Privacy Policy
1. Introduction
Chaos To Cash Systems ("we", "our", or "us") provides an automated financial document aggregation service (the "Service"). This Privacy Policy explains how we collect, use, and protect your information, specifically focusing on data accessed via Google APIs.
2. Information We Collect
When you use our Service, we collect:
- Account Information: Your email address and basic profile information.
- Financial Documents: Receipts, invoices, and related attachments sourced from your connected communication channels (e.g., WhatsApp).
- Google Workspace Data: If you connect your Google account, we access your Gmail (to locate and download invoice attachments and links) and your Google Drive (to store processed financial reports and receipts).
3. Google API Services User Data Policy (Limited Use)
Chaos To Cash's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We only use your Gmail data to locate and extract financial documents.
- We only use your Google Drive data to organize your receipts and upload generated financial reports.
- We do not use your Google data for serving advertisements.
- We do not allow humans to read your data unless we have your affirmative agreement for specific messages, doing so is necessary for security purposes such as investigating abuse, to comply with applicable law, or for the App's internal operations and even then only when the data has been aggregated and anonymized.
4. Data Processing and Third-Party AI Providers
To extract vendor names, dates, and amounts from your documents, we utilize large language models provided by OpenAI.
- Strict Confidentiality: The data sent to OpenAI is used strictly for extraction purposes.
- No Training: As per our enterprise agreement with our AI providers, your personal and financial data is not used to train their AI models.
5. Data Retention & Storage
We believe you should own your data. Therefore, the physical source files (PDFs, images) are uploaded directly to your personal Google Drive. We do not store these physical files on our servers long-term. We only store the extracted metadata (Vendor, Amount, Currency, Date, and a secure link to the file in your Drive) in our secure database to generate your monthly reports.
6. Sharing with Third Parties (Your Accountant)
To facilitate seamless bookkeeping, our system automatically configures the receipts uploaded to your Google Drive with a secure "Anyone with the link can view" permission. We provide these specific, unlisted URLs to you in a monthly CSV file so you can easily share them with your accountant or ERP system.