Privacy Policy

Effective date: May 4, 2026

1. Overview

Mileo (“we”, “our”, or “us”) is operated by Mileo. This Privacy Policy explains how we collect, use, and protect information when you use the Mileo iOS application and website at getmileo.com. We take your privacy seriously and collect only what is necessary to provide the service.

2. Information We Collect

Account Information

When you sign in with Apple or Google, we receive your name and email address (if you choose to share them). We use this to create and identify your account.

Expense Data

We store the expense records you create: amounts, dates, merchants, categories, and notes. Receipt images you upload are stored securely and associated with your account.

Mileage & Location Data

When you use GPS trip tracking, the app accesses your device location to calculate trip distance. We store only the computed distance in miles — we do not store your GPS coordinates, route history, or raw location data. Location access is limited to when the app is in use (“When In Use” permission).

Usage Data

We do not use third-party analytics or advertising SDKs. Basic error and crash information may be collected to help us fix bugs.

3. How We Use Your Information

  • To provide and operate the Mileo service
  • To sync your data across devices via your account
  • To process receipt images through our OCR pipeline (merchant, amount, date extraction)
  • To respond to support requests
  • To improve the app based on error reports

We do not sell your personal information. We do not use your data for advertising.

4. Data Storage & Security

Your data is stored using Supabase, a secure cloud database platform. Data is encrypted in transit (TLS) and at rest. Access to your data is restricted by row-level security policies — only you can read or modify your records. Receipt images are stored in a private storage bucket with scoped access controls.

5. Third-Party Services

Mileo uses the following third-party services to operate:

  • Supabase — database, authentication, and file storage
  • Google Vision API — receipt image text extraction (OCR)
  • OpenAI — structured data parsing from receipt text
  • Apple / Google Sign-In — authentication

Receipt images sent to OCR services are used solely for text extraction and are not retained by those services beyond processing.

6. Your Rights

You may request deletion of your account and all associated data at any time by contacting us at hello@getmileo.com. We will process deletion requests within 30 days.

7. Children's Privacy

Mileo is not directed at children under 13. We do not knowingly collect personal information from children under 13.

8. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of material changes by updating the effective date above. Continued use of the app after changes constitutes acceptance of the updated policy.

9. Contact

If you have questions about this Privacy Policy, please contact us at hello@getmileo.com.