Privacy Policy
Chillwari is a personal hobby project. This policy explains what data we collect and how we use it.
What We Collect
- Anonymous users: A session cookie to remember your language preference, and a device-local session that links you to trips you joined. No name, email, or account required.
- Google or Apple sign-in users: The display name from your chosen provider, plus a profile picture if the provider supplies one. Your email address is never stored as-is — we keep only a masked form for display (like j**[email protected]) and an irreversible hash used to recognize your account the next time you sign in. With Sign in with Apple your email may be a private relay address. Used to identify you across devices.
- All users: Trip names, member names, expense descriptions, amounts, currencies, and payment notes you enter while using the app.
- Receipt and menu photos: When you scan a receipt or menu, we store the image so the app can read the line items and split the bill. These photos can contain other people's names, card numbers, or addresses, so only upload what you have the right to share.
How We Use Your Data
We use your data only to operate the service, meaning we display your trips, calculate splits, and keep you connected to your groups. We share data with the providers listed below solely to run these features. We never sell your data or use it for advertising.
Third-Party Services
- Google and Apple sign-in: When you sign in with Google or Apple, authentication is handled by that provider. See Google's or Apple's privacy policy for details.
- Exchange rates: We fetch live rates from a third-party provider. No personal data is transmitted.
- Receipt and menu reading: When you upload a receipt or menu photo, we send the image and the text read from it to an AI provider that extracts the items. The provider processes it only to return the result, does not use it to train its models, and we do not sell it.
Cookies and Tokens
We use first-party cookies only, with no third-party or advertising trackers. Preference cookies remember your language (cwr_lang), theme (cwr_theme), and timezone (cwr_tz). A short-lived cookie (cwr_efunnel) helps us measure how the add-expense flow is used. A session cookie keeps you connected to your groups, and signed-in users also receive a JWT refresh token stored in an HttpOnly cookie. These are required for the service to work or to remember your choices.
Data Retention
Your saved trips and expenses are kept until you delete them. Uploaded receipt and menu photos are deleted automatically after about 7 days; unfinished uploads are cleared sooner, and abandoned expense drafts after 30 days. Anonymous accounts with no active session are removed by a daily cleanup job. Sessions end on logout. You can also request removal of your data by email (see Your Rights).
Your Rights
You can delete your trip data at any time from within the app. To request deletion of your account or your Google- or Apple-linked data, email us.
Changes
We may update this policy. The date at the top reflects the latest revision.
Contact
Questions? Email [email protected].