Privacy Policy

Last updated: 27 March 2026

FairKitty ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and protect your personal information when you use our expense-splitting service.

This policy is designed to comply with the Australian Privacy Act 1988 and the Australian Privacy Principles (APPs).

1. Information We Collect

Information you provide

  • Account information: Name, email address, and password when you create an account.
  • Profile information: Optional profile picture.
  • Expense data: Group names, expense descriptions, amounts, categories, and settlement records you enter into the Service.
  • Support requests: Information you provide when contacting us for help.

Information collected automatically

  • Usage data: Pages viewed, features used, and actions taken (collected via Microsoft Clarity for anonymised analytics — see Section 5).
  • Device information: Browser type, operating system, and device type.
  • IP address: Used for security, fraud prevention, and audit logging.

Information we do NOT collect

  • Payment card details (handled entirely by Stripe)
  • Phone numbers
  • Physical addresses
  • Government identification
  • Social media profiles

2. How We Use Your Information

We use your personal information only to:

  • Provide and operate the FairKitty service
  • Process subscriptions and billing (via Stripe)
  • Send transactional emails (account verification, password reset, billing receipts)
  • Respond to support requests
  • Improve the Service through anonymised analytics
  • Detect and prevent fraud and abuse
  • Comply with legal obligations

We never sell your personal information to third parties. We never use your data for advertising.

3. How We Share Your Information

We share your information only with the following service providers, and only as necessary:

ProviderPurposeData shared
StripePayment processingEmail, name (for invoicing). Card details go directly to Stripe.
ResendTransactional emailsEmail address, name
Microsoft ClarityAnonymised product analyticsAnonymised usage data (user-generated content is masked)
Google Cloud PlatformHosting and data storageAll data (encrypted at rest and in transit)

We may also disclose information if required by law or to protect our legal rights.

4. Data Storage and Security

  • Location: Your data is stored on Google Cloud Platform servers in Sydney, Australia (australia-southeast1 region).
  • Encryption in transit: All data transmitted between your device and our servers is encrypted using TLS 1.2 or higher.
  • Encryption at rest: All data stored in our database and file storage is encrypted at rest using GCP's default encryption.
  • Passwords: Stored using bcrypt hashing. We never store passwords in plain text and cannot access your password.
  • Access controls: Only the FairKitty application can access the database. Admin access is role-based and fully audited.

5. Analytics (Microsoft Clarity)

We use Microsoft Clarity to understand how users interact with FairKitty. Clarity provides anonymised session recordings, heatmaps, and usage statistics.

  • All user-generated content (names, amounts, descriptions) is masked by default.
  • IP addresses are anonymised.
  • No advertising profiles are created.
  • Clarity uses first-party essential cookies that do not require a consent banner.

6. Data Retention

DataRetention
Active account dataRetained while your account is active
Deleted account (private data)30-day grace period, then permanently deleted
Deleted account (shared data)Anonymised and retained for other group members
Audit logs2 years, then archived
Support requests2 years after resolution

7. Your Rights

Under the Australian Privacy Act and applicable privacy laws, you have the right to:

  • Access your personal information — view your profile and data anytime.
  • Correct your personal information — edit your profile in Settings.
  • Export your data — request a full export of your data at any time.
  • Delete your account — request account deletion in Settings, with a 30-day recovery window.
  • Complain — if you believe we have breached the Australian Privacy Principles, you can lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

8. Cookies and Local Storage

FairKitty uses only essential cookies and local storage for the Service to function. See our Cookie Policy for details.

9. Children

FairKitty is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If we learn that we have collected data from a child under 18, we will delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. For material changes, we will notify you via email at least 30 days before the changes take effect. The "Last updated" date at the top of this page indicates when this policy was last revised.

11. Contact Us

If you have questions or concerns about this Privacy Policy or how we handle your data, contact us at support@fairkitty.app.