PRIVACY & YOUR RECORDS
Privacy policy
Tally is developed and operated by Mark Angelo Atienza. Contact: support@markangeloatienza.com. Effective date: Not yet effective — awaiting deployment review.
Records on your device
Tally is an offline-first point-of-sale app for Android and iOS. It stores your catalog, product names, prices, costs, barcodes, stock quantities and movements, cart, completed sales, receipt details and settings on your device. Core guest use does not require an account or a cloud backup. Local records are not automatically uploaded merely because you sign in.
Manual backup exports contain your shop records and are controlled by you and any destination you choose in the share sheet. Signing out can leave a hidden local workspace. Account deletion does not automatically erase local records, downloaded backups or files you exported elsewhere; remove those copies separately. Any browser app preview stores its local workspace in browser storage.
Accounts and cloud recovery
Creating an account sends your name, email address and authentication information to the Tally service. The service stores account and session records, password hashes, verification and password-reset records, business names and memberships, registered installation identifiers and device labels, assigned recovery plans and limits, and backup metadata such as timestamps, revisions, sizes and checksums. Native session credentials use the device secure storage.
Cloud recovery is optional. When you request a backup or enable automatic backups, copies of your shop records are sent to Cloudinary, with access and recovery metadata managed by the Tally API. Automatic backups run while the app is in the foreground when enabled. Recovery copies can include catalog, sales, receipt and inventory data you entered; they are snapshots for restoration rather than live synchronization between registers.
Product images, camera and files
When you choose to upload a product image, the image is sent to Cloudinary. Product images use publicly accessible delivery URLs, so anyone with the URL may view or share them. Do not use product photos for private customer information or sensitive documents. Cloud backups use authenticated delivery and short-lived signed download links; they are not end-to-end encrypted.
Barcode scanning requests camera permission when you use the scanner. Scanning decodes barcodes on the device; this feature does not send camera frames or recordings to Tally. The app does not request microphone access for scanning. File import and export use the files and sharing destinations you select. You can revoke camera permission in your device settings.
Why information is processed
Account information supports sign-in, verification and password recovery, business access and service administration. Recovery copies support restoring records. Security and administrative changes are recorded in audit logs. Support messages are used to resolve your request.
Service providers and disclosure
Tally uses Vercel for the website and API, Cloudinary for uploaded product images and restricted cloud backup files, Resend for account verification and password-recovery emails, and PostgreSQL for account, business, device, support and recovery metadata. The database hosting provider and processing regions still require confirmation.
Resend processes recipient email addresses and account email contents, including verification and password-reset links. Hosting, database and storage providers process the account records, uploaded content or technical request data needed for their respective services. Requests to the website, API and remote images can expose IP addresses, request times and browser or device information to the serving providers.
Provider processing may take place outside your country. Specific database hosting, processing regions and provider recovery-copy retention remain under review. Authorized operators may access information to administer the service, investigate security issues or respond to support requests. Information may also be disclosed when required by applicable law. The current app has no advertising SDK or third-party behavioral analytics integration, and Tally does not sell your personal information.
Retention and deletion
Account information is kept while the account is active. Cloud backup retention depends on the assigned recovery plan. When a positive retention period applies to an active plan, maintenance schedules older backups for removal while preserving the newest readable recovery point. Plan expiry or reduced quotas do not automatically erase existing backups. Accepted account and backup deletion requests are queued for maintenance; the configured daily cleanup may require additional runs or retries and is not a guaranteed completion deadline. Final retention periods and deletion completion times remain under review.
Request account deletion in Settings → Account & business, or use the email instructions below. The in-app flow requires recent authentication, blocks account access and revokes sessions when the request is accepted. Shared-business ownership may need to be resolved before deletion can proceed. Cleanup removes account and authentication records, associated support records, affected businesses and their stored images and backups; audit references are cleared where implemented. Failures or unfinished uploads can delay cleanup and are retried.
Deletion from the active service does not automatically erase external database recovery copies, provider caches or copies already downloaded or shared. Published product images may remain in caches or copies held by others. Retention periods for operational logs, audit and deletion-job records, support correspondence and provider recovery copies, and the maximum deletion completion time, have not yet been finalized. Contact us for the status of a deletion request.
Request account deletionSupport, diagnostics and the website demo
If you contact support, we receive the email address, message and attachments you provide and may keep a support record to resolve the request. Optional app diagnostics contain only app version, platform, OS version and environment; they exclude account identity, workspace identifiers, credentials and shop records. You choose whether and where to share them. Do not send passwords, sign-in codes or private backups to support.
The website demo uses disposable sample records in browser memory. Authenticated website areas use session cookies to support sign-in. Mobile accounts use bearer sessions. Tally does not collect payment-card details or process customer card payments through the current app.
Your requests
Contact support@markangeloatienza.com for access, correction, deletion or privacy questions. We may verify account ownership before responding.
Changes to this policy
We will update this page when data handling changes and identify the effective date once the policy is finalized. Last draft update: October 5, 2026.