Privacy Policy
Last updated: April 3, 2026
What this app does
FSA Receipt Tracker connects to your Gmail account (read-only) to find purchase confirmation and receipt emails. It uses AI to classify each purchase as FSA/HSA eligible, ineligible, partial, or unknown, and shows you a dashboard you can use when filing reimbursement claims.
Data we collect
- Your Google account name and email address (used to identify your account)
- Gmail OAuth tokens — read-only access limited to scanning for receipt-related emails. We never access unrelated emails.
- Email metadata and body text from receipt and order confirmation emails (subject, sender, date, and message body)
- AI-generated classification results: vendor name, purchase amount, and FSA/HSA eligibility determination
How we use your data
- To display your receipt history and FSA/HSA eligible totals on your dashboard
- To classify purchases using the Anthropic Claude API — email content is sent to Anthropic solely to determine FSA eligibility and is not used to train AI models
- To refresh your Gmail access token so syncing continues to work
We do not use your data for advertising, analytics sold to third parties, or any purpose other than providing the service described above.
Data sharing
We never sell your personal data. The only third-party services that process your data are:
- Google — for OAuth sign-in and Gmail access
- Anthropic — receipt email content is sent for FSA eligibility classification only
- Supabase — our database provider, where your receipts and account data are stored
Gmail access
We request read-only Gmail access scoped to receipt and order confirmation emails. We cannot send emails, delete emails, or access emails outside of that search query. You can revoke our Gmail access at any time from your Google account permissions.
Data retention
Classified receipts are stored in our database until you delete your account. We do not retain your email content beyond what is necessary to show you your receipt history.
Deleting your account
To delete your account and all associated data (receipts, tokens, and account information), email us at hello@cliffdong.com with the subject line "Delete my account" from the email address you signed in with. We will permanently delete your data within 7 days.
Contact
Questions about this policy? Email hello@cliffdong.com.