Privacy Policy — Spent

Effective date: August 1, 2026

This English text is a translation provided for convenience. Spent is operated from the Republic of Korea and the Korean version is the governing text; if the two differ, the Korean version prevails.


1. Overview

Plien (“we”) handles personal data in accordance with the Personal Information Protection Act of the Republic of Korea. This policy applies to the mobile app Spent (한줄가계부 / 一行家計簿 / 一行記帳), which runs anonymously and requires no account.

2. What we collect and process

Collected automatically (anonymous usage statistics)

  • Anonymous analytics identifier (UUID) — generated at random on first launch and stored on the device. It does not identify a specific person and is deleted when the app is deleted.
  • Install identifier (client_id) — a random UUID used to correlate server requests, kept in the device Keychain, which means it survives deleting and reinstalling the app.
  • App metadata: app version and build, OS, language, region.
  • Product interaction events: screens opened, feature use counts. The body of what you type is not included.

We do not use the advertising identifier (IDFA) and we do not track your activity across other apps or websites.

Information you enter that we process

  • One-line entry text — processed to detect the amount, category, and store.
  • Receipt photos — processed to read line items and amounts (OCR).
  • Monthly spending summary — processed to generate the “monthly recap” sentence.
  • Feedback messages — sent to and stored on our server so we can reply and improve the service. A message may contain contact details if you write them in yourself.

The text and images above are sent through our server to generative AI (Google Gemini) for classification, recognition, and summarization, and only the result (amount, category, store name, sentence) is returned to the app. Requests do not carry your name, account, or other identifying information.

Stored on your device The originals of your entries (date, amount, category, payment method, store, memo), receipt photos, budgets, and settings are stored only on your device, and the app currently offers no syncing between devices. We cannot access the database stored on your device.

If you use a full device backup (iCloud device backup or a computer backup), app data may be included in that backup. That is an operating-system feature provided by Apple which you set up and manage yourself; it is not processing we entrust to Apple.

Sent to our server when you save When you save a transaction or create a ledger, a summary of that record (entry name, amount, date, category, and similar) together with the install identifier (client_id) and app environment details is sent to our server and recorded, so that we can see how the service is running and improve classification quality. This also applies when you type the entry in on the keypad. For the daily mood note, only the mood value is sent — never the body of the note.

The database on your device is not synced to the server wholesale, and the transmitted items contain no name, account, or other identifying field.

Not collected Name, phone number, email, address, advertising identifier (IDFA), location, contacts, payment (card) details. If you write contact details into a feedback message yourself, they arrive as part of that message.

3. Purposes

  • Automatic classification and recognition of one-line entries and receipts, and monthly insight generation (core features)
  • Operational statistics for transaction and ledger records, and improving automatic classification quality
  • Receiving and responding to enquiries and feedback
  • Anonymous usage analytics (service improvement)

4. Retention

ItemPeriod
Data on the deviceUntil you delete the app (you manage it)
Anonymous analytics identifier (UUID)Until you delete the app
Install identifier (client_id)Kept on the device even after deleting the app; removed when the device is reset
Analytics dataUntil the purpose of collection and use is achieved
Text, receipt images, and transaction records sent to the serverKept until the purpose of collection and use is achieved, then destroyed

Request and transaction records held on the server are used only to improve classification, recognition, and summarization quality and to produce operational statistics, and are not combined with identifying information such as a name or account. Where a retention duty applies under law, records are kept for that period and then destroyed.

5. Processors and cross-border transfer

ProcessorEntrusted workLocation
PostHog Inc.Anonymous usage analyticsUnited States
Railway Corp.Backend server hostingUnited States
Supabase Inc.Database hosting and receipt image storageUnited States
Google LLCGenerative AI (Gemini) classification, recognition, and summarizationUnited States
Slack Technologies, LLCDelivering request and transaction records to an operations notification channelUnited States

Processing by the above involves transfer outside the Republic of Korea. What is transferred is the anonymous analytics identifier (UUID), app metadata, and product interaction events (PostHog) and the one-line text, receipt images, transaction records, and install identifier (client_id) (Railway, Supabase, Google, Slack). No name, account, or other identifying information is included. Timing and method: transmitted over HTTPS at the time you use the service.

6. Your rights

You may request access to, correction of, deletion of, or suspension of processing of your personal data.

  • Where to ask: contact@plien.io
  • Data on the device can be deleted yourself via Settings > Data > Reset “<ledger name>” entries (reset each ledger separately if you have more than one), or by deleting the app.
  • If you have used a full device backup, app data may remain in that backup. You can delete it yourself from Settings > Apple Account > iCloud > Manage Storage, or from your computer’s backup management screen.

We do not collect information from children under 14.

7. Safeguards

  • All external communication is encrypted with HTTPS.
  • We collect no identifying information, and statistics are aggregated only by a random anonymous UUID. Server requests carry only the install identifier (client_id); no name or account is included.
  • The iOS App Sandbox security model applies.

8. Contact and complaints

Under Article 31 of the Personal Information Protection Act and Article 32(2) of its Enforcement Decree, the party responsible for data protection work is identified above (operated by a single sole proprietor).

To report an infringement of your rights (Korean authorities):

  • Personal Information Infringement Report Centre — privacy.go.kr / 118
  • Personal Information Dispute Mediation Committee — 1833-6972
  • Korean National Police Agency, Cyber Investigation Bureau — ecrm.cyber.go.kr / 182

9. Changes

This policy may be revised as the law or the service changes. We will give notice in the app or on plien.io before a change takes effect.