Privacy Policy
Qismah helps you record personal and shared expenses. This policy explains the data Qismah uses to provide the app.
Last updated: October 8, 2026.
Data Qismah Handles
Qismah may store your account name, email address, default currency, ledgers, members, expenses, income, debts, balances, settlements, comments, invite links, subscription status, device tokens for notifications, cover photos, and attachments you choose to save. These records can include amounts, currencies, who paid, and how an amount is shared.
If you allow location access while capturing a receipt, Qismah can attach precise coordinates to the saved expense and sync them with that record. Location access is optional and is used for this app feature, not for optional advertising measurement.
If you use contacts, Qismah only uses the selected contact details to prepare an invite by email or SMS. Qismah does not upload your full address book.
Sign-In
You can choose to sign in with Google in supported app versions. Google provides Qismah with an identity token, an account identifier, your verified email address, and your name. Qismah verifies the token to create or sign in to your Qismah account. Qismah does not request access to your Google mail, contacts, calendars, or Drive files. Signing in with Google does not enable optional usage or advertising measurement.
You can also sign in with Apple in supported app versions. Apple provides an identity token, an account identifier, and, when available, your name and email address. You can choose an Apple private relay email address. Qismah verifies Apple's tokens and may store a protected refresh token so it can revoke Qismah's Apple authorization when you delete your account. Signing in with Apple does not enable optional usage or advertising measurement.
Optional Usage And Ad Measurement
Qismah asks for a separate, optional choice before enabling mobile usage and advertising measurement. You can decline without changing Qismah’s core features, and you can change your choice at any time in Settings > Privacy.
If you opt in on Android, Qismah uses Google Analytics for Firebase to measure app use, app installs, completed registrations, and feature use. The updated iPhone measurement integration also uses Google Analytics for Firebase, with Google’s on-device event-data conversion measurement, to understand app first opens, completed registrations, and usage. Conversion measurement can help us understand which Google Ads campaigns are useful. The iPhone update asks for a new optional choice before enabling Firebase; a previous Kochava measurement choice does not enable Firebase automatically.
These measurement services may process app and device information, app-instance identifiers, approximate location derived from IP addresses, advertising attribution information, and events about installing or using the app. Firebase may automatically record app sessions, lifecycle events, and in-app purchase or subscription events, including the subscription product identifier, product name, price, and currency. This purchase measurement concerns the Qismah subscription, not the personal expense or financial records you enter into Qismah. Firebase components may also process limited service diagnostic information.
Qismah’s custom iPhone signup event contains only the sign-in method (Apple, Google, or email); Qismah does not add your name, email address, phone number, account ID, ledger ID, or expense details to that event. The Firebase iPhone integration does not collect the advertising identifier (IDFA) or vendor identifier (IDFV), and does not send email addresses or phone numbers to the on-device conversion API. Google processes measurement data under its own privacy terms. See also Google’s explanation of Analytics data collection on Apple devices.
An upcoming app update adds two optional activity milestones: the first successfully saved expense and the first successfully created shared ledger observed by that installation after the update. These events contain only the event name, with no custom parameters; Qismah does not include amounts, currencies, descriptions, names, account IDs, ledger IDs, receipts, or other financial contents. Local flags remember whether each milestone has occurred so repeated saves, app restarts, and account changes do not count it again. Actions performed while optional measurement is off are not sent later when it is enabled. Previously allowed measurement requires a fresh choice describing these milestones before collection resumes; a previous decline remains declined. These events are available only after installing the corresponding app update and choosing to allow its optional measurement.
On Android, Qismah keeps advertising storage, advertising user-data sharing, and ad-personalization consent signals disabled, including when usage analytics is enabled. In the updated Firebase iPhone integration, allowing optional advertising measurement permits Analytics storage and the use of measurement data by Google Ads; advertising identifier storage and ad-personalization consent remain disabled. The iPhone choice specifically covers sharing measurement events and technical measurement data with Google Analytics for Firebase and Google Ads, not personalized ad targeting. Declining keeps all four consent categories disabled. Turning the choice off stops future optional measurement in the app; it does not change the information required to provide Qismah or erase information that a measurement provider has already received.
Older iPhone versions may still contain the Kochava measurement integration. Updating the app replaces that integration; changing the provider does not delete historical information already received by Kochava or Google. The Firebase replacement is not active in an installed iPhone app until that app has been updated to the corresponding release.
Receipt And Invoice Scans
Free receipt scanning runs on your device when available.
Qismah Plus smart invoice scan may upload the selected invoice image to Qismah servers so the receipt can be parsed. Qismah may use trusted processing providers, including OpenAI, to extract merchant, date, total, and line-item information. When you save the expense, the image can be saved as an attachment to that expense.
Sharing
Shared ledgers are visible to members of that ledger. Expenses, balances, settlements, cover photos, attachments, and comments in a shared ledger may remain visible to other members as part of the shared record.
Account Deletion
You can delete your account in the app from Settings. Qismah removes account identifiers, device tokens, and personal profile details. Shared ledger records may be retained in anonymized form so other members keep an accurate financial history.
Contact
For privacy questions, contact support through the App Store listing or the Qismah support channel.