Privacy Policy
Last updated: 23 June 2026
This policy explains what personal data Forensix collects, why, and your rights over it. We act as the data controller for the data you provide.
1. What we collect
- Account data: your email address and authentication details.
- Financial data you upload: receipt images, transactions, amounts, vendors, tax identifiers (NIF/NIE/UTR), and the income/region details you enter in Settings.
- Usage data: basic logs needed to run and secure the service.
2. How we use it
To provide the service: extract and categorise your receipts, calculate estimated tax, generate exports, manage your subscription, and keep your account secure. Our legal basis is performance of our contract with you and our legitimate interest in operating and securing the service.
3. Sub-processors (who else touches your data)
We use a small number of trusted providers to run Forensix:
- Supabase — database and authentication (stores your account and transactions).
- Google (Gemini API) — your receipt images are sent to Google's AI to extract the line items, amounts and tax identifiers. This is core to how the scanner works.
- Stripe — payment processing for paid plans. We do not store your card details.
- Railway / Cloudflare — hosting and delivery.
4. Where your data is stored
Your data may be processed in the UK, the EU, and other countries where our providers operate, always under appropriate safeguards.
5. How long we keep it
We keep your data while your account is active. If you delete your account, we delete your profile and receipts from our systems (subject to short technical backup windows and any retention the law requires).
6. Your rights (GDPR / UK GDPR)
You can access, correct, export, or delete your data at any time. The dashboard Settings page lets you export all your data and delete your account directly. You can also object to or restrict certain processing, and complain to your data protection authority.
7. Security
We use encryption in transit, access controls, row-level security on the database, and an automated validation layer on extracted data. No system is perfectly secure, but we take protecting your financial data seriously.
8. Cookies
We use only the cookies/local storage needed to keep you signed in and remember your preferences. We do not use advertising trackers.
9. Contact
Privacy questions or requests: hello@forensix.app.
Reminder: Forensix is an organisation tool, not a tax adviser. See our Terms of Service.
← Back to home