עברית | English

Checksal — מדיניות פרטיות

תאריך תוקף: 26.07.2026

מי אנחנו

Checksal היא אפליקציה עצמאית לניהול רשימות קניות משפחתיות, השוואת מחירים, וסריקת קבלות. אין רשת פרסום או ספק אנליטיקס מעורב — הגורמים החיצוניים היחידים המעבדים מידע מפורטים למטה.

איזה מידע אנחנו אוספים

מידע שנשאר על המכשיר שלך

מידעלמהאיפה נשמר
תוכן רשימות הקניותהרשימות והפריטים שלךמסד נתונים מקומי מוצפן
תמונות קבלותמקור ל-OCR — נמחק לאחר הסריקה כברירת מחדלמערכת קבצים מקומית
שורות קבלה (מוצר, מחיר, תאריך)היסטוריית קניות אישיתמסד נתונים מקומי מוצפן
מילון כינויי מוצריםקישור שמות מוצרים לקטלוגמסד נתונים מקומי מוצפן
סטטיסטיקת צריכהמפעיל הצעות לחידוש מלאימסד נתונים מקומי מוצפן
צילומי מזווהרישום פריטים שזוהו בתמונות מקרר/מזווהמסד נתונים מקומי מוצפן

מידע שמסונכרן (תכונת משק בית בלבד)

אם אתה מצטרף למשק בית, המידע הבא מסונכרן למסד הנתונים שלנו (Supabase) כדי שחברי משק הבית יוכלו לשתף רשימות בזמן אמת:

כל המידע המסונכרן מוגן ב-Row-Level Security: רק חברי משק הבית שלך יכולים לקרוא או לכתוב אותו.

התחברות

ניתן להתחבר עם קישור חד-פעמי במייל, או עם התחברות Google. אם אתה משתמש בהתחברות Google, גוגל משתפת איתנו את שמך, כתובת המייל ותמונת הפרופיל (דרך Supabase Auth) כדי ליצור את החשבון שלך — אנחנו אף פעם לא רואים או שומרים את הסיסמה שלך בגוגל.

סריקת קבלות מתבצעת על המכשיר בלבד

סריקת קבלות (OCR) פועלת כיום לגמרי על המכשיר שלך (מנוע לא מקוון) — תמונת קבלה לעולם לא יוצאת מהטלפון לצורך חילוץ הטקסט.

טלמטריית ביצועים ושימוש אנונימית

כדי לאתר ולתקן חלקים איטיים או שבורים באפליקציה (זמן עלייה, מהירות חיפוש מחירים, זמן עיבוד קבלות, קריסות, וכדומה), אנחנו אוספים סט קטן של אירועי ביצועים אנונימיים: כמה זמן פעולה לקחה, האם הצליחה, ותחום גודל גס (למשל "1-5 פריטים") במקום ספירה מדויקת.

בנוסף אנחנו אוספים סט קטן של אירועי שימוש אנונימיים — למשל שסימון מבצע הוצג, שפרטי מבצע נפתחו, או שסכום סל כלל מבצע. אלה מלמדים אותנו אם פיצ'ר באמת מועיל ושווה להשאיר. הם מתעדים רק שאירעה פעולה — לעולם לא מה חיפשת, מה נמצא ברשימה שלך, או באיזה מוצר ספציפי מדובר.

כל אירוע מתויג במזהה התקנה אקראי שנוצר על המכשיר שלך — הוא אינו מזהה החשבון שלך, אינו מזהה פרסום, ואינו מקושר לשם, מייל או נתוני הקניות שלך. המזהה מתאפס בהתקנה מחדש. המידע הזה אינו כולל תוכן רשימות קניות, מיקום, או כל מידע אישי אחר, ולעולם לא משותף עם צד ג'.

מידע שאנחנו שולחים לצדדים שלישיים

שירותמתימהלמה
Google Sign-Inרק אם בוחרים להתחבר עם Googleשם, מייל, תמונת פרופיליצירת חשבון/הזדהות
פורטלי מחירים ממשלתייםיומית, דרך Edge Function שלנואין מידע אישי — שולפים XML מחירים פומביהשוואת מחירים
שרתי התמונות של רשתות השיווקכשמוצגות תמונות מוצריםאיננו שולחים מידע — אבל עצם הבקשה חושפת בפניהם את כתובת ה-IP שלכםהצגת תמונות מוצרים

תמונות שמוצגות באפליקציה — תמונות מוצרים ותמונת הפרופיל מגוגל — נטענות ישירות משרתי אותם צדדים שלישיים. אנחנו לעולם לא מעתיקים את קובצי התמונה לשרתים שלנו; הן נשמרות במטמון על המכשיר שלכם בלבד. בקשה ישירה כזו חושפת את כתובת ה-IP שלכם בפני השרת שמארח את התמונה, בדיוק כפי שגלישה רגילה לאתר של אותה חברה הייתה עושה.

מה אנחנו לא אוספים

הרשאות מוסברות

הרשאהמתי מתבקשתלמה
מצלמהפעולת סריקה ראשונהסריקת ברקוד, OCR לקבלות
מיקום (מדויק/משוער)שימוש ראשון בהשוואת מחיריםדירוג חנויות קרובות לפי מרחק
אנשי קשררק בלחיצה על "הזמנה מאנשי קשר"מציג אילו אנשי קשר כבר משתמשים באפליקציה; התאמה לפי hash של טלפון/מייל — הרשימה המלאה לעולם לא מועלית
התראותלאחר אירוע ראשון במשק הביתנקודת התראה קטנה כשחבר משק בית משנה רשימה משותפת בזמן שאתה לא באפליקציה

תמונות נבחרות דרך ה-Photo Picker המובנה של אנדרואיד, שלא דורש הרשאת אחסון/מדיה בכלל.

איך אנחנו מגנים על המידע שלך

הזכויות שלך

שמירת מידע

מידעשמירה כברירת מחדלשליטת המשתמש
תמונות קבלהנמחקות לאחר OCR מוצלחהגדרות ← תמונות קבלה
מסד נתונים מקומינשמר עד מחיקת האפליקציה או "מחיקת חשבון"מחיקת חשבון מוחקת אותו
שורות ב-Supabaseנמחקות כחלק מבקשת "מחיקת חשבון", מעובד אוטומטית בשרתזהה

שינויים במדיניות זו

אם מדיניות הפרטיות תשתנה באופן מהותי, מסמך זה יעודכן ותוצג הודעה באפליקציה.

יצירת קשר

לשאלות או בקשות מחיקת חשבון, פנו אל: checksal.app@gmail.com

הצהרת נגישות

Checksal — Privacy Policy

Effective date: 2026-07-26

Who We Are

Checksal is an independently developed app for household shopping list management, price comparison, and receipt scanning. There is no advertising network or analytics vendor involved — the only third-party data processors are described below.

What Data We Collect

Data That Stays on Your Device

DataWhyStored where
Shopping list contentsYour lists and itemsEncrypted local database
Receipt imagesOCR source — deleted after scan by defaultLocal filesystem
Receipt line items (product, price, date)Personal purchase historyEncrypted local database
Product alias dictionaryLinks your product names to catalog SKUsEncrypted local database
Consumption statsPowers restock suggestionsEncrypted local database
Pantry snapshotsRecords items seen in fridge/pantry photosEncrypted local database

Data We Sync (Household Feature Only)

If you join a household, the following is synced to our Supabase database so household members can share lists in real time:

All synced data is protected by Row-Level Security: only members of your household can read or write it.

Signing In

You can sign in with a one-time email link, or with Google Sign-In. If you use Google Sign-In, Google shares your name, email address, and profile photo with us (via Supabase Auth) to create your account — we never see or store your Google password.

Receipt Scanning Is On-Device

Receipt OCR currently runs entirely on your device (an offline engine) — no receipt photo ever leaves your phone for text extraction.

Anonymous Performance and Feature-Usage Telemetry

To find and fix slow or broken parts of the app (startup time, price-lookup speed, receipt-processing time, crashes, and similar), we collect a small set of anonymous performance events: how long an operation took, whether it succeeded, and a coarse size bucket (e.g. "1-5 items") rather than an exact count.

We also collect a small set of anonymous feature-usage events — for example, that a promotion indicator was displayed, that promotion details were opened, or that a basket total included a promotion. These tell us whether a feature is actually useful and worth keeping. They record only that an interaction happened, never what you searched for, what is on your list, or which specific product was involved.

Every event is tagged with a random installation ID generated on your device — it is not your account ID, not an advertising ID, and is not linked to your name, email, or shopping data. It resets if you reinstall the app. This data contains no shopping-list content, no location, and no other personal information, and is never shared with third parties.

Data We Send to Third Parties

ServiceWhenWhatWhy
Google Sign-InOnly if you choose to sign in with GoogleName, email, profile photoAccount creation/authentication
Government price portalsDaily, via our Supabase Edge FunctionNo user data — we fetch public price XMLPrice comparison
Retailer image serversWhen product images are shownWe send no data — but the request itself reveals your IP address to themDisplaying product photos

Images shown in the app — product photos and your Google profile picture — are loaded directly from those third parties' servers. We never copy the image files to our servers; they are cached on your device only. A direct request like this reveals your IP address to the server hosting the image, exactly as browsing to that company's own website would.

What We Do Not Collect

Permissions Explained

PermissionWhen requestedWhy
CameraFirst scan actionBarcode scanning, receipt OCR
Fine/Coarse LocationFirst time you use price comparisonRank nearby stores by distance
Read ContactsOnly when you tap "Invite from contacts"Show which of your contacts already use the app; matched by hashed phone/email — the full list is never uploaded
Post NotificationsAfter the first household eventSmall icon badge when a household member changes a shared list while you're away from the app

Photos are selected via Android's built-in Photo Picker, which does not require a storage/media permission at all.

How We Protect Your Data

Your Rights

Data Retention

DataDefault retentionUser control
Receipt imagesDeleted after successful OCRSettings → Receipt Images
Local databaseKept until you delete the app or use "Delete Account"Delete Account wipes it
Supabase rowsDeleted as part of the "Delete Account" request, processed automatically by our serverSame

Changes to This Policy

If the data practices change materially, this document will be updated and a notice shown in the app.

Contact

For questions or account-deletion requests, contact: checksal.app@gmail.com

Accessibility Statement