Our Privacy Policy and Terms change on October 30, 2026. Accounts without an email address will get account notices by text, and you will be able to set your time zone. Read the changes
Version 1.2 · Effective June 21, 2026 · Last updated September 19, 2026
We built Fuelytics with privacy as a core design choice, not an afterthought. This policy explains, in plain language, what personal information we collect, why we collect it, how it is shared and protected, how long we keep it, and the choices and rights you have. By creating an account and accepting this policy, you agree to the practices described here. If you do not agree, please do not use the service.
We do not collect government IDs, payment card numbers, biometric data, or data about your contacts.
Fuelytics organizes data into Groups — a shared workspace you create (becoming its Owner) or are invited into as a Contributor or Viewer. This is important to understand:
We use trusted third-party services to run Fuelytics. We do not sell your personal information or use it for advertising.
| Service | What it receives |
|---|---|
| Google Firebase (database, sign-in, storage, hosting) | All data categories — it is our cloud backend, used under a data processing agreement. |
| Firebase Crashlytics & Performance Monitoring | Device model, OS/app version, and performance metrics. No fill-up records or identifiers. |
| Anthropic (Claude) — optional photo reading | Only if you use the photo feature: odometer/pump images, sent to automatically extract fill-up information. It is NOT used to train models. |
| Resend — transactional email | Your email address, the content of the message, and delivery information, to send account emails such as verification, password reset and sign-in links, group invitations, and support requests. |
| Google reCAPTCHA, Google Play Integrity, Apple App Attest / DeviceCheck — security checks | Browser, device and app integrity signals, used only to prevent abuse. See “Security and fraud prevention” below. |
AI fill-up capture (Anthropic). If you use the optional AI fill-up capture feature, the photos you take of your odometer and fuel pump (and the related capture metadata) are sent to Anthropic’s Claude API so it can read the images and extract the fill-up details for you. Anthropic acts as a sub-processor for this single purpose. We do not store these photos: in our live service they are processed in passing — sent for extraction and then discarded — and are never saved to our systems. Under our agreement with Anthropic, this content is not used to train its models, a data processing agreement (DPA) is in force, and Anthropic’s default retention is 30 days, which is our standing, permanent retention period for this content. (We explored a custom zero-retention arrangement with Anthropic; it was declined, so the 30-day default applies and nothing further is pending.) This feature is entirely optional and off unless you turn on image capture for a vehicle; if you don’t use it, your photos are never sent to Anthropic.
SMS verification (Firebase Phone Auth). If you choose to sign in with your phone number, Google’s Firebase Phone Authentication sends the one-time verification code to your phone. Only your phone number is used, solely to deliver and verify the code. Before a code is sent, Google also checks that the request comes from a genuine browser or app (on the website this uses reCAPTCHA), to prevent SMS abuse. Firebase acts as a sub-processor for this purpose under the same Google Cloud / Firebase data processing agreement that covers the rest of our infrastructure. If you don’t use phone sign-in, no phone number is collected or sent.
Transactional email (Resend). We use Resend to send the emails the service needs: email verification, password reset and sign-in links, group invitations, and the messages you send us through the support and sign-in help forms. Resend receives the recipient’s email address, the message content, and delivery information, and uses them only to deliver the email. We do not use it for marketing email.
Security and fraud prevention. To prevent abuse, automated sign-ups and account takeover, Fuelytics uses Firebase App Check. App Check confirms that each request comes from a genuine copy of our website or app before our servers accept it. It relies on a different provider on each platform:
These checks produce a short-lived token that our servers verify. We do not store the underlying signals with your account, and we do not use them for advertising or to track you across other apps or websites. We rely on our legitimate interest in keeping the service and your account secure.
Fuelytics operations team. Our operations team may access your data only when it’s needed to run the service — to troubleshoot a problem, perform maintenance, investigate a security issue, or respond to a support request you’ve made. This access is limited to those purposes, restricted to authorized team members, and recorded in our audit log. We don’t use your fill-up data for anything else.
We don’t share your personal data with anyone except as described in this policy. We may disclose data to law enforcement or other government authorities only when we are legally required to do so — for example, in response to a valid subpoena, court order, search warrant, or other lawful request — or where we reasonably believe disclosure is necessary to comply with the law, prevent harm or fraud, protect someone’s safety, or establish or defend our legal rights.
Where we are legally permitted to, we will make reasonable efforts to notify the affected user before disclosing their data, and we limit any disclosure to what the request legally requires.
| Data | Retention |
|---|---|
| Fill-up, vehicle & vehicle event records | These belong to the vehicle group and are kept while the group exists. When you delete your account, the fill-ups and events you entered stay in the group, and 30 days after your deletion request your name is removed from them (they are shown as entered by “Deleted user”). Vehicles stay in the group. Group records are removed only if the group itself is deleted. |
| Account & sign-in data, profile, and group memberships | While your account is active. When you delete your account it is deactivated immediately, and 30 days later your profile, your sign-in account (email address and phone number), and your group memberships are permanently deleted. |
| Groups | A group is not deleted when one member deletes their account. It is kept for its remaining members until the group is deleted. |
| Photos | Not stored — processed transiently for AI capture, then discarded. |
| Audit log | 7 years, to support security review and dispute resolution. |
| Crash & performance data | 90 days. |
We are introducing shorter, clearer retention rules, including for deleted records and groups. We will update this section when they take effect.
We respond to requests within 30 days of verifying your identity. To make a request, use the Help form in the website, the options described above, or email the contact below. Depending on where you live — for example under the California CCPA/CPRA or the EU/UK GDPR — you may have additional rights, which we honor.
Fuelytics is not directed to children, and you must be 16 or older to create an account or use the Service. We do not knowingly collect personal data from anyone under 16. If you believe a child under 16 has provided us data, contact us and we will delete it.
If we make a material change — for example to what we collect, how long we keep it, or who processes it — we will notify you and ask you to review and accept the updated policy before you continue using the service. Minor, non-material changes are posted with an updated effective date. The current version always appears in the app and on the web.
Questions, requests, or privacy concerns: contact us at privacy@fuelytics.app.
This user-facing policy summarizes our full Privacy Policy & Data Governance document; where the two differ, the governance document governs.