Security & Privacy

Careful with your money — and your data

Here is exactly how SpendLens protects your information. We describe only what the app actually does; we make no “bank-grade”, “100% secure”, or certification claims.

🔑

No banking credentials

SpendLens never asks for your banking password, UPI PIN, card PIN, CVV or OTP, and cannot move money.

📵

Raw SMS never leaves your device

When you enable detection, messages are parsed on your phone. Only normalized fields are uploaded; the raw text is discarded locally.

🗄️

Secure token storage

Your session tokens live in the device's secure storage — Android Keystore / iOS Keychain — not in plain storage.

🙈

Balances hidden by default

Amounts are masked until you choose to reveal them, so a glance over your shoulder shows nothing.

🔒

App lock & biometrics

Require fingerprint, face or device passcode to open the app. Authentication is handled by the OS; we never see or store biometric data.

🔐

Encrypted in transit

All communication with our backend uses HTTPS/TLS.

🧾

Review before it counts

Detected transactions wait for your explicit confirmation — the app never posts financial records on your behalf without review.

🧹

Deletion on request

Ask us to delete your account and data any time from the deletion page.

🚫

No selling your data

We don't sell or rent your data, and there are no advertising SDKs in the app.

We deliberately avoid marketing claims we cannot verify. If a security certification or independent audit is completed in future, we will state it here with details — until then, we describe mechanisms, not guarantees.

Read the full Privacy Policy →