Penzo

Privacy Policy

Penzo (Penzo Expense Tracker) · by Ackerman Labs · com.ackerman.penzo
Effective date: 14 June 2026 · Last updated: 14 June 2026
Contact: penzo.ackerman@gmail.com

Penzo ("the app", "we", "us") is an expense-tracking app built by Ackerman Labs. This policy explains what data the app handles, why, and your choices. We have written it to be plain and honest.

The short version: Your financial data — expenses, incomes, categories, budgets, bills and recurring items — stays on your device. We do not have a cloud copy of it and cannot see it. The only data that leaves your device is optional sign-in identity and anonymous app-usage/crash diagnostics, described below.

1. Data stored only on your device

The following is created and stored locally on your device and is never uploaded to us or any server:

Because this data is local-only:

2. Data we process through third-party services

Penzo uses Google Firebase. Depending on whether you sign in, the following may be processed:

a) Account / identity — only if you choose to sign in

Signing in is optional; you can use Penzo without an account ("continue without account"). If you sign in with Google, Firebase Authentication stores:

We use this only to show your profile inside the app and to provide account deletion. We do not use it to store or sync your financial data.

b) Usage analytics

We use Firebase Analytics to understand how the app is used (for example, that an expense was added or a backup was created). We log only the occurrence of an action — we deliberately do not send amounts, categories, sources, notes, or any financial values. Firebase Analytics may also collect standard, pseudonymous information such as device model, operating-system version, app version, approximate (coarse) region, and an app-instance identifier.

c) Crash diagnostics

We use Firebase Crashlytics to receive crash and error reports so we can fix bugs. These reports include technical information such as device state, operating-system version, and the crash stack trace. They do not include your financial data.

We do not sell your data, and we do not use it for advertising.

3. Device permissions

PermissionWhy
Notifications (POST_NOTIFICATIONS)To show bill-reminder notifications you schedule
Run after restart (RECEIVE_BOOT_COMPLETED)To re-schedule your reminders after the device reboots
Biometrics (USE_BIOMETRIC)To unlock the app with fingerprint/face if you enable app lock

The app lock and biometric check happen entirely on your device.

4. Third-party providers

5. Data retention

6. Deleting your account and data

You can delete your account and all on-device data at any time:

In the app: Settings → your account → Delete account. This permanently deletes your Penzo account from Firebase Authentication and wipes all data stored on the device. This cannot be undone.

Without the app / by request: see our account-deletion page, or email us at penzo.ackerman@gmail.com and we will delete your account.

You can also use Settings → Remove data from this device to wipe local data and sign out without deleting your Firebase account.

7. Children

Penzo is not directed at children under 13 (or the minimum age in your country), and we do not knowingly collect data from them.

8. Security

On-device data is stored in the app's private storage. Sign-in is handled by Google. No method of storage or transmission is 100% secure, but we limit what leaves your device to the minimum described above.

9. Changes to this policy

We may update this policy. Material changes will be reflected by updating the "Last updated" date on this page.

10. Contact

Ackerman Labs — penzo.ackerman@gmail.com