What we collect, why, who else touches it, where it lives and what you can do about it.
This Privacy Policy explains how Spendella (spendella.com and the Spendella apps) collects, uses and protects your personal data. It is written to meet the requirements of the EU General Data Protection Regulation (GDPR), the UK GDPR and Russian Federal Law 152-FZ on personal data. If you are in Russia, the Russian version is the binding text; this English version is provided for everyone else and for convenience.
The data controller is Maksim Andreevich Pokhilchuk, a sole proprietor registered in the Russian Federation (INN 744885116877, OGRNIP 324745600190376), based in the Chelyabinsk Region, Russia. In this Policy we say "we" and "Spendella".
For any question about your data, write to info@spendella.com. This is also the address for exercising the rights described in section 10.
This Policy covers the website spendella.com, the web app and the Spendella app for Android, in every edition we publish: the build from our website, and the builds distributed through RuStore, AppGallery and Google Play.
When you sign up:
Financial data you enter yourself:
Every financial figure in Spendella comes from you. We do not connect to your bank and we never see your card number, account number or online banking credentials.
Files, photos and voice you send for recognition:
Device notifications (Android only, optional, off by default):
If you turn on automatic entry from bank notifications, the app reads notifications only from the apps you pick in the settings and sends the payment lines to our server to create a draft transaction for you to confirm. The original notification text is not stored. You can turn this off at any time in the app or in Android settings.
Technical data:
Payments: the amount, purpose and status of each payment, and the email address the receipt goes to. Card details are entered on the payment provider's page and never reach our servers.
Shared budgets: when you invite someone, we receive their email address. Until they accept, it is used only to send the invitation.
Support: the type and subject of your request and the messages we exchange. Subjects and messages are stored encrypted on our servers and are not passed to any AI provider.
App lock: the four-digit code is stored only on your device. If you enable fingerprint or face unlock, the biometric check is done by your phone's operating system; the app only learns whether it passed. No biometric data ever reaches us.
What we do not collect: your full legal name, home address, phone number, identity documents, precise or approximate location, your contacts, other apps installed on your device, an advertising identifier, or card and bank account details.
Under the GDPR every use of personal data needs a legal basis. Here is what we do and why we are allowed to.
| Purpose | What it involves | Legal basis |
|---|---|---|
| Providing the Service | Accounts, transactions, budgets, goals, loans, subscriptions, analytics and everything else you signed up for | Performance of a contract, Art. 6(1)(b) |
| Sign-in and security | Authentication, two-factor codes, session history, fraud and abuse prevention | Contract, Art. 6(1)(b); our legitimate interest in keeping the Service secure, Art. 6(1)(f) |
| AI features | Automatic categorisation, insights, reports, the assistant, voice entry, receipt and statement recognition (see section 4) | Contract, Art. 6(1)(b). We also record your consent the first time you use an AI feature |
| Payments and tax receipts | Taking payment for a plan or a pack of AI operations, issuing the receipt the law requires, keeping payment records | Contract, Art. 6(1)(b); legal obligation under Russian tax law, Art. 6(1)(c) |
| Notifications | Budget overruns, goals reached, reports, security alerts. Each event and channel can be switched off in the settings | Contract for service notifications, Art. 6(1)(b); your consent for optional channels such as Telegram, Art. 6(1)(a) |
| Support | Answering your requests, and a copy to your email if you asked for one | Contract, Art. 6(1)(b) |
| Usage analytics | Understanding which features are used, so we can improve them (Yandex Metrica on the website, AppMetrica in the app) | Your consent, Art. 6(1)(a). Without it no analytics runs |
| Improving the Service | Analysis of anonymised, aggregated figures | Legitimate interests, Art. 6(1)(f) |
| Legal requests | Responding to a court order or a lawful request from a public authority | Legal obligation, Art. 6(1)(c) |
We do not use your data for advertising, we do not build advertising profiles and we do not sell personal data to anyone.
All AI features run on Yandex Foundation Models, Yandex SpeechKit and Yandex Vision OCR (Yandex LLC, Russia, INN 7736207543), on servers in Russia. Yandex is the only AI provider we use and it processes data on our instructions only.
What is sent to the AI provider:
Free and Basic plans: these plans include no AI operations, so nothing is sent to the AI provider, with two exceptions: a one-off reading of your answers during the initial setup, and the trial period, during which the full feature set is available.
Automated decisions. Categories, insights and suggestions are produced automatically, but none of them has a legal effect on you or anything similarly significant: they are suggestions about your own figures, you can change any category and ignore any suggestion, and no decision about you is taken on that basis. We do not profile you for advertising.
We do not sell personal data and we do not share it for anyone else's marketing. To run the Service we rely on the providers below. Each one receives only what its job needs.
| Provider | What for | What it receives |
|---|---|---|
| Yandex Foundation Models, SpeechKit, Vision OCR (Yandex LLC, Russia) | All AI features | See section 4 |
| Robokassa (ROBOKASSA LLC, Russia, INN 5047063929) | Payments on the website and in the Android app downloaded from our site; it also issues the tax receipt for each payment | Amount and purpose of the payment, your email address for the receipt. Card details are entered on Robokassa's page and never reach us |
| YooKassa (YooMoney LLC, Russia) | Payments made earlier and payment methods already saved there | Same as above |
| RuStore (VK LLC, Russia) | In-app purchases and push notifications in the RuStore edition | Purchase token; device push token |
| Huawei (Huawei Services (Hong Kong) Co., Limited; Aspiegel SE, Ireland, for the EU) | HUAWEI ID sign-in, in-app purchases and push notifications in the AppGallery edition | Name and email you allow HUAWEI ID to share; purchase token; device push token |
| Google (Google LLC, USA) | Google sign-in, Google Play billing and Firebase Cloud Messaging in the Google Play edition | Name and email you allow Google to share; purchase token; device push token |
| Yandex ID and VK ID (Yandex LLC and VK LLC, Russia) | Sign-in for users in Russia | Name and email you allow to share |
| AppMetrica (Yandex LLC, Russia) | Usage analytics in the Android app, only after your consent at sign-up | Anonymous usage events, device model, OS version, screen size, network type, an installation identifier. No advertising identifier, no location |
| Yandex Metrica (Yandex LLC, Russia) | Website analytics, only after you accept cookies | Page views and interactions on the website |
| Telegram Messenger Inc. | Notifications in Telegram, only if you connect it yourself | The text of the notifications you chose to receive |
| Timeweb (Russia) | Email delivery | Your email address and the content of the email |
| AdminVPS (Russia) | Hosting | All Service data is stored on servers in Moscow, Russia |
Country detection at sign-in involves no third party. To show the sign-in options that work in your region, the Service looks up the country of your IP address in a database stored on our own server. The IP address is not sent anywhere, not stored and not logged for this purpose. We use the IP to Country Lite database by DB-IP, licensed under CC BY 4.0.
We may disclose data to public authorities where the law obliges us to, for example under a court order or a lawful request from a competent authority.
Our servers, our database and our AI provider are in the Russian Federation. Whatever country you use Spendella from, your data is stored and processed in Russia.
If you are in the EU, the EEA, the UK or Switzerland, please read this carefully. Russia is not covered by an adequacy decision of the European Commission or the UK government, which means your data does not enjoy the same legal protection there that it has at home, and Russian public authorities may be able to access data on grounds that differ from those in your country. By creating an account you transfer your data to Russia yourself, and we rely on your explicit consent to that transfer (Art. 49(1)(a) GDPR), given when you accept this Policy at sign-up. You can withdraw it at any time by deleting your account; withdrawal does not affect processing that already took place.
Some of the providers listed in section 5 are outside Russia: Huawei (Hong Kong, and Ireland for EU users), Google (USA) and Telegram. They process the small amount of data described there under their own terms and safeguards, and only for the edition of the app you actually use.
We have no representative in the EU or the UK. Contact us directly at info@spendella.com.
| Data | Kept for |
|---|---|
| Account and everything you entered | Until you delete your account |
| Technical logs (IP addresses, sessions) | Up to 1 year |
| Payment records | Up to 5 years, as Russian tax and accounting law requires |
| Support conversations | While your account exists; deleted with it |
| Records of your consent | For as long as we need to be able to demonstrate it |
| Data of a deleted account | Removed, except what the law obliges us to keep for the periods above |
You can delete your account yourself in the profile settings; deletion is confirmed by email.
If a breach happens, we will notify the competent supervisory authority within 72 hours where the GDPR requires it, notify Roskomnadzor within 24 hours as Russian law requires, and tell the people affected without undue delay.
Under the GDPR, the UK GDPR and Russian law you have the right to:
To exercise any of these rights, write to info@spendella.com from the email address of your account. We answer within 10 working days and never later than one month. We may ask you to confirm your identity before releasing data.
Other regions. If your local law gives you additional rights, for example under the California Consumer Privacy Act, we honour them on the same terms. We do not sell or share personal data for advertising in any region.
The website uses cookies for three things:
You can choose "Necessary only" and use the Service without analytics. Your choice is stored in your browser's local storage with no expiry. To choose again, clear the site data in your browser and open the Service anew; this also signs you out in that browser.
You can also manage cookies in your browser settings. Blocking necessary cookies may prevent you from signing in.
The Service is for people aged 18 and over. By signing up you confirm that you are at least 18. If we learn that a minor has created an account, we will delete the account and all data linked to it.
We may update this Policy. If a change matters to you, we will tell you by email or with a notice in the Service. A new version takes effect when it is published here, and the effective date at the top always tells you which version you are reading.
For anything about your personal data:
Related documents (in Russian): Public offer, Terms of service, Consent to personal data processing