โ†  Back to Kasku.AI
Your data. Your device. Your control.

Privacy Policy

How Kasku.AI protects, processes, and stores your personal financial information.

๐Ÿ”’ Privacy-first๐Ÿ“ฑ Local-first๐ŸŒ iOS & Android
๐Ÿ“… Last updated: August 21, 2026
๐Ÿ”’ Our core philosophy: Privacy-first & local-first.

Your financial data belongs exclusively to you. It stays on your device and is never sold, harvested, or transmitted to centralized profiling servers.

01 Information Handling & Processing

Local Financial Data โ€” Ledger & Smart Budgeting

Processed: Account balances, transactions, merchant names, amounts, timestamps, tags, categories, budgets, category targets, recurring bills, and spending insights.

Stored: Locally in an encrypted database on your physical device. Kasku.AI operates no external database or analytics pipeline that aggregates your financial activity.

โ— 100% on-device

Receipt Scanning & Document Processing

Local AI Engine: When activated, image scanning and OCR run entirely offline on your deviceโ€™s Neural/CPU/GPU processor. No image data leaves your phone.

Cloud fallback: If the local model is unavailable or you choose cloud processing, receipt photos are sent securely over HTTPS directly to the Google Gemini API. You can provide your own Google AI Studio API key in Settings.

โ— Local mode โ— Cloud fallback is optional

Voice Transaction Capture

Processed: Audio spoken into the Voice Capture sheet for fast expense logging.

How it works: On-device speech-to-text engines transcribe your voice. The result is parsed locally or through your configured AI engine into a transaction draft. Audio recordings are discarded immediately after transcription.

โ— Audio discarded after transcription

Conversational AI Financial Assistant

Local mode: Inference runs 100% offline on your device with zero external data sharing.

Cloud fallback: Prompts are sent directly to Google Gemini for response generation. Kasku.AI does not store or review your chat interactions.

โ— Local mode โ— Cloud fallback is optional

Google Drive Cloud Backup & Restore

Kasku.AI optionally connects to your personal Google Account through official Google Sign-In / OAuth to sync encrypted backup archives of your ledger and budget configuration.

The App requests access only to its dedicated application data folder (drive.file / drive.appdata). Kasku.AI servers never proxy, access, or store your Google Drive credentials, files, or backups.

โ— Optional user-managed backup

Shared Image Receiver & Notification Auto-Drafts

Images shared from Gallery, Files, or messaging apps are received in a secure temporary cache and immediately processed into transaction drafts. With explicit consent, Android notification parsing reads incoming payment notifications on-device in real time to create pending drafts.

โ— Temporary, on-device processing

02 Device Permissions Required

Kasku.AI requests permissions only when needed for a specific feature. You can grant or revoke them at any time in your operating system settings.

  • ๐Ÿ“ท Camera: Photograph receipts for automatic extraction.
  • ๐Ÿ–ผ๏ธ Photo Library / Storage: Select receipt images and save exported reports.
  • ๐ŸŽ™๏ธ Microphone & Speech Recognition: Hands-free voice expense logging.
  • ๐Ÿ”” Notifications: Budget thresholds (80% or 100%), background OCR completion, and backup confirmations.
  • ๐Ÿ“ฒ Notification Listener Service (Android): Optional, solely to create local drafts from bank notifications.
๐Ÿ’ก Your choice

The core manual ledger and offline budget tracking remain functional even if all hardware permissions are denied.

03 Third-Party Services

Third-party services are involved only when you enable Cloud Fallback or Cloud Backup features.

Google Cloud / Google AI Studio (Gemini API) Used for cloud-assisted OCR and AI chat. Google processes this data under its Privacy Policy and AI Terms of Service.
Google Drive API / Google Sign-In Used for encrypted backups managed by you in your personal Google Drive account.
Firebase App Distribution & Crashlytics Used for pre-release testing and crash reports. Personal financial transaction content is not sent to analytics or crash reporting.

04 Data Retention & Deletion

  • Local data: Transactions, categories, budgets, and cached receipt images remain on your device until you delete them or clear the Appโ€™s data.
  • Uninstall: Deleting the App permanently removes local databases and caches from your device.
  • Google Drive backups: Delete backup files directly in Google Drive or from the Appโ€™s Cloud Backup settings at any time.

05 Security

Kasku.AI minimizes security risks by avoiding centralized storage of your personal financial logs. We strongly recommend using biometric lock, a device passcode, and current operating-system security patches.

06 Changes to This Policy

We may update this policy to reflect new features, capabilities, or regulatory requirements. Changes will be indicated by the โ€œLast Updatedโ€ date and made available in App Settings.

07 Contact Information

Questions about your privacy?

Petra Bios Team ยท Kasku.AI

Website: github.com/petra-bios/CashFlow-App

๐Ÿ“… Terakhir diperbarui: 21 Agustus 2026
๐Ÿ”’ Prinsip utama kami: Privasi-Utama & Lokal-Utama.

Data keuangan Anda sepenuhnya milik Anda. Data tersimpan di perangkat Anda dan tidak pernah dijual, dikumpulkan, atau dikirimkan ke server pembuat profil terpusat.

01 Tata Kelola & Pemrosesan Data

Data Keuangan Lokal โ€” Buku Kas & Penganggaran Pintar

Diproses: Saldo rekening, transaksi, nama merchant, nominal, waktu/tanggal, tag, kategori, target anggaran, jadwal tagihan berulang, dan analisis belanja.

Disimpan: Secara lokal di database terenkripsi pada perangkat Anda. Kami tidak memiliki server eksternal yang mengumpulkan catatan transaksi Anda.

โ— 100% di perangkat

Pemindaian Struk & Dokumen

Mesin AI Lokal: Pemindaian gambar dan OCR berjalan 100% offline pada Neural/CPU/GPU perangkat. Tidak ada gambar yang keluar dari ponsel.

Cadangan Cloud: Jika model lokal belum terpasang atau Anda memilih cloud, foto struk dikirim melalui HTTPS langsung ke Google Gemini API. Anda dapat memasukkan API Key Google AI Studio pribadi di Pengaturan.

โ— Mode lokal โ— Cloud opsional

Pencatatan Transaksi Melalui Suara

Audio diproses menggunakan mesin speech-to-text bawaan perangkat, lalu diuraikan menjadi draft transaksi. Rekaman audio langsung dihapus setelah transkripsi selesai.

โ— Audio dihapus setelah transkripsi

Asisten Keuangan AI Percakapan

Pada Mode Lokal, pemrosesan berjalan 100% offline tanpa berbagi data ke luar. Pada Mode Cloud, pertanyaan dikirim langsung ke Google Gemini. Kami tidak menyimpan riwayat obrolan Anda.

โ— Mode lokal โ— Cloud opsional

Pencadangan & Pemulihan Google Drive

Aplikasi terhubung secara opsional ke Akun Google pribadi melalui Google Sign-In / OAuth untuk menyimpan arsip cadangan terenkripsi. Akses dibatasi ke folder data aplikasi khusus (drive.file / drive.appdata). Server Kasku.AI tidak pernah mengakses atau menyimpan kredensial maupun file Anda.

โ— Cadangan opsional

Penerima Berbagi Gambar & Draft Notifikasi

Gambar yang dibagikan dari Galeri, File, atau aplikasi pesan diterima di cache sementara lokal dan langsung dianalisis menjadi draft. Dengan izin pengguna, Android dapat membaca notifikasi pembayaran di perangkat untuk membuat draft transaksi.

โ— Pemrosesan lokal sementara

02 Izin Perangkat

Aplikasi hanya meminta izin saat diperlukan untuk fungsi tertentu. Anda dapat memberikan atau mencabutnya kapan saja melalui Pengaturan sistem operasi.

  • ๐Ÿ“ท Kamera: Memotret struk untuk ekstraksi otomatis.
  • ๐Ÿ–ผ๏ธ Galeri / Penyimpanan: Memilih foto struk dan menyimpan laporan ekspor.
  • ๐ŸŽ™๏ธ Mikrofon & Pengenalan Suara: Pencatatan pengeluaran lewat suara.
  • ๐Ÿ”” Notifikasi: Peringatan batas anggaran, status OCR, dan konfirmasi pencadangan.
  • ๐Ÿ“ฒ Layanan Akses Notifikasi (Android): Opsional, hanya untuk membuat draft dari notifikasi bank.
๐Ÿ’ก Kendali tetap di tangan Anda

Buku kas manual dan penganggaran offline tetap berfungsi meski semua izin perangkat ditolak.

03 Layanan Pihak Ketiga

Layanan pihak ketiga hanya digunakan saat Anda mengaktifkan fitur Cloud Fallback atau Cadangan Cloud.

Google Cloud / Google AI Studio (Gemini API) Untuk OCR dan chat AI berbasis cloud, sesuai Kebijakan Privasi Google.
Google Drive API / Google Sign-In Untuk pencadangan terenkripsi yang Anda kelola di Google Drive pribadi.
Firebase App Distribution & Crashlytics Hanya untuk versi uji coba dan laporan crash. Data transaksi keuangan tidak dikirimkan ke analitik atau pelaporan crash.

04 Retensi & Penghapusan Data

  • Data lokal: Transaksi, anggaran, dan cache foto struk tersimpan sampai Anda menghapusnya atau menghapus data aplikasi.
  • Copot pemasangan: Menghapus aplikasi akan menghapus database dan cache lokal dari perangkat.
  • Cadangan Google Drive: Hapus kapan saja melalui Google Drive atau menu Cadangan Cloud.

05 Keamanan

Kasku.AI meminimalkan risiko keamanan dengan tidak menyimpan catatan keuangan di server terpusat. Kami menyarankan kunci biometrik, PIN perangkat, dan sistem operasi yang selalu diperbarui.

06 Perubahan Kebijakan

Kami dapat memperbarui kebijakan ini untuk mencerminkan fitur, kemampuan, atau persyaratan hukum baru. Perubahan ditandai dengan tanggal โ€œTerakhir Diperbaruiโ€ dan tersedia di Pengaturan Aplikasi.

07 Kontak Pengembang

Punya pertanyaan tentang privasi?

Tim Petra Bios ยท Kasku.AI

Situs: github.com/petra-bios/CashFlow-App