Legal
Privacy Policy
Product: ReceiptStash (Chrome extension “Gmail Receipt Tracker — Expenses & Invoices”)
Publisher: ReceiptStash
Last updated: 14 September 2026
This page is the privacy policy for ReceiptStash. It is not a marketing homepage. It explains what data the extension handles, how that data is used, who it is shared with, and how you can contact us.
1. Single purpose
ReceiptStash has one purpose: save receipt and invoice details from a Gmail thread the user has already opened, keep a local expense ledger, and let the user export that ledger.
2. Data we process
The extension may process the following user data:
- Website / email content (only after you click Save as receipt): the currently visible Gmail thread in your browser, including subject, sender, and message text. This is used only to suggest merchant, date, amount, tax, category, and order id. You can edit those fields before saving.
-
Saved ledger rows: the receipt fields you confirm (merchant, date,
amount, tax, category, order id, and a source note). These stay in
chrome.storage.localon your computer. - License key (optional, Pro only): if you paste a Polar license key, that key is sent to Polar to check that it is active.
We do not collect your Google password. We do not scan your inbox in the background.
3. How we use the data
Data is used only to:
- fill the Save as receipt form after you click the button;
- store and display your local ledger;
- export CSV (and, on Pro, tax-year CSV or a Sheets paste) on your device when you ask;
- validate a Pro license key you paste.
We do not use this data for advertising, credit scoring, lending, or any purpose unrelated to the single purpose above.
4. Sharing and third parties
Receipt and Gmail thread contents are not uploaded to a ReceiptStash server. They are not sold. They are not shared with advertisers.
The only third party that may receive data from the extension is:
-
Polar (
api.polar.sh): if you buy Pro and paste a license key, that key is sent to Polar to confirm it is valid. Email content is not included in that request. Polar is the merchant of record for paid checkout on Polar’s own website.
If you export a CSV or copy rows into Google Sheets, that file or paste is created on your device at your request. We do not receive a copy.
5. Storage and retention
Ledger data and any license key are stored locally in chrome.storage.local.
They remain until you delete rows, clear site/extension data, or uninstall the extension.
Uninstalling ReceiptStash removes that local data.
6. Consent
The extension does not read a Gmail thread until you click Save as receipt on that thread. Installing the extension and using that button is the consent for this processing. You can stop at any time by not clicking the button, deleting saved rows, or uninstalling.
7. Google user data and Limited Use
ReceiptStash does not call the Gmail API. It only reads the Gmail page already open in Chrome after you click Save as receipt.
The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.
To the extent any Google user data is processed, it is used only to provide or improve user-facing features that are prominent in the ReceiptStash user interface, is not transferred to ReceiptStash servers, and is not used for serving advertisements or for creditworthiness determinations.
8. Children
ReceiptStash is not directed at children under 13. We do not knowingly collect data from them.
9. Changes
If this policy changes, we will update the “Last updated” date on this page. Continued use after a change means you accept the updated policy.
10. Contact
Privacy questions: frantisekkratochvil123@gmail.com