Legal
Privacy Policy
Effective: July 27, 2026
01
Overview
Lenz ("we", "our", "us") is a phone app that connects to your Gmail and pulls out the important stuff — bills, coupons, subscriptions, and insurance emails — so you can see it all in one tidy place. This page explains, in plain language, what information we collect, how we use it, and how we keep it safe.
Lenz can only read your Gmail — it can never send, delete, or change your emails.
02
What Information We Collect
When you sign in with your Google account, we receive and store:
- Your email address and your Google account ID (a number Google uses to identify you)
- A secure access key from Google that lets Lenz read your inbox on your behalf (you can take this away at any time — see "Your Choices" below)
- Basic details about each email: who sent it, its subject line, the date it arrived, and which conversation it belongs to
- The text inside an email — read briefly so our AI can pull out the useful details, then discarded. It travels over an encrypted connection (HTTPS/TLS) and is not stored long-term. Only the extracted details (the amount, due date, company name, category, and a short summary) are kept. When you open an email in the app, it's fetched fresh from Gmail at that moment, not from anything we saved
- The names and types of any files attached to an email — but not the files themselves
Once the AI has read an email, we also keep these key details:
- What kind of email it is (a bill, coupon, insurance, or subscription)
- The company name, the amount, the due date, and any expiry date
- A short, one-line summary in everyday words
If you turn on reminders, we also store:
- A push token — a device identifier that Expo gives us so we can deliver notifications to your phone. It's just a delivery address for your device, not any personal content, and you can turn reminders off at any time
We also keep a short-lived record of emails Lenz filtered out (the ones it decided weren't a bill, coupon, insurance, or subscription). For each of these we store only the sender and the subject line, plus the reason it was skipped — never the email body. This lets you see what was filtered and bring back anything that was skipped by mistake. These skipped-email records delete themselves automatically after 30 days.
03
How We Use Your Information
- To show your bills, coupons, and subscriptions in your own personal dashboard
- To help you keep track of your spending and spot charges that come back every month
- To send you optional notifications (only if you turn these on): an alert when a new email lands in your Lenz dashboard, and a reminder when a bill's due date is coming up. You can turn these off at any time
- To let you review the emails Lenz filtered out and restore any that were skipped by mistake. When you restore one, Lenz fetches that message fresh from Gmail (read-only) at that moment and pulls out its details — the same on-demand approach as opening an email
We never sell, share, or hand over your information to anyone else for advertising or for anything unrelated to running Lenz.
04
Other Services We Rely On
To do its job, Lenz works with a few trusted outside services:
- Google Gmail API — lets Lenz read your emails. This is read-only access (called gmail.readonly), which means we can look at your emails but never send, delete, or change them.
- Google Gemini API — this is Google's AI that reads the text of an email and picks out the useful details like amounts, dates, and company names. The email text is sent to Google's Gemini AI just to be read, and Google does not keep it once that's done.
- Expo Push Notifications — delivers the optional reminders to your phone.
05
Keeping Your Information Safe
Here's what we do to protect your information:
- The secure access key from Google is scrambled while it's stored (using strong encryption called AES-256-GCM), so it can't be read even if someone managed to steal it
- During the brief moment an email's text is being processed, it's encrypted the same way (AES-256-GCM, with its own separate key) — so even in that short window it can't be read if someone got hold of our database. Once the useful details are extracted, the text is discarded and not kept
- When you open an email inside the app, its content is cleaned on our servers first — scripts and other active content are stripped out — so nothing harmful hidden in an email can run on your device
- Everything travels between your phone and our servers over a secure, encrypted connection (the same HTTPS/TLS technology that protects online banking)
- Your sign-in stays active for only a short time and is switched off the moment you log out, so no one can stay signed in as you
- Your Google access key is never shown anywhere in the app or in our records
06
How Long We Keep It
We keep your information for as long as your account is open. The key details we pull from your emails — summaries, amounts, and due dates — are kept so your dashboard and spending history keep working.
We do not keep the full text of your emails. When an email comes in, our AI reads it just long enough to pull out the useful details, and then the text is discarded — only the extracted details (like the amount, due date, company, and summary) are kept, and those are erased when you delete your account. Nothing about the original email body is held onto so it can be "opened later."
Because the body isn't stored, opening an email always pulls the original fresh from your Gmail at that moment, using the same read-only access. The record of emails Lenz filtered out — sender and subject line and the skip reason only, never the body — is kept just briefly and deletes itself automatically after 30 days.
Attachment files themselves — like PDF bills — are never stored on our servers. When you open one inside the app, we fetch it straight from your Gmail at that moment using the same read-only access. (For PDF bills, our AI does read the text inside to pick out amounts and dates, and only those extracted details are kept, encrypted, alongside the rest of the email's details — not the file or its full text.)
07
Your Choices
You're in control, and you can do any of these whenever you like:
- Delete your account — one tap in Settings wipes all your information from our servers and cuts off Lenz's access to your Google account
- Take away access — you can remove Lenz from your Google account yourself at myaccount.google.com/permissions
- Get a copy of your data — just contact us and we'll send you a copy of what we've stored
When you delete your account, we permanently erase everything tied to it — the details we pulled from your emails, the record of what we filtered out, the recurring charges we spotted, and our usage records — and we cut off Lenz's access to your Google account. Once it's gone, it can't be brought back. The one exception: if you posted a feature request, we keep the request itself on our public suggestions board but remove your name from it, so it's no longer linked to you.
08
Children's Privacy
Lenz isn't meant for children under 13, and we don't knowingly collect any information from them. If you think a child has shared their information with us, please get in touch and we'll delete it.
09
Changes to This Policy
We may update this policy now and then. If we do, we'll post the new version on this page with a fresh date at the top. If you keep using Lenz after a change, that means you're okay with the updated policy.
Contact
Questions?
If anything here is unclear, or you have a question about your information, we're happy to help — just email us at support@lenz.bot.