NYS ("the App") is an offline-first budgeting app. Your financial records stay on your device. A few optional features send limited data over the network, described in full below. We never sell data, show ads, or use tracking or analytics SDKs.
1. Data stored on your device only
Everything you enter — income, expenses, categories, savings, goals, household members — is stored locally on your device in the App's own database. We do not run user accounts and cannot see this data.
No account. The App requires no registration or login.
Backups. "Backup" and "CSV export" create a file and hand it to your device's share sheet; you choose where it goes (Files, iCloud, Google Drive, etc.). We do not receive a copy. The App also keeps an automatic backup file inside its own folder on your device, which your phone may include in its normal iCloud/system backup. Restoring reads a file you select.
Receipt scanning & photos. Receipt scanning (text recognition) runs 100% on your device and the photo is never uploaded. If you attach a receipt photo to an entry, it is stored only inside the App's folder on your device.
Health corner. Optional weight and calorie logs are stored only on your device, like all other records.
Travel. Trip budgets, memo checklists and your passport expiry date are stored only on your device.
Reminders. Bill-due and daily-logging reminders are local notifications scheduled on your device. No push server is involved.
App lock. The optional Face ID / passcode lock uses Apple's on-device LocalAuthentication. Biometric data never reaches the App or us.
2. Optional AI features (off by default — requires your consent)
The AI coach and AI chat are off until you explicitly agree in the App. When you use them, the App sends anonymous numeric totals (e.g. monthly income, spending, days left) and, for chat, the messages you type to our server (hosted on Vercel), which forwards them to Google Gemini to generate a reply.
The AI trip planner sends only your chosen destination, number of days, budget and start date (no personal data) to generate a reference itinerary.
We do not send names, transaction notes, member names, or any account or device identifiers. We do not use this data for advertising or profiling, and we do not attempt to re-identify anyone.
Google processes the forwarded content as an API provider under its own terms. Do not type personal or sensitive information into the chat.
Withdraw consent anytime: Settings → AI features → toggle off. No AI requests are made while it is off.
Food-photo calorie estimate (separate consent): if you separately agree, food photos you choose in the AI helper are sent to our server and forwarded to Google Gemini to estimate calories. Photos are processed in memory and discarded immediately — never stored by us. Estimates are rough wellness references, not medical or dietary advice. This is different from receipt scanning, which is processed 100% on your device and never uploaded. Withdraw anytime: Settings → AI features → Food photo toggle off.
3. Optional nearby-food search (uses location only when you use it)
When you open "What to eat" and allow location, your approximate coordinates are sent to the community-run OpenStreetMap Overpass API to find food places near you. If you decline location, you can type an area name instead, which is sent to OpenStreetMap Nominatim for lookup.
Exchange rates (Travel). When you open the Travel page, the App requests reference exchange rates from public keyless APIs (frankfurter.app / open.er-api.com). The request contains only a currency pair — no personal data, no location, no identifiers.
4. What we don't do
No tracking, no ads, no analytics SDKs, no data sale, no cross-app identifiers.
Children. The App is a general-purpose finance tool and is not directed at children.
5. Changes & contact
If this policy changes, the updated version will be posted here with a new date.
食物照片卡路里估算(单独同意):如你另行同意,你在 AI 助手中选择的食物照片会发送到我们的服务器并转发给 Google Gemini 以估算卡路里。照片仅在内存中处理,分析后立即丢弃,绝不存储。估算仅为日常参考,不构成医疗或饮食建议。这与收据扫描不同——收据始终 100% 在你的设备上处理,绝不上传。可随时撤回:设置 → AI 功能 → 关闭食物照片。
3. 可选的附近美食搜索(仅使用时用到定位)
你打开“吃什么”并允许定位时,App 会把你的大致坐标发送给社区运营的 OpenStreetMap Overpass API 以查找附近餐饮。若拒绝定位,也可手动输入地区名,该名称会发送到 OpenStreetMap Nominatim 进行查询。