Zero-Knowledge Architecture

Privacy Policy

Last Updated: September 2026

SpeakMoney Privacy Policy

At SpeakMoney (Application ID: com.manarahlab.speak_money, developed by ManarahLab), our founding principle is absolute: Your personal finances are your business, and nobody else’s.

SpeakMoney is engineered from the ground up as a Local-First, Zero-Knowledge Application. We do not operate central database servers, we do not sell or monetize personal records, and we do not profile your financial behavior.


1. Zero Cloud Server Storage

  • No Central Databases: SpeakMoney maintains no cloud servers or remote databases storing your bank balances, transactions, notes, categories, merchants, or loan records.
  • 100% On-Device Storage: All transactions and personal ledger entries are stored exclusively in a local SQLite database on your device.
  • 256-Bit SQLCipher Encryption: The local database is encrypted at rest with military-grade AES-256 bit encryption using SQLCipher. The database encryption key is derived using PBKDF2 with 100,000 rounds and stored securely in your phone’s hardware Android Keystore.
  • Biometric Security: You can protect access to the app and its encrypted database with biometric authentication (fingerprint or Face Unlock).

2. Voice Audio & Speech Recognition (STT)

SpeakMoney offers two distinct ways to capture voice expenses:

A. Built-in Native On-Device STT (100% Offline)

  • When utilizing the built-in Native Speech Recognition engine, your audio is processed entirely on your physical smartphone using local operating system speech services.
  • Zero data is sent across the internet. This engine operates completely offline, including in airplane mode.

B. Pluggable Cloud AI Providers (BYOK)

  • If you optionally choose to connect an external AI provider (such as Google Gemini, OpenAI Whisper, or Deepgram) via Bring-Your-Own-Key:
    • Audio or transcript text is streamed directly and securely (over TLS encryption) from your device to the official API endpoint of that provider.
    • Your requests are authenticated using your personal API key stored in your phone’s secure hardware storage.
    • No intermediate proxy: ManarahLab never routes, intercepts, or inspects your API keys or voice data.
    • Audio buffers in memory are purged immediately following transaction extraction (typically within 150 milliseconds).

3. Personal Lending & Borrowing Ledger

  • All personal loans given to others, debts owed, repayment histories, and contact names entered into the Lending & Borrowing ledger are stored strictly inside your local SQLCipher encrypted database.
  • Lending records are never shared with credit bureaus, financial institutions, or external parties.

4. Google Drive Cloud Backup

  • SpeakMoney provides an optional cloud backup feature using your personal Google account.
  • Restricted App Data Scope: SpeakMoney exclusively requests access to the Google Drive drive.appdata scope (the private Application Data folder).
  • No Access to Personal Files: SpeakMoney cannot view, read, modify, or delete any of your personal Google Drive documents, spreadsheets, photos, or files.
  • Encrypted Archives: Backup files (speak_money_backup_*.json) are stored strictly within your private hidden app folder and can only be accessed by SpeakMoney on your authenticated device.

5. Device Permissions & System Features

SpeakMoney requests only the minimum permissions necessary to function:

  • Microphone: Required solely when you actively press the voice recording button to record an expense. The microphone is never accessed in the background.
  • Biometrics / Fingerprint: Used strictly to unlock the local database gate on your device.
  • SMS & Clipboard: Optional convenience detection features are disabled by default. SpeakMoney never reads or transmits SMS messages or clipboard contents without your manual enablement.
  • Internet: Required only if you opt to use cloud AI engines (BYOK) or Google Drive cloud sync.

6. Crash Reporting & Diagnostics

To ensure application stability on Android devices, SpeakMoney utilizes opt-in Firebase Crashlytics. Crashlytics collects non-personally identifiable diagnostic information (such as crash stack traces, device model, and OS version). No financial transaction details, merchant names, amounts, notes, or voice recordings are ever sent to diagnostic services.


7. Data Ownership & Lossless Portability

You maintain complete, unrestricted ownership of your financial records:

  • One-Tap Export: You can export your entire transaction history and ledger at any time to clean CSV, formatted Excel (.xlsx), or raw JSON files.
  • Permanent Deletion: Uninstalling SpeakMoney or selecting “Clear Data” in Android system settings permanently and irrecoverably erases the local encrypted database from your device.

8. Privacy Inquiries

If you have any questions or security disclosures regarding this Privacy Policy, please contact us at privacy@manarahlab.com.