Privacy Policy
1. Information We Collect
1.1 SMS Messages (on-device only)
Zantra requests the READ_SMS permission to scan your device inbox for bank and payment messages. This is the core function of the app.
- Only financial SMS (from recognised bank/payment senders) are parsed.
- Non-financial messages are ignored and never stored.
- You can delete any transaction at any time from within the app.
1.2 Account Information
When you sign in with Google, we receive your name, email address, and profile photo URL from Google Sign-In. This is used solely to identify your account and personalise the greeting in the app.
1.3 Financial Summaries (stored locally)
Parsed transactions — including amounts, merchant names, categories, dates, and account last-4 digits — are stored in a local SQLite database on your device. This data is never uploaded to our servers unless you explicitly use the Backup feature (see §1.5).
1.4 Usage & Analytics
We use Firebase Analytics to collect anonymous, aggregated usage events (e.g. which screens are visited, feature usage frequency). This data contains no SMS content, transaction amounts, or personally identifiable information. You can opt out via your device's standard "Opt out of Ads Personalisation" setting.
1.5 Backup Data (optional)
If you use the Backup & Restore feature, an encrypted export of your local transaction database is saved to your personal Google Drive account. This is your own Drive storage; Zantra does not have access to any other files in your Drive.
1.6 Issue Reports (optional)
When you tap "Report Issue" on a misclassified transaction, the following is sent to our Firebase Firestore database: the issue type, the transaction amount and category, the original SMS text, and an optional note from you. This is used exclusively to improve SMS parsing accuracy. You can choose not to report issues; the feature is always opt-in.
1.7 AI Advisor (Gemini)
The Zantra Advisor feature uses Google Gemini (via Firebase AI) to answer your finance questions. The AI receives summarised context — your monthly income/expense totals and top spending categories (no raw SMS, no account numbers). Chat history is stored only on your device and is not retained by Google beyond the duration of the API call.
1.8 Subscription & Payment
Zantra Pro subscriptions are processed by Razorpay. We do not store your card or UPI credentials. Razorpay provides us only with a payment confirmation and order ID. Razorpay's own privacy policy applies to payment processing.
1.9 Advertising (optional)
Free users may see ads served by Google AdMob. AdMob may use your device's advertising ID to show relevant finance-related ads. You can reset or opt out of personalised ads in your Android settings (Settings → Privacy → Ads). Zantra Pro subscribers have ads turned off by default; all users can control ad types from Menu → Ad Preferences.
1.10 Content Feeds
The Finance Gyan and Videos tabs fetch articles and videos from public RSS feeds and the YouTube Data API v3. No personal data is sent to these services beyond a standard HTTPS request.
2. Data at a Glance
| Data type | Where stored | Sent to servers | Purpose |
|---|---|---|---|
| SMS content | Device only | Never | Transaction parsing |
| Parsed transactions | Device only | Never | Finance dashboard |
| Google account (name, email) | Device + Firebase Auth | Auth only | Sign-in & personalisation |
| Usage events | Firebase Analytics | Anonymous | App improvement |
| Issue reports | Firebase Firestore | Opt-in only | SMS parsing accuracy |
| AI chat context | Device (history) + Gemini API call | Per request | AI Advisor responses |
| Payment records | Razorpay + local subscription table | Razorpay only | Subscription management |
| Advertising ID | AdMob (opt-out available) | Free users only | Relevant ads |
| Backup export | Your Google Drive | User-initiated | Backup & restore |
3. How We Use Your Data
- To parse bank SMS and display your transactions, spending summaries, and trends.
- To authenticate you securely via Google Sign-In.
- To provide the AI Advisor with enough context to give personalised finance tips.
- To process and verify your Zantra Pro subscription.
- To improve SMS parsing rules based on voluntarily submitted issue reports.
- To measure anonymous feature usage and fix bugs (Firebase Analytics).
- To show finance-related ads to free users (AdMob), subject to your preferences.
We do not sell, rent, or share your personal data with any third party for marketing purposes.
4. What We Never Do
- We never upload your SMS messages to our servers.
- We never share your transaction data with advertisers or data brokers.
- We never store your card number, UPI PIN, or any payment credentials.
- We never read SMS from non-financial senders.
- We never access your contacts, camera, microphone, or location.
- We never sell your data — to anyone, for any reason.
5. Third-Party Services
Zantra uses the following third-party services, each governed by their own privacy policies:
| Service | Provider | Purpose |
|---|---|---|
| Firebase Auth | Google LLC | Secure sign-in |
| Firebase Analytics | Google LLC | Anonymous usage analytics |
| Firebase Firestore | Google LLC | Issue reports, subscription state, SMS rules |
| Firebase Remote Config | Google LLC | SMS parsing rule updates (no personal data) |
| Firebase App Check | Google LLC | API abuse prevention |
| Google Gemini (Firebase AI) | Google LLC | AI Advisor responses |
| Google Sign-In | Google LLC | Account authentication |
| Google AdMob | Google LLC | Ads for free users (opt-out available) |
| YouTube Data API v3 | Google LLC | Finance video feed |
| Razorpay | Razorpay Software Pvt. Ltd. | Subscription payment processing |
| Google Drive API | Google LLC | Optional encrypted backup |
Google's privacy policy:
policies.google.com/privacy
Razorpay's privacy policy:
razorpay.com/privacy
6. Data Retention
- Local data (transactions, SMS, preferences) — retained until you delete the app or clear app data.
- Firebase Auth — retained until you log out and request account deletion (see §8).
- Issue reports — retained in Firestore for up to 12 months, then auto-deleted.
- Analytics events — retained by Firebase Analytics for 14 months (Google default), then auto-deleted.
- Backup files — stored in your Google Drive; delete them directly from Drive at any time.
7. Children's Privacy
Zantra is not directed at children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
8. Your Rights & Choices
- Access & export — Use the Export feature in the app to download all your transaction data as an Excel file at any time.
- Delete transactions — Swipe to delete any transaction inside the app. Deleted transactions cannot be re-imported from the same SMS (protected by a unique constraint).
- Revoke SMS permission — Go to Android Settings → Apps → Zantra → Permissions to revoke SMS access at any time. The app continues to work with existing data.
- Ad preferences — Open Menu → Ad Preferences in the app to control which ad types appear and how often.
- Opt out of personalised ads — Go to Android Settings → Privacy → Ads → Opt out of Ads Personalisation.
- Delete your account — Email us at privacy@zentraai.in to request full account and data deletion. We will action this within 7 business days.
9. Security
We take the security of your data seriously:
- Local data is stored in a private app directory, inaccessible to other apps.
- All communication with Firebase and Razorpay uses TLS encryption.
- Firebase App Check prevents unauthorised API access.
- Biometric app lock is available for an extra layer of on-device protection.
- Backup exports are encrypted before being saved to Google Drive.
No method of electronic storage or transmission is 100% secure. If you discover a security vulnerability, please contact us at security@zentraai.in .
10. Changes to This Policy
We may update this policy as the app evolves. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you via an in-app message. Continued use of Zantra after changes are posted constitutes acceptance of the updated policy.
11. Contact Us
For any privacy-related questions, requests, or concerns: