When you request deletion, we will delete or anonymize account data and synced app data associated with your account unless retention is required by law, security, fraud prevention, or legitimate compliance needs.

If you use encrypted sync or family sharing, deleting keys or devices may make encrypted data unrecoverable.

Children

Flow Wallet is not directed to children. Do not use Flow Wallet if you are not old enough to consent to personal data processing under the laws of your country or region.

International Transfers

Service providers may process data in countries other than your own. When this happens, data is handled according to this Privacy Policy and applicable data protection laws.

Changes To This Policy

We may update this Privacy Policy from time to time. The latest version will be posted on this page with an updated effective date.

Contact

For privacy questions or deletion requests, contact:

[email protected]