Legal

Privacy Policy

Last updated: 23 April 2026

Split✦It (“we”, “our”, or “us”) operates https://www.splitit.cafe. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our bill-splitting and tip-calculation service.

1. Information We Collect

Account Information

When you sign in with Google, we receive your name, email address, and profile picture from your Google account. We do not receive or store your Google password.

Bill & Session Data

When you create a bill-splitting session we store:

  • Session name, currency, and status
  • Items you add or claim (name, quantity, price)
  • Tip percentages and calculated totals
  • Partial claim details for shared items
  • Guest participant names (if provided)

Receipt Images

If you use the AI Scan & Split feature, you upload a photo of a receipt. That image is transmitted to our AI processing service to extract line items and totals. We do not store receipt images on our servers after processing is complete.

Usage Data

We track the number of AI receipt scans you perform to enforce fair-use daily limits. We also collect standard server logs (IP address, browser type, pages visited, timestamps) for security and debugging purposes.

Information You Do Not Provide

The Quick Tip Calculator requires no sign-in and we collect no personal information when you use it.

2. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and improve the Split✦It service
  • Authenticate you and maintain your account
  • Save and display your bill history
  • Process receipt images with AI to extract bill items
  • Enforce per-account scan usage limits
  • Send transactional communications (e.g., account notices)
  • Detect and prevent fraud, abuse, and security incidents
  • Comply with legal obligations

We do not use your data for advertising, sell it to third parties, or use it to build advertising profiles.

3. Data Sharing & Third Parties

We share your information only with the following service providers, and only to the extent necessary to deliver the service:

Google (OAuth 2.0)

Authentication provider. Google's Privacy Policy.

Supabase

Database and authentication infrastructure. Your data is stored on Supabase servers. Supabase Privacy Policy.

Vercel

Hosting and edge network. Vercel Privacy Policy.

OpenAI (AI Receipt Processing)

Receipt images are sent to an AI API to extract item data. Images are not retained by us after processing. OpenAI's Privacy Policy.

We also use Vercel Analytics & Speed Insights for anonymised usage metrics — no personally identifiable information is shared. We may also disclose information if required by law or to protect the rights, property, or safety of Split✦It or others.

4. AI Receipt Scanning

Our Scan & Split and Retail Split features are in Beta. When you upload a receipt:

  • The image is transmitted over encrypted HTTPS to an AI API for text extraction.
  • We do not store the original image on our servers after the AI has returned the extracted data.
  • Receipt data (item names, prices) extracted from the scan is stored as part of your session.
  • You should not scan receipts containing sensitive personal information beyond typical restaurant or retail items.

AI extraction results may occasionally be inaccurate. Always review the extracted items before sharing a session link.

5. Analytics & Cookies

We use Vercel Analytics and Vercel Speed Insights to understand how the application is used and to monitor performance. These tools collect anonymised aggregate data and do not set advertising cookies or track you across other websites.

We also use session cookies required for authentication (via Supabase). These cookies are strictly necessary for the service to function and cannot be opted out of while signed in.

6. Data Retention

We retain your account and session data for as long as your account is active. If you delete your account, your personal data and bill history will be deleted within 30 days, except where we are required to retain it by law.

Server logs are retained for up to 90 days for security purposes.

7. Your Rights

Depending on where you are located, you may have the following rights regarding your personal data:

Access

Request a copy of the data we hold about you.

Correction

Ask us to correct inaccurate data.

Deletion

Request deletion of your account and associated data.

Portability

Receive your data in a structured, machine-readable format.

Objection

Object to or restrict certain processing.

Withdraw Consent

Withdraw consent at any time where processing is consent-based.

These rights apply under the GDPR (EU/EEA), UK GDPR, POPIA (South Africa), CCPA (California, USA), and equivalent laws. To exercise any of these rights, please contact us at lyubo.841@gmail.com.

8. Security

We use industry-standard measures to protect your data, including HTTPS encryption in transit, Row Level Security (RLS) policies on our database, and access controls that limit who can view your sessions.

No method of transmission or storage is 100% secure. If you discover a security vulnerability, please disclose it responsibly by emailing lyubo.841@gmail.com.

9. Children's Privacy

Split✦It is not directed at children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. Continued use of the service after a change constitutes acceptance of the updated policy. For material changes we will make reasonable efforts to notify you.

11. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us:

Also read our Terms of Service which govern your use of Split✦It.