The short version: Munshi stores the ledger, cash book, bank, and expense records you create for your own business, secured to your account. We use Firebase (Google Cloud) to run the app. We don't run ads, we don't use analytics or tracking SDKs, and we never sell your data to anyone.
Because Munshi is a bookkeeping tool, some of the information you enter — like a customer's name and phone number in your khata — is personal information about other people that you, the shop owner, choose to record. You're responsible for having a legitimate business reason to keep that information.
01 Information we collect
Account information
Your phone number, used to sign you in via a one-time SMS code (Firebase Phone Authentication). We also read a device signature automatically so the SMS code can autofill — this doesn't require reading your other messages.
Business & shop information
Business name, type, category, currency, address, city, and an optional shop photo — everything you enter while setting up or editing your shop.
Ledger, cash book, bank & expense records
The core of the app: customer and supplier names and phone numbers, transaction amounts, dates, notes, bill references, and any photos or voice notes you attach to an entry. Bank records (bank name, account title, account number) are figures you type in for your own bookkeeping — Munshi does not connect to real bank accounts, move money, or process payments.
| Data | Where it lives | Why we ask for it |
|---|---|---|
| Ledger entries, cash book, bank & expense records | Firestore (Google Cloud) | The bookkeeping feature itself |
| Bill/receipt photos, voice notes | Firebase Storage | Attach evidence to an entry, on your request |
| Face ID / fingerprint | Your device only | Optional app-lock — never sent to us (see below) |
| Local backup file | Your device's storage | Daily automatic backup you can restore from |
| Google Drive backup | Your own Google Drive | Optional off-device backup copy |
Camera, photo library & microphone
Used only when you actively choose to add a profile photo, attach a bill photo to an entry, or record a voice note. Munshi never accesses the camera or microphone in the background.
Biometric data
● Stays on your device If you enable Face ID or fingerprint unlock, your device's operating system handles the biometric match directly — Munshi only ever receives a yes/no answer. We never see, receive, or store your biometric data.
Backup data
Local backup A rotating local backup is
saved automatically to your device's own storage.
Google Drive backup — optional If you
choose to connect Google Drive, Munshi requests the narrowest permission
Google offers (drive.file) — it can only see and manage the
specific backup files it creates itself, never your other files, folders, or
photos in Drive.
02 How we use your information
- To run the core bookkeeping features — ledgers, cash book, bank book, and expense tracking.
- To sign you in and keep your data scoped to your account.
- To send a WhatsApp payment reminder to a customer or supplier, but only when you tap "Send reminder" — Munshi never sends recurring or automatic messages on its own.
- To run a nightly automated check that your account balances stay mathematically consistent, and to flag any drift to you.
- To back up and, on request, restore your data.
- To respond if you contact us for support.
04 Retention & deletion
- Deleted ledger entries sit in a Recycle Bin for 14 days, then are permanently and automatically purged.
- If you delete your account from Settings, your shop, ledger, and every associated record are permanently deleted within 30 days. Contact us within that window if you want to cancel the deletion.
05 Data security
- Server-side security rules restrict every record to the account that owns it — no other user or shop can read or write your data.
- Your app-lock PIN and biometric flag are held in your device's own encrypted secure storage.
- Data cached on your device for offline use is protected by your device's own OS-level storage protections.
06 Your rights & choices
- Access & export — export any ledger, cash book, or bank account to PDF at any time.
- Correct or delete — edit or delete any entry directly in the app.
- Disconnect Google Drive — at any time, from Settings → Backup.
- Delete your account — from Settings → Danger zone.
- Reminders — nothing is sent unless you tap Send; there's nothing to "opt out" of.
For anything this page doesn't cover, contact us — see Contact us.
07 Children's privacy
Munshi is built for business owners and is not directed at children. We do not knowingly collect information from children under 13 (or the minimum age in your jurisdiction). If you believe a child has provided us information, contact us and we'll remove it.
08 International data transfers
Our infrastructure provider, Google Cloud/Firebase, may process and store data on servers located outside Pakistan. By using Munshi, you understand your information may be transferred to and processed in other countries, under Google's own security and contractual safeguards.
09 Changes to this policy
We may update this policy as the app changes. We'll update the effective date at the top of this page, and, for material changes, notify you inside the app. Continued use of Munshi after an update means you accept the revised policy.
10 Governing law
This policy is governed by the laws of Pakistan, without regard to conflict-of-law principles.
11 Contact us
Questions about this policy or your data? Reach us at digitpakistan@gmail.com.
DIGIT
Publisher of Munshi