Radix

Privacy Policy

Last updated: 14 July 2026

Receipt Extractor (“the App”) is an internal tool operated by Radix that helps employees collect expense receipts from their own email inboxes and download them as a single ZIP file. This policy explains what data the App accesses, how it is used, and how it is protected.

Information we access

With your explicit consent through Google’s OAuth flow, the App requests read-only access to your Gmail (the gmail.readonly scope) and your basic profile (name, email address). Using this access, the App reads the messages, headers, and attachments that match the vendors and date range you select, in order to identify and export receipts. The App never sends email, modifies, deletes, or organizes your mail, and never reads mail outside the searches you initiate.

How we use the information

  • To search your selected mailboxes for receipts and invoices matching your criteria.
  • To assemble those receipts (attachments as-is, and receipt emails rendered to PDF) into a ZIP file that is streamed directly to your browser for download.
  • To display counts and status of an extraction run.

We do not use your data for advertising, we do not sell or share it, and no human reads your email content except where required to resolve a support issue you raise, to maintain security, or to comply with the law.

Data we store — and don't

  • Email content is not stored. Message bodies, attachments, and generated PDFs are streamed into your ZIP download and then discarded. They are never written to our database.
  • Connected mailboxes. If you connect an additional Google account, we store that account’s OAuth refresh token encrypted (Google Cloud KMS) so the App can read that inbox when you run an extraction. Removing the account deletes the token and revokes the App’s access.
  • Run history. We keep audit metadata about each run (who ran it, when, the date range, and counts). This never includes email content.

Limited Use disclosure

Receipt Extractor’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, data obtained through Gmail scopes is used only to provide and improve the receipt-extraction feature described above; is not transferred to third parties except as necessary to provide that feature, for security purposes, or to comply with applicable law; is not used for advertising; and is not read by humans unless you give affirmative consent for specific messages, it is necessary for security or to comply with the law, or the data is aggregated and anonymized for internal operations.

Data retention & deletion

Encrypted refresh tokens are retained until you remove the connected account or revoke access from your Google Account permissions. Audit metadata is retained for operational and compliance purposes. To request deletion of any data associated with your account, contact us at the address below.

Security

The App runs on Google Cloud Run with data held in Google Cloud SQL. Refresh tokens are encrypted with Google Cloud KMS. Access is restricted to authenticated users, and all traffic is served over HTTPS.

Contact

Questions or data requests: clifford@radix.email.

Terms of Service