Madriss Privacy Policy

Last updated: September 18, 2026

Madriss is a personal budgeting app. This policy explains what data the app handles and how. The short version: your financial data belongs to you, we collect the minimum needed to run the app, and we never sell data or show ads.

Data you provide

Signing in with Google (Android)

On Android you can sign in with Google instead of Apple. When you do, we receive your Google account's email address and a unique identifier from Google, which we store in our backend (hosted on Supabase) to keep your transactions, budgets, and categories in sync across your devices. We do not receive your Google password, contacts, or any other Google data. You can use Madriss without signing in — tap Continue without an account — and everything stays on your phone.

Automatic logging (iPhone)

Madriss can record purchases automatically through one or both of two optional automations that you create in Apple's Shortcuts app. Neither is enabled by default. iOS gives apps no background access to your messages; a shortcut runs only when the automation you created matches, and you can delete it at any time in Shortcuts, which stops it immediately.

Automatic logging from payment notifications (Android)

On Android, Madriss records purchases automatically by reading the payment notifications your bank and wallet apps already show you (for example "Purchase SAR 45.00 at Jahez"). This uses Android's Notification access permission, which you grant in system settings only after Madriss explains the feature; you can revoke it at any time under Settings → Notifications → Device & app notifications.

Contacts (Qattah)

When you split an expense, you can pick people from your address book. Madriss asks for the Contacts permission at that moment and reads your contacts only to show the picker. Only the name and phone number of the people you select are saved, on your device, so their balance can be tracked. Your address book is never uploaded. If you decline the permission you can still add people by name.

Sharing with friends (Qattah)

If you send a Qattah request while signed in, the friend who opens your link sees the merchant, the amount they owe, and the display name you chose. That request is stored in our backend until it is settled or withdrawn, and expires after 90 days if never opened.

Appearance and language

Your language, currency, appearance (light/dark), and app-lock preferences are stored on your device only.

How your data is stored

What we don't do

App Lock and Face ID

If you enable App Lock, authentication happens entirely on your device through Apple's Face ID / Touch ID system. Madriss never receives or stores your biometric data.

Data retention and deletion

You can delete individual transactions, erase all local data (guest mode), or permanently delete your account and all associated data from Settings → Delete account. Account deletion is immediate and irreversible. Full instructions, including how to delete without the app installed, are on the account deletion page.

Children

Madriss is not directed at children under 13 and does not knowingly collect data from them.

Changes

If this policy changes, the updated version will be posted at this address with a new "last updated" date.

Contact

Questions about privacy? Email amanmaher@gmail.com.