Privacy Policy

Last updated: January 14, 2026

1. Introduction

DriveFlo ("we," "our," or "us") operates the DriveFlo mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our App.

We are committed to protecting your privacy and complying with applicable data protection laws, including the Personal Information Protection and Electronic Documents Act (PIPEDA) in Canada, relevant U.S. state privacy laws including the California Consumer Privacy Act (CCPA), and the General Data Protection Regulation (GDPR) for users in the European Economic Area.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address, name, and password when you create an account
  • Profile Information: Vehicle details (make, model, year), country of residence
  • Mileage Data: Trip distances, odometer readings, dates, and trip purposes you log
  • Expense Data: Expense amounts, categories, dates, and descriptions
  • Receipt Images: Photos of receipts you upload for expense tracking
  • Support Communications: Information you provide when contacting us for support

2.2 Information Collected Automatically

  • Device Information: Device type, operating system, unique device identifiers
  • Usage Data: App features used, interaction patterns, crash reports
  • Log Data: Access times, pages viewed, app performance data

2.3 Information We Do NOT Collect

  • GPS location or real-time tracking data
  • Contacts or address book information
  • Financial account numbers or banking information
  • Social security numbers or tax identification numbers

3. How We Use Your Information

We use your information to:

  • Provide, maintain, and improve the App's functionality
  • Calculate your business-use ratio and tax deduction estimates
  • Generate mileage and expense reports
  • Store and display your receipt images
  • Process your subscription payments through app stores
  • Send important notifications about your account or the App
  • Respond to your support requests
  • Analyze usage patterns to improve the App
  • Detect, prevent, and address technical issues or fraud

4. Third-Party Services

We use trusted third-party services to operate our App. These services may have access to your information only to perform specific tasks on our behalf:

Firebase (Google)

Authentication, database, and file storage

Privacy Policy →

Google Analytics

App usage analytics and performance monitoring

Privacy Policy →

Sentry

Error monitoring and crash reporting

Privacy Policy →

RevenueCat

Subscription management

Privacy Policy →

Render

Cloud hosting infrastructure

Privacy Policy →

Cloudflare

Receipt image storage and content delivery

Privacy Policy →

Google Play Store

App distribution and payment processing (Android)

Privacy Policy →

Apple App Store

App distribution and payment processing (iOS - Coming Soon)

Privacy Policy →

5. Data Storage and Security

Your data is stored on secure servers provided by our third-party infrastructure providers. We implement industry-standard security measures including:

  • Encryption of data in transit (TLS/SSL)
  • Encryption of data at rest
  • Secure authentication mechanisms
  • Regular security audits and updates
  • Access controls and employee training

While we strive to protect your information, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.

6. Data Retention

We retain your information for as long as:

  • Your account is active
  • Needed to provide you with our services
  • Required by law (e.g., tax records may be retained for 7 years)
  • Necessary for legitimate business purposes

When you delete your account, we will delete or anonymize your personal data within 30 days, except where retention is required by law.

7. Your Rights

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data ("right to be forgotten")
  • Portability: Request your data in a portable format (export)
  • Restriction: Request restriction of processing
  • Objection: Object to certain types of processing
  • Withdraw Consent: Withdraw consent where processing is based on consent

To exercise these rights, contact us at support@drivefloapp.com. You can also delete your account and data directly within the App's settings.

8. Children's Privacy

DriveFlo is not intended for use by children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States and Canada. These countries may have different data protection laws. By using the App, you consent to such transfers. We ensure appropriate safeguards are in place to protect your data.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy in the App and updating the "Last updated" date. Your continued use of the App after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact us:

DriveFlo

Email: support@drivefloapp.com

For California Residents (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect, the right to delete your information, and the right to opt-out of the sale of your personal information.

We do not sell your personal information.