CONFIRMD - M-PESA Ledger & Tracker ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application (the "App").
Please read this Privacy Policy carefully. If you do not agree with the terms of this privacy policy, please do not access the application.
1. Information We Collect
A. SMS Data (Explicit Permission Required)
Our App's core functionality relies on automatically parsing your M-PESA transaction messages to generate ledgers. We request SMS Read Permissions strictly for this purpose.
- What we read: We securely scan your SMS inbox locally on your device to identify messages sent specifically by "M-PESA".
- What we extract: We extract financial transaction details such as the amount, date, time, sender/receiver name, and transaction code (e.g., receipt number).
- What we do NOT collect: We never read, upload, access, or parse any personal SMS messages other than M-PESA notifications.
B. Device and Usage Data
We may collect device-specific information (such as your hardware model, operating system version, and unique device identifiers) to facilitate syncing shared ledgers on your device, troubleshoot crashes, and improve app performance.
C. Personal Account Data
If you sign up for an account to back up your data or use cross-device sync features, we may collect your email address, name, and basic profile information.
2. How We Use Your Information
We use the collected information for the following purposes:
- To parse M-PESA transactions and automatically organize your personal ledgers.
- To perform real-time financial calculations (transaction amounts/expenses and income).
- To generate and export professional PDF statements at your request.
- To securely store and back up your transaction data using secure cloud infrastructure.
- To improve app performance, identify bugs, and provide customer support.
3. Data Storage and Security
- Privacy-First & Local Processing: The bulk of message parsing and ledger management happens locally on your device.
- Cloud Security: When your data is backed up to our cloud databases to prevent data loss or to allow cross-device usage, it is secured with industry-standard encryption and protected by strict Row Level Security (RLS) policies. This means your financial data is exclusively accessible by your authenticated account and device.
- No Third-Party Sharing: We do not sell, rent, trade, or share your personal data, M-PESA transaction history, or SMS messages with any third parties for marketing or advertising purposes. All data is kept strictly confidential.
4. Your Rights and Choices
- Permissions: You can revoke SMS Read permissions at any time via your Android device settings. However, doing so will stop the App from automatically importing new M-PESA transactions.
- Data Deletion: You can request the deletion of your account and all associated ledger data at any time from within the App settings or by contacting us. Upon request, we will permanently remove your data from our servers.
5. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by updating the "Effective Date" at the top of this document or via an in-app notification.
6. Contact Us
If you have questions or comments about this Privacy Policy or our privacy practices, please contact us:
- Email: support@confirmd.co.ke
- Website: https://confirmd.co.ke