Privacy Policy

Your information deserves a clear explanation.

This policy explains what EVYMI keeps on your device and what is sent for optional Smart Assist processing.

Effective: 23 September 2026Android package: com.evymi.appContact: hi@evymi.in

Effective date: 23 September 2026
Android package: com.evymi.app
Contact: hi@evymi.in

This Privacy Policy explains how EVYMI handles information when you use the EVYMI mobile application, website, and support service. EVYMI is intended for adults aged 18 and over.

Information stored on your device

EVYMI lets you save documents and document details, assets, warranties, bills, reminders, due dates, provider and account references, sites or locations, expenses, and report information. In the current Android release, saved EVYMI records and attachments are stored locally in the app's private storage on your device. EVYMI does not provide an account, cloud sync, or cloud backup for those records. Android backup is disabled for the app.

Private Scan performs document text recognition on your device. Information processed only on the device is not sent to EVYMI's backend.

The closed-testing access token for optional AI features is stored in the device's secure operating-system storage. EVYMI masks the token after entry and does not include it in app logs or saved records.

Optional AI processing

AI assistance is optional. EVYMI's core organization, scanning, saving, reporting, and reminder features remain available without it.

  • Text Assist sends extracted document text, document-category context, and locally detected candidate fields to the EVYMI Smart Assist backend. The original scan image remains on your device.
  • Best Accuracy sends the same information and the scan images you selected for that request. Images are sent only after you explicitly choose Best Accuracy.

These requests are sent over HTTPS to EVYMI's backend on Google Cloud Run. The backend authenticates the request with the tester access token, applies validation and usage limits, and sends the requested text and, where applicable, images to the OpenAI API to generate structured extraction results. EVYMI asks users to review results before saving because automated extraction can be incomplete or inaccurate.

EVYMI's backend does not save document text, images, or AI results in an application database or cloud-storage account. It uses the OpenAI Responses API with store=false. OpenAI may nevertheless retain API inputs and outputs in abuse-monitoring logs for up to 30 days under its standard API data controls, unless different approved retention controls apply. EVYMI does not claim Zero Data Retention or Modified Abuse Monitoring for the current project.

Service metadata

For reliability, security, rate limiting, and abuse prevention, EVYMI's backend records limited request metadata: request method and route, status, request size, duration, a request identifier, and a pseudonymous tester identifier. It does not intentionally log authorization tokens, document text, scan images, prompts, or AI output. Application logs are handled by Google Cloud Logging and use its standard 30-day retention unless that configuration is changed.

Short-term per-tester request counters are held in backend memory to enforce closed-test limits. They are not a durable user profile and are cleared when the service instance restarts.

Device permissions

EVYMI may request:

  • camera access when you choose to photograph or scan a document;
  • access through Android's file or media picker when you choose a photo or document; and
  • notification permission when you enable reminder alerts.

You can control these permissions in Android settings. Disabling a permission may prevent the related feature from working.

Analytics, advertising, and crash reporting

The current release does not include advertising, advertising SDKs, third-party analytics, behavioural tracking, or a third-party crash-reporting SDK. EVYMI does not sell personal information or use it for targeted advertising.

Service providers

EVYMI uses service providers only to operate requested features:

  • Google Cloud hosts the Smart Assist backend and related operational logs and secrets.
  • OpenAI processes optional Smart Assist requests to produce document-extraction results.
  • The website hosting provider serves EVYMI's public website and may process ordinary network and security information needed to deliver the site.

These providers process information on EVYMI's behalf under their applicable terms and privacy commitments. Information may be processed in countries other than your own.

Retention and deletion

  • Local EVYMI records remain on your device until you delete them using available app controls or remove the app and its data.
  • A saved tester access token remains in secure device storage until you remove tester access or remove the app and its data.
  • EVYMI's backend does not maintain a database of document content or AI results.
  • Google Cloud operational metadata is retained under the configured logging period, currently the standard 30 days.
  • OpenAI may retain API content in abuse-monitoring logs for up to 30 days under standard API controls, and longer only where legally required.
  • Support emails are retained as reasonably necessary to respond, maintain support records, prevent abuse, and meet legal obligations.

For a privacy or deletion request concerning information controlled by EVYMI, email hi@evymi.in. EVYMI may need enough information to understand and verify the request. EVYMI cannot delete information held only on your device; you control that information through the app and Android settings.

Security

EVYMI uses HTTPS for Smart Assist requests, stores tester tokens in operating-system secure storage, stores only token hashes on the server, limits request size and usage, and avoids logging document content and credentials. No storage or transmission method can be guaranteed to be completely secure.

Your choices

You may use EVYMI without optional AI assistance, choose whether to send text or selected images for AI processing, remove tester access, edit or delete available local records, manage device permissions, or stop using and uninstall the app.

Children

EVYMI is intended for adults aged 18 and over and is not directed to children.

Changes

This policy may be updated when EVYMI's features, providers, or legal requirements change. The effective date will be revised when a material update is published.

Contact

For privacy questions or requests, contact hi@evymi.in.