Privacy policy
Effective 14 September 2026. This policy covers the T3rnel Business Intelligence Android app and web ledger.
The short version
Your books belong to you. We store your business records so you can reach them from your devices; we do not read your SMS inbox, do not sell your data, and do not run analytics on your ledger. You can export everything and leave at any time.
What we collect
- Account identity. When you sign in with Google we receive your email address, display name and Google subject ID. We store these to attach your sign-in to your workspace.
- Business records you create. Ledger entries, invoices, customers, staff, vehicles, captured receipts and SMS text you explicitly capture, and the settings you choose (language, theme, enabled features).
- Service telemetry. Cloudflare records request metadata (IP, timestamp, route) for security and reliability. We do not run advertising or behavioural analytics.
What we never collect
- Your SMS inbox. The app has no SMS-read permission. A payment message only enters the app when you share it yourself.
- Contacts, location history or advertising identifiers.
- Content of other apps. The share target receives only what you explicitly share.
How your data is processed
- On-device first. Captures and entries are written to an encrypted-free local store on your device and sync when connectivity returns. Uninstalling removes unsynced local data.
- Receipt extraction. Receipt images you capture are sent to T3rnel Document Intelligence (operated by T3raTech on Cloudflare), which uses Google's Gemini API to extract fields. Images are stored in a private Cloudflare R2 bucket as evidence for your records.
- Billing. Usage quotas are enforced by T3rnel WavePay, which receives your tenant ID and quota events — never document contents.
- Payments. PayNow callbacks carry transaction references and amounts; card details are handled by PayNow, never by us.
Sharing
We do not sell or rent personal information. Data is shared only with the processors named above (Cloudflare, Google for sign-in and document extraction, PayNow for payments) and only to the extent needed to run the service, or when the law requires it.
Retention and deletion
Records persist while your workspace exists. You can export your data (CSV, accountant formats) at any time from the app. To delete a workspace and all its records, contact us — deletion removes tenant data from D1 and R2 within 30 days, after backups expire.
Security
Credentials are stored only as peppered hashes; sessions travel over TLS. Bearer tokens never appear in the interface — sign-in happens through your Google account. Tenant data is isolated by credential; one workspace cannot read another's records.
Children
The app is a business tool and is not directed at children.
Changes
Material changes will be announced on this page with a new effective date.
Contact
T3raTech Solutions (Pvt) Ltd, Harare, Zimbabwe — t3ratech.co.zw.