EFFECTIVE · AUGUST 21, 2026
Privacy Policy.
This Privacy Policy explains how ClearLedger (“ClearLedger,” “we,” “us,” or “our”) handles information when you visit our website or use our PDF bill and receipt parsing service.
1. Scope
This Policy applies to the ClearLedger public website, protected application, related APIs, and support communications. It does not apply to third-party websites or services governed by their own policies.
2. Information we collect
Documents and extracted data
- PDF bytes submitted for parsing, including text and images contained in a bill or receipt.
- Extracted text, merchant, date, currency, totals, tax, payment method, line items, confidence scores, source coordinates, and user corrections.
- Original filename, page count, processing method, timestamps, and a first-page preview generated for the active result page.
Access and account information
Individual accounts use an email address, Argon2id password hash, account timestamps, and a signed access session. We do not store plaintext account passwords. Verification and password-reset links use hashed, single-use tokens. Receipt content is not attached to the account.
Usage, device, and log information
We and our infrastructure providers may receive IP address, browser and device type, requested URL, request time, response status, security events, and service diagnostics. The application records operational usage such as documents or pages processed. If you allow optional first-party analytics, it also records page paths, important product clicks, a random browser identifier, limited campaign or referrer labels, and the signed-in account ID when available. The application analytics tables do not store raw IP addresses, browser fingerprints, receipt contents, or filenames.
Support and billing information
If you contact us, we receive your email address and message. When paid plans become available, a payment provider may process payment details and send us transaction status, plan, invoice, and limited billing information. ClearLedger does not intend to store full payment-card numbers.
3. How we use information
- Provide, secure, troubleshoot, and improve document parsing, in-page review, and browser-side export features.
- Authenticate access, administer accounts and usage limits, and respond to support or privacy requests.
- Process subscriptions, prevent fraud and abuse, enforce our Terms, and comply with legal obligations.
- Measure consented visits, important product clicks, registration, first use, and paid conversion using limited first-party analytics. We do not use advertising trackers or behavioral advertising.
4. How document processing works
The service reads an uploaded PDF into memory, validates it, extracts its text, and may run OCR on scanned pages. The original PDF is not intentionally written to persistent application storage. The API returns the structured result and first-page preview to the active browser page and does not write them to the account database or service volume. Edits and CSV generation happen in browser memory. Leaving or refreshing the page discards that working result.
5. How we disclose information
We may disclose information only as reasonably necessary:
- Infrastructure and service providers. Hosting, storage, security, email, font delivery, support, and—when enabled—payment providers process information on our behalf.
- Legal and safety reasons. We may disclose information when reasonably necessary to comply with law, protect rights or safety, investigate abuse, or respond to valid legal process.
- Business changes. Information may transfer as part of a merger, financing, acquisition, reorganization, or sale of assets, subject to applicable law.
We do not sell personal information. We do not share personal information for cross-context behavioral advertising and do not use uploaded document content for advertising.
6. Retention and deletion
- Original PDF: processed in memory and not intentionally retained after parsing.
- Structured results, corrections, and preview: not intentionally retained by the application after the parsing response. They remain only in the active browser page until it is left or refreshed.
- Access session: expires after the configured session period, currently up to 7 days.
- Account: retained until you delete it. In-app account deletion first cancels a linked PayPal subscription, then removes the active account, authentication tokens, billing mapping, and usage events.
- Billing, support, backup, and security records: retained only as reasonably necessary for the service, legal obligations, fraud prevention, dispute resolution, and enforcement.
- Optional analytics: consented page and click events are normally retained for up to 180 days. You may decline them without losing product access. Account deletion disconnects retained aggregate analytics from the deleted account.
Deletion from active systems may not immediately remove information from provider backups, security logs, or records we must retain by law.
7. Security
We use safeguards designed to protect information, including HTTPS, access-controlled application routes, HTTP-only session cookies, restricted file serving, and receipt-content non-retention. No transmission or storage system is completely secure. Do not upload documents you are not authorized to process, and avoid documents containing information unnecessary for your task.
8. Your privacy choices and U.S. state rights
Depending on where you live and the law that applies, you may have rights to request access, correction, deletion, or a portable copy of personal information; to opt out of certain sale, sharing, targeted advertising, or profiling; to limit certain uses of sensitive information; and to appeal a denied request. You may also have a right not to receive discriminatory treatment for exercising a privacy right.
ClearLedger does not currently sell personal information or use it for targeted advertising. To submit a request or appeal, email tom0909532638@gmail.com with the subject “Privacy Request.” We may verify your identity and authority before acting. We will respond as required by applicable law.
9. Children
ClearLedger is intended for business users and is not directed to children under 13. We do not knowingly collect personal information from children under 13. Users must be at least 18 years old or the age of legal majority where they live to create an account or purchase a plan.
10. International use
Information may be processed in the hosting regions used by ClearLedger and its service providers, which may be outside your state or country and may have different data-protection laws.
11. Changes to this Policy
We may update this Policy as the product, providers, or law changes. We will post the revised Policy with a new effective date and provide additional notice when required.
12. Contact
For privacy questions or requests, contact ClearLedger at tom0909532638@gmail.com.