本政策說明 ShareSlice(以下稱「本服務」或「我們」)在您使用 ShareSlice 行動應用程式及相關服務時,如何蒐集、使用、保存與分享資訊。若您不同意本政策,請停止使用本服務。
1. 我們處理的資訊
- 帳號資訊:Firebase 使用者識別碼、電子郵件、暱稱、頭像、登入方式、語言與帳號設定。
- 分帳與記帳資料:群組、成員、角色、邀請、支出、收入、結算、共用錢包、帳本、轉帳、餘額調整、幣別、匯率、分類、日期、備註、固定收支規則、已保存品項,以及您自訂的付款方案名稱、類型、扣款來源標籤、回饋率、消費上限與適用期間。
- 收款資訊:您主動填寫的銀行或行動支付業者、收款人、帳號或錢包識別碼、分行、付款連結、說明與 QR 圖片。本服務不代為付款,請勿填寫密碼、信用卡安全碼或網路銀行登入資訊。
- 收據辨識:收據圖片、辨識文字、商家、日期、金額、幣別、稅金、小費、分類與品項。
- 訂閱:商品、商店、權益狀態、購買或回復結果及相關交易識別碼。付款資料由 Apple、Google 與 RevenueCat 處理,我們不會取得完整信用卡資料。
- 客服與回饋:訊息、附件、回覆狀態,以及您選擇提供的 App 版本、平台、語言與診斷資訊。
- 裝置與可靠性:App 版本、作業系統、裝置類型、推播權杖、通知偏好、App Check 資訊、錯誤類型、同步結果與效能資料。
- 分析與廣告:瀏覽頁面、功能操作、操作結果、介面版本、帳號來源、語言、訂閱狀態、概略使用量,以及 Google Mobile Ads 依地區與裝置設定可能處理的裝置/廣告識別碼、IP 位址、廣告互動與同意選項。Analytics 不包含名稱、備註、邀請碼、收據文字、收款資訊、原始金額、圖片網址、電子郵件或錯誤堆疊。
2. 使用目的
我們使用資訊以建立及管理帳號、提供分帳與記帳、同步與離線操作、顯示授權群組資料、驗證訂閱、傳送通知、處理客服與回饋、防止濫用、診斷錯誤、改善產品,以及履行法律義務與保護服務安全。
3. 收據掃描與人工智慧
「快速辨識」會在支援的裝置上於本機執行;「AI 辨識」需要網路。App 會先縮小並壓縮圖片,辨識文字可能暫時交由 Google Vertex AI Gemini 轉成結構化欄位,Gemini 不會收到原始圖片。若本機辨識無法使用或失敗,圖片可能暫時傳送至 Google Cloud Vision 作為備援。
OCR 後端不保存原始圖片或完整辨識文字。結構化結果可能暫存最多 24 小時;有限的請求與額度中繼資料可能保存最多 40 天,用於防濫用、計量與監控。只有您選擇保留收據並儲存紀錄時,圖片才會存入 Firebase Storage。辨識可能出錯,套用前請仔細確認。
4. 收款資訊與分享
收款資訊為選填。綁定帳號的資訊可顯示給該帳號所綁定群組中的成員;未綁定成員的資訊由授權群組編輯者管理。常用成員加入群組時,資料會複製至群組並獨立保存,已由其他使用者取得的副本無法自動收回。
為支援離線操作,最近查看或編輯的收款文字與 QR 圖片可能經加密後保存在裝置安全儲存空間。快取與待同步資料依帳號隔離,登出或切換帳號時清除。QR 圖片須通過權限檢查並可能使用短效連結。
5. 服務供應商
我們依功能需要使用 Google Firebase 與 Google Cloud(登入、資料庫、Functions、Storage、App Check、推播、分析及 OCR/AI)、RevenueCat、Apple App Store 與 Google Play(訂閱)、Google Mobile Ads(廣告)、Branch(邀請與深層連結)、Google 與 Apple 登入服務。供應商可能在其他國家處理資料,並適用其條款與隱私政策。我們不出售群組、帳本、收據或收款說明內容。
Meta 廣告成效衡量
我們使用 Meta App Events 衡量 Facebook 與 Instagram 廣告相關的安裝及 App 工作階段。Meta 可能收到安裝與工作階段事件、事件時間與使用時長、SDK 產生的 App 執行個體識別碼、App 與裝置資訊(版本、作業系統、型號、語言、時區),以及 IP 位址等網路資訊;這些識別碼不代表資料完全匿名。目前整合關閉自動事件記錄及廣告識別碼蒐集,不向 Meta 傳送註冊、建立群組、支出或訂閱事件,也不傳送帳號 ID、群組內容、收據或收款資訊。SDK 仍可能為設定及衡量目的連線至 Meta。其處理、保存與隱私控制選項請參閱 Meta 隱私政策。隱私要求可透過下方聯絡方式提出。若依法或平台規範須取得同意或權限,本政策不能取代該程序。
6. 安全與保存期間
本服務使用登入驗證、權限檢查、傳輸加密、短效媒體連結與受控雲端儲存。帳號與功能資料通常保存至帳號刪除或不再提供服務所需時;備份、安全紀錄、訂閱紀錄及依法須保存的資料可能於刪除後保留有限期間。任何系統均無法保證絕對安全。
7. 您的選擇與權利
您可在 App 內編輯或刪除支援的紀錄、管理相機/相簿/通知權限與可用的廣告選項,並決定是否使用雲端 AI。您可在 App 內提出刪除帳號。依共享群組、安全、備份、交易與法律要求,部分資料可能延後刪除;已複製或分享給其他授權使用者的資料可能保留於對方紀錄。您也可聯絡我們要求查詢、更正或刪除資料。
8. 兒童、跨境處理與政策變更
本服務並非以未滿 13 歲或當地法定最低年齡者為對象。資料可能在您所在地以外處理。我們可能因功能、供應商或法律要求更新本政策,並調整上方日期;重大變更若依法需要,將另行通知。
9. 聯絡方式
電子郵件:bad.tech.service@gmail.com
Privacy Policy
This Policy explains how ShareSlice ("we", "us", or "our") collects, uses, stores, and shares information when you use the ShareSlice app and related services.
1. Information we process
- Account: Firebase user ID, email, nickname, avatar, sign-in provider, language, and settings.
- Expense and ledger content: groups, members, roles, invitations, expenses, income, settlements, shared wallets, ledgers, transfers, adjustments, currencies, exchange rates, categories, dates, notes, recurring rules, receipts, saved line items, and optional payment plans you create, including plan names, types, funding-source labels, reward rates, spending caps, and valid periods.
- Payment-receiving information: optional bank or wallet provider, recipient, account or wallet identifier, branch, payment link, instructions, and QR image. ShareSlice does not execute payments. Do not enter passwords, card security codes, or banking credentials.
- Receipt recognition: receipt image and detected merchant, date, amount, currency, tax, tip, category, text, and line items.
- Subscriptions: product, store, entitlement status, purchase or restoration result, and related transaction identifiers. Apple, Google, and RevenueCat process payment credentials; we do not receive complete card details.
- Support, device, and reliability: messages, attachments, app version, platform, language, device type, push token, notification preferences, App Check information, error category, sync result, and performance data.
- Analytics and advertising: screens, feature actions, results, app experience, account origin, language, subscription state, coarse usage buckets, and data processed by Google Mobile Ads such as device or advertising identifiers, IP address, ad interactions, and consent choices. Analytics events exclude names, notes, invitation codes, receipt text, payment details, raw amounts, image URLs, email addresses, and stack traces.
2. Uses
We use information to manage accounts; provide splitting, bookkeeping, offline sync, receipts, payment information, subscriptions, notifications, migration, and support; display data to authorized users; prevent abuse; diagnose failures; improve the service; and meet legal and security obligations.
3. Receipt scanning and AI
Quick Recognition runs on-device when supported. AI Recognition requires internet access. Recognized text may be sent to Google Vertex AI Gemini to create structured fields; Gemini does not receive the source image. If on-device recognition is unavailable or fails, the image may be sent temporarily to Google Cloud Vision.
The OCR backend does not retain source images or complete OCR text. Structured results may be cached for up to 24 hours. Limited request and quota metadata may be kept for up to 40 days for abuse prevention, accounting, and monitoring. Images are stored in Firebase Storage only when you keep the receipt and save the record. Review results before applying them.
4. Payment information and sharing
Payment-receiving information is optional and may be shown to authorized members of linked groups. Editors manage information for unlinked members. Information copied from a saved member into a group is stored independently and copies already shared cannot be recalled automatically. Recent payment text and QR images may be encrypted in secure device storage for offline use and are separated by account and cleared on sign-out or account switching.
5. Providers
We use Google Firebase and Google Cloud for authentication, databases, Functions, Storage, App Check, messaging, analytics, OCR, and AI; RevenueCat, Apple App Store, and Google Play for subscriptions; Google Mobile Ads for advertising; Branch for invitations and deep links; and Google and Apple for sign-in. Providers may process data internationally under their own terms. We do not sell group, ledger, receipt, or payment-instruction content.
Meta advertising measurement
We use Meta App Events to measure installs and app sessions associated with our Facebook and Instagram advertising. Meta may receive install and session events, event times and session duration, an SDK-generated app-instance identifier, app and device information (version, operating system, model, language and time zone), and network information such as your IP address. These identifiers do not guarantee anonymity. Our current integration disables automatic event logging and advertising-ID collection. It does not send Meta registration, group creation, expense or subscription events, account IDs, group content, receipts or payment details. The SDK may still contact Meta for configuration and measurement. See the Meta Privacy Policy for its processing, retention and privacy controls. Contact us below with privacy requests. This policy does not replace consent or platform permission where required.
6. Security and retention
We use authentication, authorization, transport encryption, short-lived media links, and access-controlled cloud storage. Account and feature data is generally retained while your account is active or as needed to provide the service. Backups, security logs, subscription records, and legally required records may remain for a limited period. No system is completely secure.
7. Choices and rights
You may edit or delete supported records, manage camera, photo, notification, and available advertising choices, choose whether to use cloud AI, and request account deletion in the app. Shared copies, backups, security, transaction, and legally required records may remain as applicable. Contact us to request access, correction, or deletion.
8. Children, international processing, and changes
ShareSlice is not directed to children under 13 or the applicable local minimum age. Data may be processed outside your country. We may update this Policy when features, providers, or legal requirements change and will update the date above and provide additional notice when required.
9. Contact
Email: bad.tech.service@gmail.com