Last updated 16 August 2026

Privacy Policy

Dhangoda keeps as much as it can on your phone. This page says exactly what leaves it, and why.

The short version

Dhangoda needs an account. It sets itself up around how your money actually works — a student, a shop owner and a driver get different categories, different questions and a different first screen — and that setup is tied to your profile.

Your spending records still live in a database on your own device, and every screen works with no signal at all. They are also copied to your private space in Google Firebase, so a second phone or a reinstall picks up where you left off. Nobody but your account can read them.

We do not sell your data, share it with advertisers, or run any analytics or tracking SDK in the app.

What Dhangoda stores on your phone

All of this stays in the app’s private storage, which other apps cannot read, and is removed when you uninstall:

  • Your transactions — amount, merchant, category, date and any note you add.
  • Your categories and budgets, including ones you create or rename.
  • Merchant history, so a shop you have paid before is categorised for you next time.
  • Your profile: your name, and how you use Dhangoda — student, shop owner, driver and so on.
  • The setup answers that go with it: what you earn in a month or on a normal day, and depending on which you are, your college, employer, shop name or vehicle type. Every one of these is skippable.
  • How you have arranged your home screen.
  • The original text of any payment notification the app read, kept so a mis-read can be diagnosed and corrected.

Reading payment notifications

If you turn on automatic capture, Dhangoda reads notifications from your bank and UPI apps to find payments and log them for you. This is off unless you switch it on, and Android requires you to grant it explicitly in system settings.

Notification text is read and stored on your device only. It is never uploaded — not to us, not to Firebase, not anywhere. Only the transaction it produces is synced, and only if you are signed in.

The app does not read SMS, and does not request the SMS permission.

Voice entry

When you use the microphone to log a payment, the recording is handled by your phone’s own speech recogniser — Google’s on Android, Apple’s on iOS. Depending on your device and whether you have an offline language pack installed, that recogniser may send audio to Google’s or Apple’s servers to transcribe it.

That processing is governed by their privacy policies, not ours. Dhangoda does not run a speech service, does not receive your audio, and does not store any recording. The microphone is only active while the voice sheet is open on screen.

Your account

You can sign in with Google, an email address, or a phone number. Authentication is handled by Google Firebase, which receives the identifier you sign in with. We never see or store a password.

Once signed in, your transactions, categories, merchants and budgets are synced to Firebase Firestore and stored in the asia-south1 region (Mumbai, India). Access rules restrict every record to the account that created it; no other user and no unauthenticated request can read them.

We do not receive your Google password, and we never see or store any password you use with a sign-in provider.

Encrypted backup to your Google Drive

Backup is optional. When you use it, Dhangoda encrypts your data on your phone with a passphrase you choose, then uploads only the encrypted file to a private, app-specific folder in your own Google Drive. That folder is hidden from other apps and from your normal Drive file list.

Your passphrase never leaves your phone and is not stored anywhere. We cannot read your backup, and we cannot reset the passphrase or recover the backup if you forget it.

The permission Dhangoda requests for this grants access only to its own hidden folder. It cannot see or touch anything else in your Drive.

What we never collect

  • Your bank credentials, card numbers, UPI PIN or any payment instrument. The app never asks for them and has no way to use them.
  • Your contacts, photos, location or call logs.
  • Advertising identifiers. There is no advertising SDK in the app.
  • Behavioural analytics. There is no analytics SDK in the app.

Deleting your data

In the app, open You → Delete everything. That removes every transaction, category, budget, merchant and profile record from the device, and deletes your account and its synced data.

You can also request deletion by email. The full process, and what happens to each kind of data, is on the account deletion page.

Children

Dhangoda is intended for people aged 13 and over. We do not knowingly collect data from children under 13. If you believe a child has created an account, write to us and we will remove it.

Changes to this policy

If what the app collects changes, this page changes with it and the date at the top is updated. Where a change materially affects what leaves your device, we will tell you inside the app before it takes effect rather than relying on you to re-read this page.

Contact

Questions about this policy, or about your data: india@dhangoda.com.