HiveCard

Privacy Policy

Effective date: April 25, 2026 · Last updated: June 14, 2026

In plain English: HiveCard is an offline-first credit card tracker. Your financial data — cards, statements, balances, transactions — stays on your phone, encrypted, and is never transmitted. Two optional features can send data off your device only when you act: connecting Gmail to auto-import statement emails, and sharing a redacted parser fingerprint. Separately, to measure which ad brought you to HiveCard, the app shares an anonymous advertising ID and two app-milestone signals with our attribution provider — never any financial data. We do not sell your data.

1. Who we are

HiveCard ("the App," "we," "us," or "our") is a mobile application developed and operated by midybee. We are the data controller under the Philippines' Data Privacy Act of 2012 (Republic Act No. 10173).

For questions about this policy or your data, contact us at support@hivecard.ph.

2. What information we process

HiveCard processes the following information locally on your device. With two explicit exceptions described in sections 5 and 6, none of it is transmitted off your phone.

Financial information you enter

Files you provide

Security information

Settings and preferences

Gmail metadata (only if you connect Gmail)

If you choose to connect your Gmail account to auto-import bank statement emails, HiveCard stores the following metadata locally on your device for each processed email:

This metadata is stored in HiveCard's encrypted local database. Gmail authorization can be revoked at any time from within the app, which also removes the stored metadata.

Advertising identifier (for ad measurement)

To measure which advertising campaign led you to install HiveCard, the app accesses your device's Google Advertising ID (GAID) and shares it, together with two anonymous app-milestone signals, with our attribution provider (see section 5). This identifier is used only for advertising measurement and is not linked to your financial data, which never leaves your device.

HiveCard does not collect your full credit card number, CVV, login credentials to bank accounts, location data, contacts, photos, or any other information not listed above.

3. How your data is stored

All HiveCard data lives in an encrypted database on your device, secured using SQLCipher with AES-256 encryption. The encryption key is derived from a device-bound secret and, when you enable a PIN, augmented by your PIN. If someone obtains your phone but not your unlock credentials, your HiveCard data remains unreadable.

Because data is stored only on your device:

4. How your data is used

HiveCard uses the data you enter solely to provide the features you see in the app: tracking statements, calculating safe-to-spend amounts, reminding you of due dates, categorizing transactions, and projecting cash flow.

We do not use your financial data for advertising, profiling, or credit scoring. Your statements, balances, and transactions are used solely to power the features you interact with and never leave your device. The only advertising-related processing is measuring which ad campaign led to your install, using an anonymous advertising ID and two app-milestone signals that contain no financial information (see section 5).

5. Third-party services

HiveCard uses the following third-party components. Where data leaves the app, it is noted explicitly.

Google ML Kit — Text Recognition

When you import a PDF statement, HiveCard uses Google's on-device ML Kit to extract text from the document. This processing happens entirely on your phone — no statement content is sent to Google's servers.

Google Play Billing

Premium subscriptions are handled by Google Play Billing. Google processes your payment information under Google's Privacy Policy. To verify that a subscription is active, HiveCard sends the purchase token, product ID, and platform identifier to a HiveCard receipt validation server. The server responds with whether the subscription is valid and when it expires. No financial details, card data, or personal identifiers beyond the Play-issued purchase token are transmitted.

HiveCard server infrastructure

HiveCard contacts two of its own servers. Neither receives personal information about you or your finances:

Gmail (optional, Premium feature)

HiveCard includes an optional Gmail integration that automatically scans your inbox for bank statement emails and imports the attached PDFs. This feature requires you to authorize HiveCard via Google OAuth2. When active:

Gmail access is a Premium feature and is never activated unless you explicitly connect your account. HiveCard does not read any emails outside the bank statement senders it recognizes.

AppsFlyer — advertising measurement

HiveCard uses AppsFlyer to measure which advertising campaign led you to install and start using the app, so we can run our paid advertising effectively. This is the one place HiveCard shares data with a third party, and we want to be exact about what it is.

No behavioral analytics

Apart from the two anonymous milestone events described above, HiveCard includes no behavioral analytics. There is no Firebase Analytics, no Google Analytics, no Crashlytics, and no screen-view or session tracking. We do not know which screens you viewed, what you tapped, how long you used the app, or whether it crashed for you.

6. The "Help improve the parser" feature (beta only)

During the private beta, HiveCard includes an optional feature called Help improve the parser. This is one of two optional mechanisms by which data — in fully redacted form — can leave your device (the other being Gmail auto-import, described in section 5). It never operates without your explicit action.

What the feature does

When you import a PDF statement, the app captures a snapshot of the parser session — the spatial layout it saw on each page. You can later open the Help improve the parser screen, review the captured sessions, preview exactly what would be shared, and choose to send a fingerprint to us via your phone's standard share menu (email, messaging app, file storage, etc.). You select the destination; HiveCard does not transmit anything in the background.

What is in the shared fingerprint

Before any data leaves your device, the app applies the following redaction:

The result contains layout structure but no personally identifiable information: no names, account numbers, balances, addresses, or specific dates beyond month names. The redaction happens on your device before anything leaves it. The screen lets you preview the exact contents of the fingerprint before sharing.

What we do with fingerprints

Shared fingerprints are used solely to improve HiveCard's PDF parsing accuracy across different bank statement layouts. They are stored in our internal development environment and are not shared with third parties, sold, or used for any purpose other than parser regression testing. Fingerprints contain no personal financial information. Each fingerprint includes a subscriber identifier so we can follow up with the tester if we need clarification on a layout — this ID is not linked to your name, bank, or card details.

This feature is fully optional. You can use HiveCard without ever opening the Help improve the parser screen, and no fingerprint is ever generated or sent without your explicit action.

7. Crash reports

HiveCard writes diagnostic logs locally to your device using rolling log files (under HiveCard's app data directory). These logs help diagnose problems if the app crashes or behaves unexpectedly.

8. Permissions we request

HiveCard requests the following Android permissions, each tied to a specific feature:

9. Your rights under the Data Privacy Act

As a data subject under RA 10173, you have the right to:

10. Children's privacy

HiveCard is intended for users aged 18 and older and is not directed at children under 13. We do not knowingly process data from children. If you believe a child has used HiveCard, contact us and we will advise on data removal.

11. International users

HiveCard is developed in the Philippines and is made available globally through Google Play. The app's own server infrastructure (parser config sync and receipt validation) is hosted via Cloudflare and processes no personal data. The advertising identifier and milestone signals used for ad measurement are processed by AppsFlyer, Google, and Meta on their global infrastructure under their respective privacy policies. If you choose to connect Gmail, your authorization token and email metadata are handled under Google's terms and may be processed on Google's global infrastructure. Parser fingerprints you explicitly share travel only to our internal development environment. No personal financial data is transferred internationally.

12. Security

We apply reasonable organizational and technical measures to protect your data, including on-device AES-256 encryption via SQLCipher and hashed PIN storage. However, no system is perfectly secure. You are responsible for the physical security of your device and for choosing a strong PIN.

13. Changes to this policy

We may update this policy as HiveCard evolves — for example, if we introduce cloud backup, account features, or new integrations. When we make changes that materially affect how your data is handled, we will update the "Last updated" date above and notify you within the app before the changes take effect. Continued use of HiveCard after an update constitutes acceptance of the revised policy.

14. Contact

For privacy questions, data access requests, or concerns about this policy:

midybee
Email: support@hivecard.ph
Website: hivecard.ph