Privacy Policy
Last Updated: February 18, 2026
In The Biz AI ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and web service.
1. Information We Collect
1.1 Personal Information
- Account Information: Email address, name (optional), and authentication credentials
- Financial Data: Income records, shift details, tips, wages, and tax information you manually enter
- Scanned Documents: Images of receipts, paychecks, invoices, and business cards you choose to scan
- Contact Information: Event contacts, vendors, and business relationships you add
1.2 Automatically Collected Information
- Device Information: Device type, operating system, unique device identifiers
- Usage Data: App features used, frequency of use, and interaction patterns
- Analytics: Crash reports, performance data, and error logs
2. How We Use Your Information
We use the collected information to:
- Provide and maintain the Service
- Process your financial data and generate reports
- Send data to a third-party AI service (Google Gemini) to extract information from scanned documents and generate AI-powered chat responses (see Section 3.2 for details)
- Send notifications about shifts, goals, and reminders
- Improve app features and user experience
- Provide customer support
- Comply with legal obligations
3. Third-Party Services
We use the following third-party services:
3.1 Supabase (Database & Authentication)
3.2 Google Gemini AI (Third-Party AI Service)
We use the Google Gemini AI service, provided by Google LLC, to power AI features in the app. Before any data is sent to this service, we ask for your explicit consent within the app.
What data is sent to Google Gemini AI:
- Chat messages: Text you type in the AI Assistant is sent to Google Gemini to generate responses
- Scanned document images: Photos of receipts, paychecks, invoices, business cards, and BEOs (Banquet Event Orders) that you scan using the AI Scanner feature
- Shift and earnings context: Summary data about your shifts and earnings may be included as context for personalized AI responses
How Google uses this data:
- Data is processed solely to generate AI responses and extract information from documents
- Data is transmitted securely via HTTPS/TLS encryption
- Under the Google API Terms of Service, data sent via the API is not used by Google to train AI models
- Google retains API data temporarily for abuse monitoring and is deleted within 30 days per their API data policy
Your control:
- You must grant consent before any data is sent to Google Gemini AI
- You can revoke this consent at any time in the app's Settings
- If you decline consent, AI features (chat and document scanning) will be unavailable, but all other app features continue to work normally
Google Privacy Policy: https://policies.google.com/privacy
Google API Terms of Service: https://ai.google.dev/gemini-api/terms
3.3 Google Calendar (Optional)
3.4 QuickBooks (Optional)
3.5 RevenueCat (Subscriptions)
3.6 Google AdMob (Free Version)
4. Data Storage and Security
- All data is encrypted in transit using HTTPS/TLS
- Data at rest is encrypted in Supabase's secure cloud infrastructure
- We implement industry-standard security measures to protect your information
- Scanned images are stored securely in Supabase Storage with row-level security
5. Data Retention
- Your data is retained as long as your account is active
- You can delete your account and all associated data at any time through Settings
- Deleted data is permanently removed within 30 days
- Backup copies are retained for up to 90 days for disaster recovery
6. Data Deletion Requests
You have full control over your data and can request deletion at any time:
6.1 Delete Your Entire Account
- In-App: Open the app → Settings → Account → Delete Account
- By Email: Contact us at support@inthebiz.app
6.2 Delete Specific Data (Without Deleting Account)
- Shifts: Swipe left on any shift → Delete
- Photos: Open shift details → Tap photo → Delete
- Contacts: Settings → Event Contacts → Delete
- Jobs: Settings → My Jobs → Delete
6.3 What Gets Deleted
Upon account deletion, the following data is permanently removed:
- All shift records, earnings, and tips data
- All uploaded photos and scanned documents
- All event contacts and job information
- Your account credentials and profile information
- All AI chat history and analytics data
6.4 Data Retention After Deletion
- Immediate: Your data is removed from active systems within 24 hours
- 30 Days: All data is permanently deleted from primary databases
- 90 Days: Backup copies are purged (retained only for disaster recovery)
- Legal Compliance: Some financial records may be retained longer if required by tax/accounting laws
6.5 How to Request Data Deletion
To request deletion of your data, please contact us with your account email:
- Email: support@inthebiz.app
- Subject Line: "Data Deletion Request"
- Include: Your registered email address and reason (optional)
- Response Time: We will respond within 48 hours and complete deletion within 30 days
7. Your Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and data (see Section 6)
- Export: Download your data in CSV or PDF format
- Opt-Out: Disable analytics, notifications, or calendar sync
8. Children's Privacy
In The Biz AI is not intended for users under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
9. California Privacy Rights (CCPA)
California residents have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to request deletion of personal information
- Right to non-discrimination for exercising CCPA rights
10. GDPR Compliance (European Users)
If you are located in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
11. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. You are advised to review this Privacy Policy periodically for any changes.
13. Contact Us
If you have any questions about this Privacy Policy, please contact us:
© 2026 In The Biz AI. All rights reserved.