Summary
TillTally is designed to work offline and keep cash-drawer information on the user's device. No account is required. The app does not contain advertising, analytics, tracking, remote-configuration, social-login, cloud-service, or third-party crash-reporting SDKs. Optional lifetime Pro access uses Google Play Billing. TillTally does not collect or transmit cash-counting data to the developer and does not sell, rent, or share it.
Information stored on the device
TillTally stores information the user chooses to provide, including:
- drawer names, business name, and closing notes;
- denomination quantities and counted cash totals;
- expected amounts, cash-to-leave amounts, shortages, and overages;
- closing dates and times;
- custom currencies and denomination settings;
- active count drafts and closing history; and
- language, theme, blind-count mode, and related app preferences.
This information is stored in Android app-private storage using Room and DataStore and is used only to provide the features requested by the user. TillTally also caches a Boolean Pro-access status locally; it does not store payment-card details or a purchase token in its own database.
Android automatic cloud backup and device-transfer backup are disabled for TillTally app data.
Information collection and sharing
TillTally does not require an account and does not operate a developer-controlled server. It does not collect or transmit cash counts, expected amounts, overage or shortage values, denomination quantities, drawer names, closing notes, custom currencies, business names, exported reports, backups, usage data, device identifiers, diagnostics, or advertising identifiers to the developer.
TillTally does not sell, rent, or share user data.
Export, sharing, and backup
Data leaves TillTally only when the user deliberately chooses to:
- share a plain-text result with another installed app;
- export a CSV file;
- create a PDF report; or
- create or restore a JSON backup.
Android's system share interface and Storage Access Framework let the user choose the receiving app or file destination. TillTally does not upload, retain, or receive a copy of an exported file. A receiving app, storage provider, or cloud destination selected by the user operates under its own privacy policy.
Google Play purchases
If the user opens the Pro purchase or restore flow, TillTally communicates with the
Google Play Billing service to request localized product information and the state
of the non-consumable tilltally_pro_lifetime purchase. Google Play
handles payment details under Google's terms and privacy policy. TillTally does not
receive credit-card or other payment-account details and does not send purchase
records to a TillTally-operated server.
The app processes the product identifier, purchase state, acknowledgement state, price information, and purchase token locally only as needed to grant, restore, and acknowledge Pro access. The purchase token is passed back to Google Play for acknowledgement and is not stored in TillTally's database. A confirmed Pro-access status is cached on the device and refreshed against Google Play.
Android permissions and network access
TillTally does not request contacts, camera, location, microphone, advertising ID, notification, accessibility-service, or broad storage access. File creation and selection use Android's Storage Access Framework, so the user controls each file destination or selection.
The Google Play Billing library contributes
com.android.vending.BILLING, INTERNET, and
ACCESS_NETWORK_STATE. Network access is used only for optional Pro
product, purchase, acknowledgement, and restore operations through Google Play.
Cash-counting data is not included in those operations.
Data retention and deletion
Active drafts remain until they are completed, replaced, or cleared. Closing records remain in History until the user deletes them. Settings, drawers, custom currencies, and the cached Pro-access status remain until changed or until app data is cleared.
Users can delete individual closing records within TillTally. They can remove all locally stored TillTally data through Android system settings or by uninstalling the app. Because TillTally has no account or developer-controlled server, there is no remote profile or server record to delete.
Security
Data is kept in Android's app-private storage and protected by Android's application sandbox and the device's security controls. Automatic app-data backup is disabled. No storage method can guarantee absolute security; users should protect their device with an appropriate screen lock, keep Android up to date, and choose trusted apps or destinations when exporting or sharing sensitive reports.
Children's privacy
TillTally is a general business utility and is not directed to children. It does not knowingly collect personal information from any user.
Changes to this policy
If the app's data practices change, the publisher will update this policy and its effective date before distributing a version with materially different practices.
Contact
Questions about TillTally or this policy can be sent to aminhanif24@gmail.com.