Privacy Policy

Last updated: August 10, 2026

BudgetHog ("we", "our", or "us") is committed to protecting your privacy. This policy explains what data the app uses, how it is stored, and what choices you have.

1. Data You Enter

Financial records you enter into BudgetHog — including subscriptions, loan details, bill splits, payment status, categories, reviews, price history, and savings events — are stored in a protected SwiftData database on your device. BudgetHog also creates a limited App Group snapshot so its widgets can display upcoming totals.

Premium users may sync personal subscriptions and loans through Apple's CloudKit. A Premium host may also create a shared household through CloudKit Sharing; invited guests can view and edit the household records shared with them. Personal subscriptions, loans, statement imports, private reviews, and source documents are not placed in a household share. BudgetHog does not copy CloudKit records into a separate developer-operated customer database.

2. Bank Statement Import & AI Analysis

BudgetHog can review CSV statement data, receipt or subscription screenshots, photographs, and PDFs of up to 10 pages. When you select a source:

You can withdraw AI consent at any time in Settings. When consent is off, document scanning and statement matching continue locally and no candidate fields are sent to the AI service.

3. In-App Subscriptions & Purchases

BudgetHog offers the following in-app purchases, processed entirely by Apple through the App Store:

We do not receive, process, or store your payment information. All transactions are subject to Apple's Terms of Service and handled entirely by the App Store. Subscriptions renew automatically unless cancelled at least 24 hours before the end of the current period. You can manage or cancel your subscription at any time in your iPhone's Settings → Apple ID → Subscriptions.

Promo codes, when redeemed, grant a free premium membership for a limited period. Promo code redemption state is stored locally on your device and is not tied to any personal identifier.

4. Data We Collect

BudgetHog does not require a developer-operated account and does not ask for your name or email address. If you enable optional AI, the structured financial candidate fields described above are processed to provide that feature.

Protected AI requests use Apple's App Attest. BudgetHog's edge service stores a pseudonymous app-installation key, verification environment, and increasing security counter so it can reject copied, replayed, or unverified requests. This key is used for security and is not used for advertising or cross-app tracking.

The app may collect limited, anonymous usage data through Apple's built-in analytics if you have opted in to share analytics with app developers in your iOS Settings → Privacy & Security → Analytics & Improvements. This data is aggregated and cannot be used to identify you.

5. Advertising

The free tier of BudgetHog displays advertisements served by Google AdMob. Where required, Google's User Messaging Platform presents privacy choices before ads are requested. Depending on your region, consent choices, and device settings, Google may process device identifiers, advertising data, diagnostics, and usage data to deliver or measure ads under its own privacy policy.

Premium subscribers (monthly or yearly) and users who have redeemed a valid promo code are shown no advertisements. BudgetHog does not intentionally request ads for users whose ad-free entitlement is active.

6. Third-Party Services

7. Calendar & Notifications

If you choose to add a subscription's due date to your calendar, BudgetHog requests access to EventKit to create a calendar event. This requires your permission and can be revoked at any time in your device settings. We do not access or read any existing calendar events.

With your permission, BudgetHog may send local push notifications to remind you of upcoming subscription due dates. These notifications are scheduled entirely on-device and do not involve any remote server.

8. Children's Privacy

BudgetHog is not directed at children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has used the app, please contact us and we will take appropriate steps.

9. Data Deletion

BudgetHog's Security & Data screen provides free controls to delete local financial data and migration recovery copies, delete personal BudgetHog records from iCloud, leave a shared household, or delete a household you host. A guest may leave at any time; only the host may delete a hosted household. Deleting the app also removes its local container, but it does not by itself delete records already synced to iCloud.

10. Security, Backup & Export

You may enable Face ID, Touch ID, or device-passcode protection inside BudgetHog. Local database files and migration recovery copies use iOS complete file protection. Premium users may create password-protected .budgethogbackup files using AES-256-GCM with a PBKDF2-derived key. BudgetHog cannot recover a forgotten backup password.

CSV exports are intentionally unencrypted and may contain readable financial information. They remain outside BudgetHog after you save or share them, so store and delete exported files carefully.

11. Changes to This Policy

We may update this privacy policy from time to time. Any material changes will be reflected on this page with an updated date. Continued use of the app after changes constitutes acceptance of the updated policy.

12. Contact

If you have any questions about this privacy policy or your data, please contact us at support@budgethog.app.