Privacy Policy
Effective date: March 12, 2026
MangoSplit ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use the MangoSplit mobile application and website (collectively, the "Service").
1. Information We Collect
We collect the following types of information:
- Account information: When you create an account, we collect your email address, display name, username, and profile photo (if provided).
- Authentication data: If you sign in with a third-party provider (Google, Apple, or Facebook), we receive basic profile information from that provider. We do not store your third-party passwords.
- Expense data: Information you enter about expenses, payments, groups, and splits, including amounts, currencies, descriptions, and categories.
- Device tokens: On mobile devices, we collect push notification tokens to send you notifications about activity in your groups.
- Usage data: We may collect anonymous, aggregated information about how you use the Service to improve our product.
2. How We Use Your Information
We use your information solely to provide and improve the Service:
- To create and manage your account
- To track expenses, balances, and payments between you and other users
- To send push notifications about group activity (new expenses, payments, invitations)
- To enable group invitations and friend connections
- To improve and maintain the Service
We do not sell your personal information to third parties. We do not use your data for advertising purposes.
3. Data Storage and Security
Your data is stored securely using the following services:
- Supabase: Our primary backend, which stores your account information, expense data, and group data in a PostgreSQL database with Row Level Security (RLS) enabled.
- Firebase Cloud Messaging (FCM): Used solely for delivering push notifications on mobile devices. We store device tokens to route notifications.
We implement industry-standard security measures including encryption in transit (TLS), row-level security policies, and secure authentication protocols. However, no method of electronic transmission or storage is 100% secure.
4. Data Sharing
We share your information only in the following limited circumstances:
- With other users: Your display name, username, and profile photo are visible to users in your groups and your friends. Expense details are visible to group members and participants.
- Service providers: We use Supabase (database hosting) and Firebase (push notifications) to operate the Service. These providers process data on our behalf under strict data processing agreements.
- Legal requirements: We may disclose your information if required by law or in response to valid legal process.
5. Your Rights
You have the following rights regarding your data:
- Access: You can view all your personal data within the app at any time.
- Correction: You can update your profile information (display name, username, profile photo) in the app settings.
- Deletion: You can request deletion of your account and all associated data by contacting us at [email protected]. We will process deletion requests within 30 days.
- Notification preferences: You can enable or disable push notifications in the app settings or through your device settings.
6. Data Retention
We retain your data for as long as your account is active. If you request account deletion, we will delete your personal data within 30 days, except where we are required to retain it for legal or regulatory purposes.
7. Children's Privacy
The Service is not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will take steps to delete it promptly.
8. International Data Transfers
Your data may be processed and stored in countries other than your country of residence. By using the Service, you consent to the transfer of your data to these countries, which may have different data protection laws than your jurisdiction.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the effective date. Your continued use of the Service after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at:
[email protected]