Skip to content

Privacy Policy

Last updated: 18 August 2026 · Applies to Pockit for iOS and Android

The short version

Your transactions never leave your phone. There is no account, no sign-in, and no server holding your data.

The only information that leaves your device is anonymous usage counts and, if the app crashes, a technical report describing what went wrong. Both can be switched off in Settings, and both are on by default so a bug can be found and fixed before you have to report it yourself.

Who is responsible for your data

Pyae Thu Aung, based in Vietnam, is the data controller for Pockit. You can reach me at pockitapp.pyaethuaung@gmail.com.

Your transactions stay on your device

Pockit never uploads your transactions, categories, accounts, or budgets. There is no server, no cloud sync, and no account holding them.

Everything you record is saved inside the app’s own storage on your device, in a local database. It is included in your device’s normal iCloud or Android backup, the same as any other app’s files, but Pockit itself never transmits your financial data anywhere.

A backup you create with Backup & Restore is a file you choose where to send: saved to your device, shared through the system share sheet, or kept wherever you put it. It goes where you send it, not to us.

What Pockit does send

Two services receive information from the app. Neither receives your transactions, your amounts, your dates, your notes, your account or category names, or anything that identifies you.

1. Anonymous usage statistics, can be switched off

Service: TelemetryDeck (Germany, servers in the EU)

To understand which parts of the app are actually used and worth improving, Pockit records events like: a transaction was saved (and whether it was an expense, income, or transfer, never the amount or note), a date range was changed, a filter was applied, an entity such as a category or account was created. Alongside each event: the app’s version, your device’s general model (such as “iPhone 15 Pro”), its operating system version, and your device’s language.

What it never records: amounts, dates, ids, names, tags, notes, the search query, currency codes, or anything that identifies your specific device (such as the name you gave it).

TelemetryDeck identifies a device using a random id generated on this device, which is hashed again by TelemetryDeck with a daily-rotating salt, so the same device cannot be recognized across days, by us or by them.

To switch it off: Settings › Privacy › Share Usage Data. Data stops immediately.

2. Crash reports, can be switched off

Service: Sentry (Germany, EU data region)

When the app crashes or hits an unexpected error, a report is sent so the bug can be found and fixed. It contains the technical state of the app at the moment it failed: the code location, your device model, OS version, and a short trail of recent app activity such as “the database could not be opened.”

It does not contain your transactions, amounts, notes, or anything you typed.

To switch it off: Settings › Privacy › Share Crash Reports. Collection stops immediately, and any report already queued on the device is deleted rather than sent.

Legal basis for processing (EU/UK users)

What Why Legal basis
Transactions, categories, accounts, budgets To provide the app’s core function Processed only on your device, not shared with us at all
Anonymous usage statistics To understand which features are worth keeping and improving Anonymized, so outside the scope of data-protection law; a switch is offered regardless
Crash reports To find and fix defects and keep the app stable Legitimate interest in a working, reliable app, with an opt-out

International transfers

Both TelemetryDeck and Sentry store data in the EU (TelemetryDeck in Germany; Sentry’s EU data region, hosted in Frankfurt). Sentry is a US-incorporated company, so although the data itself is stored in the EU, the processing relationship is covered by Sentry’s data processing agreement and standard contractual clauses rather than the data simply never crossing a border.

How long data is kept

  • Your transactions and other records: on your device, until you delete them. There is no copy anywhere else.
  • Usage statistics: retained by TelemetryDeck under its own retention policy. Because the identifier rotates daily, older data cannot be connected to newer data.
  • Crash reports: retained by Sentry for 30 days.

Your rights

If you are in the EU, UK, or another region with similar law, you have the right to access, correct, delete, restrict, or object to the processing of your personal data, and to receive it in a portable form.

In practice, most of these rights have nothing to act on: Pockit holds no account and no personal profile, your data is on your own device and outside our reach, and the usage statistics are anonymized so they cannot be traced back to you or retrieved individually.

For crash reports, you can stop future collection at any time using the Settings switch. To request deletion of past reports, contact us at the address above and we will pass the request to Sentry.

You also have the right to lodge a complaint with your local data protection authority.

Children

Pockit is not directed at children under 13 and does not knowingly collect information from them.

Changes to this policy

If this policy changes, the updated version will be published at this address with a new “last updated” date. Significant changes to what Pockit collects will be described in the app’s release notes.

Contact

Pockit
pockitapp.pyaethuaung@gmail.com