← StillPaying

Privacy Policy

StillPaying helps you find recurring charges hiding in your email. To do that, you connect your mailbox and we read billing mail only. This policy explains exactly what we access, what we keep, what we never keep, and how to remove it all.

1. Who we are

StillPaying is operated by Millennials Group Limited (company number HE 396314), registered in the Republic of Cyprus at Arch. Makariou III, 1, Mitsi Building 3, Floor 2, Flat/Office 202, 1065 Nicosia, Cyprus. We are the data controller for the personal data described here. Contact: privacy@stillpaying.io.

2. Google user data: what we access and why

When you choose Continue with Google, Google shows you a consent screen listing exactly what you are granting. We request these scopes and no others:

We cannot send email as you, delete your mail, or modify your mailbox in any way. The read-only scope does not permit it, and we do not request any scope that would.

We do not read your whole mailbox

We do not download or index your inbox. We ask Gmail only for messages matching billing-shaped searches — Gmail's own “Purchases” category, and subjects or phrases such as receipt, invoice, renewal, payment confirmation, was charged and auto-renew — limited to the last 12 months. Personal correspondence that does not match those searches is never retrieved by our systems.

3. What we store — and what we never store

For each recurring charge we detect, we keep:

We also store your email address, your subscription status, and a log of every time our system accessed your mailbox (see §7).

Your Google credentials

Google gives us a token rather than your password — we never see, receive, or store your Google password. That token is encrypted with a key held in Google Cloud's key management service and is stored only in ciphertext. It is decrypted only inside a single isolated service that is not reachable from the public internet, and it is never written to logs or error reports.

4. Google API Services Limited Use disclosure

Specifically, and without exception:

5. Automated processing (including AI)

Most receipts are read by our own rule-based parsers. When a billing email cannot be parsed that way — an unusual format, or a language our parsers do not cover — the text of that single message may be sent to our AI processor, Anthropic, to extract the merchant, amount and billing interval.

Anthropic processes that content solely to return the result to us. Under our commercial terms, that content is not used to train Anthropic's models. No message is sent to any AI system for advertising, profiling, or any purpose other than reading the billing facts of that one email.

6. Sharing and subprocessors

We do not sell your data or share it with advertisers. We use a small number of service providers that process data on our behalf under contract:

Our servers and database are located in the European Union (Belgium). Where a provider processes data outside the EU, that transfer is covered by Standard Contractual Clauses.

7. Access logging

Every time our systems access your mailbox, we write an audit record of what was requested and when. This lets us prove our access was limited to what this policy describes, and detect misuse. Audit records contain no message content.

8. How long we keep things

9. Your rights

Under the GDPR you have the right to access, correct, export, restrict, or delete your personal data, and to object to processing. You can disconnect at any time — both from your StillPaying settings and independently from your Google account's third-party access page, which revokes our access instantly regardless of anything we do.

To exercise any right, email privacy@stillpaying.io. We respond within 30 days. You also have the right to complain to the Office of the Commissioner for Personal Data Protection in Cyprus, or your local supervisory authority.

10. Cookies

We use one cookie: a signed session cookie that keeps you logged in. It contains an internal account identifier and your email address — no tracking identifiers. We do not use advertising or third-party tracking cookies.

11. Security

12. Children

StillPaying is not directed at children under 16 and we do not knowingly collect their data.

13. Changes

If we change how we handle your data, we will update this page and, for material changes, email you before the change takes effect.