PayPilot

Privacy Policy

Effective Date: 29 July 2026

This Privacy Policy explains how PayPilot handles information when you use the iOS app. PayPilot is provided under the public developer brand DEGI APPS.

Overview

PayPilot is an offline-first personal payment and financial record application. It does not require an account or sign-in and has no backend operated by DEGI APPS. Financial records and preferences are stored locally on your device.

Information Processed by the App

PayPilot processes information you choose to enter or import, such as payment details, credit card statement information, loan information, card labels, and optionally the last four digits of a card. It does not ask for or model full card numbers, CVV/CVC codes, PINs, or bank passwords.

Statement Imports and Document Content

You can import PDF documents or supported images and scan documents with the camera. PDF text extraction uses Apple PDFKit, on-device text recognition uses Apple Vision, camera document scanning uses Apple VisionKit, and photo selection uses PhotosUI/PhotosPicker. No external OCR, AI, or large language model service is used.

Documents selected directly in the app are temporary and are cleaned up after processing, cancellation, or an error. A document sent through the Share Extension may remain in the local App Group inbox until you complete its import or delete it. Permanent financial records do not retain the original document or raw OCR text.

Local Data Storage

Persistent financial records are stored locally using SwiftData. Preferences are stored using UserDefaults/AppStorage. Temporary import directories and the Share Extension inbox are configured to be excluded from backup. The main local database follows Apple’s standard device backup and restore behaviour.

Network Transfers

PayPilot does not send financial documents or recognised text to a developer-operated server. The app does not connect to bank accounts and does not perform payments.

Third-Party Services

PayPilot does not include third-party analytics, advertising, attribution, external OCR, or remote crash-reporting SDKs. Document processing relies on Apple frameworks available on the device.

iCloud and Synchronisation

PayPilot does not use iCloud or CloudKit synchronisation. Normal iOS device backup and restore behaviour may apply to the main local database as described above.

Exports and User-Directed Sharing

JSON, CSV, and monthly PDF exports are created on the device. An export leaves the app only when you choose a destination through the iOS share sheet. The selected destination may apply its own privacy practices.

Data Retention and Deletion

Financial records remain locally available until you delete them using controls in the app or remove the app. Pending documents received through the Share Extension can be deleted or are removed after a successfully completed import. Removing the app deletes its local application data, subject to normal iOS backup and restore behaviour. Copies exported to another app or provider must be deleted from that destination by you.

Children’s Privacy

PayPilot is not directed to children. The app is intended as a personal financial organisation tool for users managing their own payment records.

Changes to This Policy

This policy may be updated when PayPilot’s features or data practices change. Material updates will be reflected on this page with a revised effective date.

Contact

Developer brand: DEGI APPS

For privacy or support questions, email [email protected] or visit PayPilot Support.