Cèntim · Legal
Privacy Policy
Cèntim keeps your expense ledger on your device and has no developer-operated expense-data account or backend. This policy explains local data, limited network requests, Apple services, optional system features, transfers, retention, and deletion.
Effective September 8, 2026
Information stored on your device
Cèntim stores the information needed to provide its features in the app's local storage.
Category suggestions are calculated locally from Wallet labels and exact merchant rules learned when you confirm a category. No external artificial-intelligence or classification service receives this information.
- Amounts, currencies, merchants, dates, categories, and notes.
- Optional Wallet transaction and card or pass labels. Cèntim does not directly retrieve card numbers or bank credentials; avoid placing them in free-text fields.
- Monthly targets, category budgets, preferences, custom or archived categories, unfinished drafts, review status, splits, and edit history.
- Source identifiers and deduplication fingerprints, timestamps, classification confidence, learned merchant-category rules, and recent capture diagnostics such as status and error details.
Local storage, widgets, and backups
The main database stays in the app's local container. Cèntim does not use CloudKit or provide app-managed cloud synchronization.
For Home Screen and Lock Screen widgets, Cèntim copies a reduced snapshot to its shared app-group storage. It can contain monthly totals and target progress, pending-review count, and up to five category names, spending amounts, and budget limits. Hiding amounts changes what a widget displays but does not remove those amounts from the shared snapshot.
Depending on your Apple settings, iOS may include app data in device or iCloud backups. The developer cannot access those backups.
Developer access and network requests
The app has no Cèntim account, developer-operated expense-data backend, advertising, third-party app analytics, tracking, or bank connection. It does not transmit your expense ledger to the developer.
When you open About Cèntim, the app downloads public project information from didac.dev and may load project icons from their hosts. Those servers and hosting providers receive ordinary network metadata, such as an IP address and request details, but Cèntim does not attach expense fields to these requests. The public project information is cached on your device.
Trial, purchases, and Apple services
The free seven-day trial starts only when you explicitly activate a zero-price, non-consumable in-app purchase through Apple. It is not a subscription, does not renew, and never automatically charges you. The lifetime unlock is a separate, one-time non-consumable purchase.
Apple handles billing and purchase history. Cèntim uses Apple-verified StoreKit records to determine trial or lifetime access and restore purchases. These App Store transactions concern app access, not the expense transactions you record. There is no separate Cèntim purchase account.
Cèntim does not upload ledger fields through StoreKit and has no CloudKit sync. Apple may process app data when you use device backups or optional system features such as Shortcuts, widgets, notifications, sharing, and Files, according to your settings and Apple's terms.
Apple Wallet and Shortcuts
Wallet capture is optional. You create and control the personal automation. Cèntim receives only the fields you assign, such as an amount, merchant, transaction name, card or pass label, Wallet category, and date. It cannot read Wallet directly, access previous payments, or connect to your bank.
Other Shortcuts can receive expense details, notes, dates, and transaction or category identifiers, and can return or display transaction and category information. Some capture and suggestion actions can run without unlocking Cèntim's interface; actions marked as protected ask iOS for device-owner authentication.
Automation availability depends on Apple, your cards, and your region. Manual expense entry works without Wallet during an active trial or with the lifetime unlock.
Device authentication and notifications
iOS performs device-owner authentication using Face ID, Touch ID, or the device passcode and returns only success or failure. Cèntim does not receive or store biometric or passcode data.
The optional app lock protects Cèntim's interface. It does not add database encryption or hide information shown by widgets, notifications, exported files, or Shortcuts that are allowed to run without unlocking the interface.
Notifications are scheduled locally and can show capture results, review counts, budget thresholds, or blocked-access notices. Hiding amounts may still leave merchant or category names, percentages, or counts visible. You can disable notifications in Cèntim and iOS; iOS and paired-device settings control the display and retention of delivered notifications.
Imports, exports, and sharing
CSV exports and JSON backup files are unencrypted plain-text files. They leave Cèntim only when you use the system share or export interface. Backups include the complete local ledger data needed for recovery, including archived or soft-deleted records, drafts, rules, revisions, and capture diagnostics. CSV exports can include soft-deleted records depending on the export options.
Imports come from a location you select in Files, which may be iCloud Drive or another file provider, and can contain arbitrary text supplied by that file. File Sharing and opening files in place are enabled. Any provider, app, person, or destination you choose applies its own privacy and retention terms.
Restore Purchases restores App Store access, not your expense ledger. Recovering a lost ledger requires a backup you explicitly exported and kept; purchase history is not an expense backup.
Retention and deletion
Soft-deleted expenses remain recoverable without automatic expiry until you remove them permanently or reset the local database. Permanent deletion removes the transaction and its revisions, but related learned rules, diagnostics, delivered notifications, recovery files, exports, and system backups may remain.
Before restoring a backup, Cèntim automatically creates a protected recovery copy in the app container. Recovery copies remain until the app container is removed. Reset all data clears the local database and scheduled or delivered notifications, but does not remove recovery files, ordinary preferences, the public-project cache, external exports or backups, system backups, or Apple's purchase history.
Trial expiry does not delete your records. Without a lifetime unlock, Cèntim blocks ledger changes, new captures, and imports while keeping reading, exports, deletion, reset, recovery, privacy controls, and Restore Purchases available. Preferences and unfinished drafts may still be saved. Missed captures are not replayed after purchasing or restoring access.
Because there is no developer-held expense database, the developer has no server-side ledger copy for you to request or erase.
Security
Cèntim relies on the iOS app sandbox and default Data Protection for its local database. Recovery copies created before a restore use complete file protection. The app does not add separate database encryption, and exported CSV and JSON files are not encrypted. Cèntim obscures its interface while inactive or when screen capture is detected.
No storage or transfer method can guarantee absolute security. Protect your device, automations, exported files, and backup locations.
This website
These project pages are hosted on didac.dev and may use PostHog product analytics to understand page visits and interactions. Website analytics are separate from Cèntim and are never connected to expenses stored inside the app.
The website's hosting and analytics providers may process technical and network information such as the page viewed, browser details, and IP address to deliver, measure, and secure the site.
Changes and contact
This policy may be updated when the app or its services change. The effective date above will be revised when that happens.
Cèntim is developed by Dídac Sabatés in Barcelona, Spain. For privacy questions, email [email protected].