1. About this policy
splitt. is developed, managed, and operated by Anuz Subedi, an individual developer based in Ontario, Canada (“we,” “us,” or “our”). splitt. helps people track shared expenses and balances on the web, iOS, and Android. This policy explains what information we process, why we use it, who receives it, and the choices you have. It also applies when you contact support. Anuz Subedi is responsible for the handling of personal information by splitt.. For privacy questions or requests, contact Anuz at splitt-support@quivren.com.
Shared spending is personal. We do not sell personal information or use your expense records for targeted advertising. Providing the service does require processing information through service providers and showing shared records to the people involved.
2. Information we collect
- Account and sign-in details: your email address, name, sign-in provider identifiers, account and session identifiers, sign-in times, and profile image information made available by your sign-in provider. Authentication is handled through Clerk and your chosen sign-in method.
- Your profile and choices: preferred name, username, avatar selection, default currency, appearance settings, and notification preferences.
- Shared spending records: expense descriptions, amounts, currencies, categories, notes, dates, payers, participants, split allocations, itemized entries, settlement records, comments, and edit history. These records can be entered by you or by people sharing expenses with you.
- Connections: friend requests, accepted connections, group names and memberships, invitations, and referral joins.
- Notifications: in-app activity and read status; browser push subscription endpoints and keys; native device tokens, installation identifiers, platform information, notification preferences, and delivery status or errors.
- Technical and support information: information necessary to serve and protect requests, such as IP addresses, browser or device characteristics, request and error logs; website usage measurements; and the messages, contact details, and attachments you choose to send to support.
splitt. records payments you tell it about; it does not collect bank credentials or card details to transfer money. Do not put passwords, payment-card numbers, or other unnecessary sensitive information in expense notes, comments, or support messages.
3. How we use information
We use information to authenticate you; maintain your account; connect you with friends and groups; calculate and display balances; synchronize records and preferences; deliver requested notifications; answer support requests; investigate abuse and errors; maintain security; and understand and improve service reliability and use. We may also process information to comply with legal obligations and establish, exercise, or defend legal claims.
Where a law requires a legal basis, we rely on performing our service agreement for core account and expense features, legitimate interests for proportionate security, support, and service improvement, consent where required for optional processing, and compliance with legal obligations. You may withdraw consent where processing relies on it; this does not affect processing already carried out lawfully.
4. What other people can see
Your profile helps others identify you and find your username. Friends and group members can see the records available in their shared context, including relevant names, expense details, balances, comments, edits, and recorded settlements. Members of a group may see group records even when they are not a participant in a particular expense. People may also enter records involving you.
Only share information you are comfortable making available to those people. They may copy or retain information they can access, and splitt. cannot control their copies. Authorized administrators may access account and activity information for service administration, security, troubleshooting, and support.
5. Service providers and other disclosures
We use providers to operate splitt., including Clerk for authentication, Convex for backend processing and data storage, Vercel for website hosting and web analytics, Apple Push Notification service for iOS notifications, and Google Firebase Cloud Messaging for Android notifications. Browser push providers help deliver web notifications. Our email provider processes messages sent to support. Providers receive information needed for their role; sign-in providers and device platforms may also process information under their own policies.
Notification delivery can involve identifiers, routing information, and notification content. What appears on your lock screen depends on the app and your system settings. You can control push permissions and previews on your device.
We may disclose information when reasonably necessary to comply with law or valid legal process, protect rights and safety, investigate fraud or abuse, or in connection with a merger, acquisition, or transfer of the service, subject to applicable privacy protections. We may also disclose information at your direction.
6. Cookies, local storage, and analytics
The website and authentication services use cookies and similar storage for sign-in, security, and session continuity. splitt. also stores preferences and draft or cached app data on your device. Vercel Web Analytics provides website usage measurements, such as visited pages, referral sources, device or browser categories, and approximate location. We do not use advertising trackers to target ads based on your shared expenses.
You can clear or restrict site storage in your browser, but doing so may sign you out or remove local drafts and preferences. Browser “Do Not Track” signals do not change core service processing. We do not sell personal information or share it for cross-context behavioral advertising, so there is no such activity to opt out of through a Global Privacy Control signal.
7. Retention and account deletion
We keep account information while needed to provide the service. You can request deletion in Settings → Account → Delete account, or contact splitt-support@quivren.com if you cannot access your account. Deleting the app alone does not delete your account.
Account deletion closes access and starts removal of the sign-in account, email, username, avatar information, preferences, sign-in records, push registrations, private notifications, pending friend requests, and referral information. Cleanup may continue after the account is closed.
Shared history is preserved: expenses, allocations, settlements, comments, edit history, accepted connections, and group records can remain so other people’s balances and history continue to work. Your former display name is retained with a “Deleted account” label. Deletion therefore does not erase every reference to you, remove other people’s copies, or cancel a balance or payment obligation.
We retain limited identity-revocation and deletion records to prevent old sessions from reopening a deleted account. Logs, backups, support correspondence, and information needed for security, disputes, or legal obligations may be retained for the period needed for those purposes. Retention depends on the type of record, its shared context, operational needs, and applicable law. Contact us about specific retained information or a request for further removal.
8. Your choices and rights
You can edit your profile, change preferences, manage notifications, and delete your account in the app. You can also email splitt-support@quivren.com to request access, a copy, correction, or deletion of your information. Depending on where you live and which laws apply, you may have rights to portability, restriction, objection, withdrawal of consent, or appeal of a request decision. We will assess requests under applicable law, explain relevant exceptions, and verify identity in a proportionate way. Authorized agents may contact us with evidence of authorization.
We will not discriminate against you for exercising applicable privacy rights. You may also complain to your local data-protection authority. Some requests can be limited by the rights of other participants, security requirements, or legal obligations; if so, we will explain our response.
9. Security and international processing
We use technical and organizational safeguards, including authenticated access and access controls, to protect information. No service, transmission, or storage system can guarantee complete security. Keep your sign-in credentials secure and report suspected unauthorized access to support.
splitt. and its providers may process information in the United States and other countries where they operate, which may have different privacy laws from your home country. Where applicable law requires safeguards for international transfers, we use the required transfer arrangements.
10. Children and policy updates
splitt. is not directed to children under 13, or children below a higher minimum age required by local law. If you believe a child has provided information in violation of these requirements, contact us so we can investigate and take appropriate action.
We may update this policy as the service or legal requirements change. We will post the current version with an updated date and provide additional notice of material changes where required. Contact splitt-support@quivren.com with questions about this policy.