← Back to home

Privacy Policy

Effective Date: May 8, 2026

DRAFT — REQUIRES LEGAL REVIEW BEFORE PUBLICATION. This is a starting template. Before launch, have a privacy lawyer review for your jurisdiction(s). Especially important for GDPR, CCPA, and PIPEDA compliance language.

1. Who We Are

Dibby ("we", "us", "our") is an expense-splitting application operated by [LEGAL ENTITY TO BE FILLED]. You can reach us at hi@dibby.ca.

2. What We Collect

We collect the minimum data needed to make Dibby work:

Account Data

Usage Data

Device Data

What We DON'T Collect

3. How We Use Your Data

4. Who We Share Data With

We do not sell your data. Period.

We share data with these service providers solely to operate Dibby:

ProviderPurposeData Shared
Supabase (database/auth)Hosting, auth, storageAll app data
Twilio (SMS)Send OTP and invite SMSPhone number, message content
Google Cloud VisionReceipt OCRReceipt image (deleted from Vision after processing)
Apple/Google (push)Send push notificationsDevice tokens, notification content
Sentry (errors)Crash reportingAnonymous crash data (only if you opt in)

We do NOT share data with advertisers or data brokers.

5. Your Rights

Under GDPR, CCPA, PIPEDA, and similar laws, you have the right to:

Response time: within 30 days of request.

6. Data Retention

7. Security

No system is 100% secure. We will notify you within 72 hours if we detect a breach affecting your data.

8. Children

Dibby is not intended for children under 13. We do not knowingly collect data from children under 13. If you believe we have, contact us and we will delete it.

9. International Transfers

Dibby's servers are located in [REGION]. If you're using Dibby from outside this region, your data is transferred there with safeguards including [Standard Contractual Clauses for EU users / equivalent for other jurisdictions].

10. Changes to This Policy

We will notify you via email or in-app at least 30 days before any material change. Material changes are tracked in the change log at the bottom of this page.

11. Contact


Changelog