Invoices

Privacy policy

Invoices · Updated 15 September 2026

Information accessed

With explicit Google authorization, Invoices uses the Gmail read-only permission. That permission permits reading the connected mailbox, including messages, headers, and attachments. Invoices applies document and date filters locally. It cannot send, delete, modify, or mark messages read.

Use and processing

Invoices uses mail content to identify and file invoices, receipts, and credit notes, prevent duplicate files, and show documents that need review. Text extraction, OCR, and local model processing happen on the owner's Mac. Document content is not sent to a hosted AI service, used for advertising, or used to train a general-purpose model.

The app connects to Google to retrieve authorized mail. Its local reader downloads its software and model from their providers. Downloading the model does not send email content to those providers.

Storage and sharing

Google refresh tokens and application sign-in configuration are stored in macOS Keychain. Processing records, source references, and review history are stored in the app's local storage. Temporary copies may be retained locally while work is pending. Skipped documents are cached locally for three days and can be returned to review during that time. Expired cached copies are removed while the app is active or when it next resumes; minimal source/hash markers remain to prevent duplicate collection. Externally modified files are preserved for the owner to resolve.

Collected documents are saved to the folder chosen by the owner. If that folder is in iCloud Drive, Apple synchronizes those files under the owner's Apple account. If it is a shared folder, the people who already have access to that folder can see its documents. The app does not change folder sharing permissions.

Routine logs and diagnostic exports exclude credentials and full message or document content. Invoices does not sell Google user data or disclose it to advertising or data-broker services.

Invoices' use of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements.

Controls and deletion

The owner chooses connected accounts and can pause checks, disconnect accounts, quit the app, review documents, and correct filing dates. Disconnecting removes the app's saved authorization for that account and stops future reads. Access can also be revoked in the Google account's third-party access settings.

Disconnecting or uninstalling does not delete collected invoices. The owner controls those files through Finder and iCloud. Private processing history remains in the app's local storage unless the owner removes that storage. Removing shared files may affect everyone using the folder.

Private troubleshooting exports

The optional Export private mail audit action creates a local file containing email text and attachment inventories. The owner chooses whether and where to save or share that file. Routine diagnostics contain only versions and counts.

Contact

For questions about this private application or its data handling, contact yacti@ggstudios.net.

This information site

This site contains public app information only. It does not connect to Gmail or collect invoice uploads. It has no app-added analytics or advertising scripts. Hosting providers process ordinary web requests, including network information needed to serve the site.

Policy updates

Changes to these practices will be reflected here with an updated date. Contact the maintainer using the address above with questions or data-handling requests.