Privacy Policy — Lilo Due
Last updated: May 8, 2026
Thank you for using Lilo Due. This Privacy Policy explains what information the app collects, how it uses it, and your rights as a user. Please read it carefully.
1. Who We Are
Lilo Due is a personal expense and subscription tracker for iOS and Android. The app is provided free of charge with no advertisements, no in-app purchases, and no user account system of any kind.
2. Information We Collect
2.1 Information You Enter
When you use Lilo Due you may enter the following data:
| Data | Where it lives |
|---|---|
| Expense names, amounts, due dates, and recurrence | On-device SQLite database |
| Payment card names, last 4 digits, and a display color | On-device SQLite database |
| App settings (budget, monthly salary, currency, theme, language) | On-device via SharedPreferences |
None of this information is transmitted to us, uploaded to a server, or shared with any third party. It exists only on your device, in the private sandbox of the app. If you delete the app, all data is permanently erased.
2.2 Payment Card Information
The "cards" feature in Lilo Due is a visual placeholder only. You provide a card name and the last 4 digits of your card number purely for your own organizational reference. We do not collect, process, store remotely, or sell any payment card data. Full card numbers, expiry dates, CVV codes, and billing addresses are never requested and cannot be entered.
2.3 Information We Do Not Collect
We explicitly do not collect:
- Full name, email address, phone number, or any other personal identifier
- Location data (GPS or IP-based)
- Device identifiers (IDFA, Android Advertising ID, IMEI, etc.)
- Browsing or usage analytics
- Crash reports sent to a remote server
- Financial account credentials of any kind
3. Push Notifications — Google Firebase
Lilo Due uses Google Firebase Cloud Messaging (FCM), a service provided by Google LLC, to deliver push notification infrastructure. This is required by the underlying platform to enable notifications on both Android and iOS.
What this means in practice:
- When the app starts for the first time, your device registers a Firebase Cloud Messaging token. This token is a pseudonymous identifier used only to route notifications to your device.
- Lilo Due does not store, log, or otherwise use your FCM token for any purpose beyond enabling notifications.
- We do not send any marketing, advertising, or promotional push notifications.
- All bill-due reminders you see are scheduled locally on your device. They are not sent from a server; Firebase is not involved in triggering them.
Firebase is subject to Google's Privacy Policy. We encourage you to review it for details on how Google handles token data.
Notification Permissions
You are asked for notification permission when the app first launches. You may revoke this permission at any time through your device's system settings. Revoking permission does not affect the app's core functionality.
4. Local Notifications
Due-date reminders (e.g., "Due today: Netflix") are generated entirely on-device using the device's local notification scheduler. No personal data leaves your device in order to deliver these alerts. Scheduled notification metadata (expense ID, notification ID, scheduled time) is stored in the same local SQLite database and is deleted automatically when an expense is deleted or when you use Settings → Delete all data.
5. Data Storage and Security
| Aspect | Detail |
|---|---|
| Storage location | Your device only — no cloud, no server |
| Database | SQLite file stored in the app's private internal storage directory, inaccessible to other apps |
| Preferences | SharedPreferences in the app's private sandbox |
| Backups | Subject to your device's backup policy (iCloud on iOS, Google Backup on Android). Data backed up this way is governed by Apple's or Google's respective policies |
| Encryption at rest | Provided by the operating system (iOS: Data Protection; Android: file-based encryption when device encryption is enabled) |
| Transmission | No user data is transmitted over the network |
6. Data Retention and Deletion
All your data is yours. You can delete individual expenses or cards at any time from within the app. To erase everything at once:
Settings → Delete all data
This action permanently removes all expenses, cards, notification records, and app preferences from the device. It cannot be undone.
Uninstalling the app also removes all locally stored data.
7. Third-Party Services
Lilo Due integrates one third-party service:
| Service | Provider | Purpose | Data involved |
|---|---|---|---|
| Firebase Cloud Messaging | Google LLC | Push notification delivery infrastructure | FCM device token (pseudonymous, not linked to any personal identifier) |
No analytics, advertising, crash-reporting, or tracking SDKs are used.
8. Children's Privacy
Lilo Due is not directed to children under the age of 13 (or the applicable minimum age in your jurisdiction). We do not knowingly collect personal information from children. Because no personal information is collected from anyone, there is no special risk to minors from using the app.
9. No Account, No Login
Lilo Due requires no account creation. You do not provide an email address, username, password, or any other credential to use the app. There is no profile, no sync, and no server-side representation of you.
10. Free App — No Purchases
Lilo Due is free to download and use. There are no in-app purchases, subscriptions, or premium tiers of any kind offered through the app.
11. Your Rights
Because we do not collect or process any personal data about you, many data-protection rights (access, rectification, portability, erasure) are exercised entirely through the app itself:
- Access — all your data is visible in the app at all times.
- Deletion — use "Delete all data" in Settings or uninstall the app.
- Portability — your data exists as a standard SQLite file; on developer devices you can access it directly.
If you have any questions or concerns, please contact us at the address provided below.
12. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top of this document will reflect any changes. We encourage you to review the policy periodically. Continued use of the app after a change constitutes acceptance of the updated terms.
13. Contact
If you have any questions about this Privacy Policy or the data practices of Lilo Due, please reach out:
Email: support@lilocdev.com
Lilo Due is provided "as is" with no warranties.