Privacy Policy
Last Updated: September 25, 2026 • Official Google Chrome Web Store & Edge Security Disclosure
01. Single Purpose & Core Mission
DocuTally (accessible at https://docutally.app) and the DocuTally Chrome Extension are engineered with a single, dedicated purpose: to provide automated optical data extraction (OCR) of invoices, receipts, and bills, converting them into structured accounting formats (QuickBooks Online, Xero, and Microsoft Excel) without manual data entry.
02. Information We Process
Depending on how you interact with DocuTally, we process the following categories of information:
- Receipt & Invoice Content: Text and images of vendor receipts, order confirmations (e.g. Amazon, Home Depot), line item descriptions, tax amounts, and totals that you explicitly choose to extract.
- Account & Subscription Data: For paid plan subscribers, your email address, billing name, and Stripe customer identifier to verify active subscription status and issue license keys. Payment card numbers are processed directly by Stripe and are never stored on our servers.
- Local Extension Preferences: Your license key, user preferences, and temporary image extraction state stored locally on your device via
chrome.storage.local.
03. Strict Zero-Data Retention & Privacy Principles
- No Selling of Data: We will never sell, lease, rent, broker, or monetize your personal or financial information to third parties, data aggregators, or advertising networks under any circumstance.
- Explicit Action Only: The DocuTally Chrome Extension only captures page data when you explicitly click "Grab Receipt from Current Tab" or right-click to extract an image. It does not monitor background browsing activity or track other tabs.
- Ephemeral In-Memory OCR: Image data transmitted to our Cloudflare Worker API proxy is processed in-memory for optical layout recognition and mathematical audit, and then returned directly to your client.
04. Chrome Extension Permission Justifications
In accordance with Google Chrome Web Store Developer Policies, here is why each permission is required:
activeTab: Invoked only when you click "Grab Receipt" to temporarily read invoice text and image elements on the current tab.contextMenus: Enables the right-click "Extract Receipt with DocuTally" feature on web receipt images.scripting: Executes the optical DOM layout extraction script in the active tab upon deliberate user interaction.storage: Useschrome.storage.localon your device to store your Pro license key and local settings.host_permissions (https://docutally.app/*): Transmits extraction requests and verifies subscription status through our secure edge proxy.
05. Third-Party Service Providers
We work only with industry-leading, compliant infrastructure partners to deliver our service:
- Cloudflare: Edge network hosting, SSL/TLS 1.3 encryption, and email routing infrastructure.
- Stripe: PCI-DSS Level 1 certified billing and subscription processing.
- Google Gemini API: Private enterprise vision model proxy with strict zero-retention parameters for document layout parsing.
06. Security & Encryption
All communications between your browser, the Chrome Extension, and the DocuTally serverless infrastructure are encrypted in transit using industry-standard TLS 1.3 cryptographic protocols. We enforce strict HTTPS across all endpoints.
07. Contact & Data Deletion Requests
You have the right to request deletion of your account record, email, or any associated data at any time. For questions regarding this policy or to request data removal, please contact:
DocuTally Support
Founder: Daniel Cook
Email: support@docutally.app / danielcook2016@outlook.com
Website: https://docutally.app