Privacy Policy

For the OwnStamp app and the pages of this site about it.Last updated: 10 August 2026

This Privacy Policy explains how P and A LLC (“we”, “us”), a company registered in the Republic of Kazakhstan and trading as Panda LLC, handles your information when you use the OwnStamp mobile application (the “App”) and the pages of this website about it.

Contact for privacy matters: privacy@pandallc.dev.

The short version

  • The App works from first launch with no registration and no email address.
  • Receipt photographs are read on your device. Only the extracted text is ever sent to us, and only when a receipt needs interpreting into fields.
  • What you store is yours: items, prices, serial numbers, photographs. We show no ads, sell nothing, and train nothing on it.
  • Card details never reach us — the purchase is processed by Apple and Google.

What we collect

An anonymous account. On first launch the App creates an anonymous account so your data can sync and survive a new device. It holds no email address, no name and no password. If you later choose to sign in, your existing data stays attached to the same account.

What you record about your things. Item names, categories, rooms, merchants, purchase dates, prices and currencies, serial numbers, return and warranty dates, refund status, and your notes.

Photographs. Pictures of receipts and of items, and the thumbnails generated from them.

Receipt text. Text recognised from a receipt photograph by your device’s own text recognition — Vision on iOS, ML Kit on Android. The recognition happens on the device; the photograph does not leave it for that purpose.

Purchase information. The one-time Pro purchase is processed by the Apple App Store or Google Play. We receive confirmation of the purchase and never your payment card details.

Technical data. Our infrastructure providers automatically record basic technical logs — IP address, device type, timestamps — needed to operate and secure the service.

The one thing that leaves your device for processing

To turn a receipt into a filled-in item card, the App sends the recognised text of that receipt to our server, which parses out the merchant, the date, the total, the currency and the line items. That request carries the text and a locale hint, and nothing else — not the photograph, not your name, not your email, not your account’s other contents. Results are cached against a hash of the text so the same receipt is not parsed twice.

The parsing step uses a third-party language model provider, which receives the receipt text for the duration of the request. It is contractually bound not to use it to train models.

If you would rather not use it, you can enter an item by hand; nothing in the App requires the receipt loop.

What we use it for

  • To provide the service — storing your items, running the return, warranty and refund timers, scheduling reminders, and rendering the PDF reports.
  • To manage the purchase — verifying Pro and unlocking what you paid for.
  • To operate and secure the service — debugging, preventing abuse, keeping it available.
  • To answer you when you write to us.

Under the GDPR our legal bases are performance of a contract and legitimate interests in operating and securing the service.

We do not use your data for advertising, we do not sell it, and we do not use it to train machine-learning models.

Reminders

Return and warranty reminders are scheduled as local notifications by the App on your device. Producing them does not send anything anywhere.

Who processes your data

Processor What it does What it receives
Google Firebase Anonymous authentication, database, file storage, server functions Your items, photographs and account identity
Language model provider Parsing recognised receipt text into fields The text of a receipt and a locale hint. No photograph, no identity.
RevenueCat Purchase management A pseudonymous identifier and purchase receipts
Apple App Store / Google Play Payment processing Handled under their own privacy policies; we never see card data.

Some providers are located outside the European Economic Area and Kazakhstan. Where required, those transfers are protected by recognised safeguards such as the EU Standard Contractual Clauses.

Sharing what you export

A proof of purchase or an inventory report is a PDF that you produce and you send — to a manufacturer, an insurer, or whoever else. Once you have sent it, what happens to it is between you and them. We are not a party to that, and we do not send anything on your behalf.

How long we keep it

Your data is kept while your account exists. Deleting an item deletes it and its photographs. Deleting your account deletes everything associated with it — see the data deletion page. Purchase records may be kept longer where accounting and tax law requires it. Technical logs are short-lived and rotate automatically.

Your rights

Depending on where you live — including under the GDPR and the law of Kazakhstan — you have the right to access, correct, delete or receive a copy of your personal data, and to object to or restrict certain processing. The App’s own export produces a complete copy of your data on demand. For anything else, write to privacy@pandallc.dev. If you are in the EU or EEA you may also complain to your local data protection authority.

Children

OwnStamp is not intended for children under 16 and we do not knowingly collect personal data from them.

This website

This site is static. It sets no cookies and runs no analytics or tracking. Fonts and every other asset are served from our own hosting. Our hosting provider may briefly log IP addresses as part of normal operation.

Changes

We may update this policy as the App changes. The date at the top reflects the latest revision, and material changes are announced in the App.