VadeFlow — Privacy Policy v1.0

Effective date: 2026-06-13 · Operator: Jorasoft · Contact: contact@jorasoft.com

VadeFlow helps you track your bills and receivables and stay on top of due dates. This policy explains what data the app collects, why, where it is stored, and how you can control or delete it.

VadeFlow never connects to your bank. No ads, no third-party tracking, no PII in logs. Your financial entries live in your private account and nowhere else.

1. Summary

2. Account & sign-in

VadeFlow uses anonymous Firebase Authentication by default — no email, no password, no name. The app generates a stable anonymous identifier so your data follows you across reinstalls on the same device. If you opt to add an email address (for future sync), Firebase Auth handles the credential exchange and we never see your password.

3. The data you enter

The bills and receivables you add — amounts, due dates, categories, optional names/phones/emails of counterparties, payment status, notes — are stored in Google Firestore under users/{uid}/bills and users/{uid}/receivables. They are visible only to the signed-in account that created them, enforced by field-validated Firestore security rules.

4. Face ID / biometrics

Face ID or Touch ID is used only locally, on your device, to unlock the app. Biometric data is handled entirely by iOS and never leaves your device — it is never collected, transmitted, or accessible to us.

An app-switcher screen shield hides the contents of the app when you swipe up so a glance at the multitasker doesn't expose your bills.

5. Notifications

VadeFlow uses local notifications only — they are scheduled on your device for the due dates you set. No notification service or push provider is involved; we have no way to send you a push message from our side.

6. Optional approximate location

Only if you grant permission, an approximate location may be used to suggest nearby utility providers when adding a bill (so you don't have to type the provider name). This is optional and the app works fully without it. Your location is not stored on our servers.

7. What we do NOT collect

8. Analytics & crash reporting

The app uses Firebase Analytics and Crashlytics only for aggregate usage and crash diagnosis. Identifiers are reset when you delete your account. App tracking transparency (ATT) consent is requested before any tracking-class identifiers are collected.

9. Data retention

Active accounts: data is kept until you delete it.

Deleted accounts: profile, bills, receivables and preferences are erased within 30 days. Settings → Account → Delete account triggers immediate logout and queues the server-side erasure.

10. Children

VadeFlow is intended for adults managing their own finances. The app is rated 4+ on the App Store but is not directed at children, and we do not knowingly collect data from anyone we know to be under 13 (16 in the EU/UK).

11. Your rights

12. Where data is stored

Data is stored on Google Firebase (Firestore) in the region closest to the Jorasoft project. Standard Google Cloud security applies. Cross-border transfers are governed by Google's Standard Contractual Clauses.

13. Changes to this policy

If we make material changes we will note them in the app and update the effective date above.

14. Contact

Jorasoft · 07825 Blairstown, New Jersey · contact@jorasoft.com