Overview Privacy Policy Terms of Service Data Deletion Open Source Licenses
Official Legal & Governance Portal

Transparent Governance for Your Financial Privacy

BeHisabi is engineered with an offline-first architecture, zero-knowledge local storage, and transparent compliance standards designed to protect your personal ledger and transactions.

Play Store Policy Compliant
Encrypted Cloud Backup
Offline-First Architecture
Zero Data Monetization

Core Legal & Compliance Frameworks

Built-In Security & Architecture

Local SQLite Storage

Transactions, categories, and wallet balances are stored directly on your phone's sandbox. The app operates 100% offline.

Encrypted Cloud Sync

When cloud backup is enabled, data is transferred with TLS transport encryption and stored in Google Cloud Firestore rules.

No Banking Credentials

BeHisabi never requests, stores, or accesses your bank login passwords, card PINs, CVVs, or SMS OTP codes.

Frequently Asked Questions

No. We have a strict zero-monetization policy. We never sell, rent, or broker your transaction records, categories, or personal identifiers to advertising companies or data brokers.
No. BeHisabi is built as an Offline-First application. All daily accounting, budget calculations, and reporting work completely without an internet connection.
You can instantly delete all local data from Settings > Data Management > Delete All Data in the app. For cloud backups, you can submit an online request via our Data Deletion Portal. For security, an email ownership confirmation step is performed prior to permanent database purging.
When using the AI Smart Scanner, the receipt photo is securely transmitted via TLS to the Google Gemini API solely for optical character recognition (OCR) and transaction extraction (merchant name, item totals, and date). BeHisabi strictly prohibits scanning of bank cards, passwords, or PINs. Data processing is governed by Google Gemini API Terms and Google Privacy Policy.
Yes. BeHisabi is intended for users aged 13 and older (or 16 in the EU). We do not knowingly collect personal data from minors. Parents or guardians can request immediate removal of any child's account data at hello@takbirhimu.me or via the Deletion Portal.
Live Firestore collections and authentication records are permanently purged within 24 to 48 hours after email ownership verification. Rolling cold snapshots cycle out completely within 30 days and are never restored.

Need Direct Support or Policy Inquiries?

For questions regarding data privacy, compliance auditing, or feature feedback, contact our support team.