Privacy Policy
Effective date: May 3, 2026
This Privacy Policy describes how Billwale (“we”, “us”, “our”) collects, uses, stores, and discloses information when you use the Billwale mobile application (Android package com.monishostwal.billwale) and related services (collectively, the “Service”).
By using the Service you agree to this Policy. If you do not agree, please do not use the Service.
1. Information we collect
a. Information you provide
- Mobile phone number — used to create your account and authenticate you via one-time password (OTP).
- Shop and business details — shop name, address, GSTIN (if you choose to enter it), and similar details you add.
- Inventory data — item names, SKUs, units, prices, stock counts and any notes you add.
- Billing data — invoices you create, customer name and phone (if you choose to enter them), line items, taxes, totals.
- Supplier and credit data — supplier names, contact info you enter, payments and outstanding balances.
- Uploaded bill images and PDFs — when you use the “Upload bill” feature, the file you upload and the extracted text/items.
- Voice recordings — when you use voice dictation, the audio captured during the dictation session and the transcribed text.
b. Information collected automatically
- Device and log data — app version, OS version, device model, IP address, basic crash and error logs. We use this to keep the Service running reliably.
- Authentication tokens — short-lived session tokens stored on your device’s secure storage.
c. Information we do NOT collect
- We do not collect your contacts, SMS messages, call logs, or location.
- We do not run advertising trackers or third-party analytics SDKs.
- We do not collect data from children under 18.
2. How we use information
- To create and authenticate your account.
- To store and display your inventory, bills, and supplier data.
- To process bill uploads — extracting line items from images/PDFs so you can add them to inventory.
- To transcribe your voice dictations into item entries.
- To generate and deliver PDF invoices.
- To diagnose problems, prevent abuse, and improve the Service.
- To communicate with you about service-related matters.
3. Permissions we request
- Camera — to photograph supplier bills and invoices you want to upload. Used only when you explicitly take a photo.
- Photo library — to let you pick an existing bill image from your gallery. Used only when you open the picker.
- Microphone — to capture audio for voice dictation. Used only while you actively press to record.
- Storage — to save downloaded PDF invoices to your device when you choose to share or print them.
You can revoke any permission at any time in your device settings; the related feature will simply stop working.
4. Third-party processors
We rely on the following service providers (sub-processors) to operate the Service. Each only receives the minimum data needed to perform its function and is bound by its own privacy commitments.
- Google Firebase Authentication — sends and verifies phone OTPs.
- Microsoft Azure Document Intelligence — performs OCR on uploaded bill images and PDFs.
- Microsoft Azure OpenAI — extracts structured line items from the OCR output.
- MongoDB — primary database where your account, inventory, bills, and supplier data are stored.
- Vercel — hosts this marketing/legal website. The mobile app does not communicate with Vercel.
5. Data retention
We retain your account data for as long as your account is active. Uploaded bill images and audio recordings used for extraction are retained for up to 90 days for debugging and quality improvement, then deleted. You can request immediate deletion at any time — see Section 7.
6. Data security
Data is transmitted over HTTPS. Authentication tokens are stored in your device’s OS-provided secure storage (Android Keystore / iOS Keychain). Backend data is stored in access-controlled databases. No system is perfectly secure, but we follow industry-standard practices to protect your information.
7. Your rights
You can, at any time:
- Access and edit your data from within the app.
- Request deletion of your account and all associated data — see our Delete Account page.
- Request a copy of the personal data we hold about you by emailing support.billwala@gmail.com.
- Withdraw consent to processing by deleting your account.
8. Children’s privacy
The Service is intended for adults running a business. We do not knowingly collect data from children under 18. If you believe a child has provided us data, contact us and we will delete it.
9. International transfers
Some of our processors (Microsoft Azure, Google Firebase) operate globally and may process data outside India under contractual safeguards comparable to applicable Indian data-protection law.
10. Changes to this policy
We may update this Policy as the Service evolves. Material changes will be notified in the app or by email (where available). The “Effective date” at the top of this page reflects the most recent revision.
11. Contact
Questions, requests, or complaints about this Policy can be sent to:
Billwale
Email: support.billwala@gmail.com
Address: Indore, Madhya Pradesh, India