Privacy
Privacy Policy
Last updated: 2026-07-12
Who operates Infer.tax
Infer.tax is a service operated by Truscape LLC ("Truscape," "we," "us," or "our"). This policy explains how Truscape handles personal information when you use Infer.tax. You can learn more about the company at truscape.com.
What we collect, and from where
Infer.tax reads transactions from connected bank and credit-card accounts via Plaid, and reads receipts from your inbox via the Gmail API. We use the data to classify each transaction, build position memos that document our reasoning, and assemble a packet your CPA can rely on. We do not use any of your data to influence another user's classification — cross-user learning is forbidden by product policy and enforced in code.
We do not collect, request, or store any tax identification numbers (TIN, EIN, or SSN). Your CPA handles the filing; we hand off the paper trail.
Bank and inbox connections
Bank connectivity is read-only and powered by Plaid. We never receive your bank password and we cannot move money. Gmail connectivity uses OAuth scopes you can revoke at any time. Free accounts read sender and subject metadata only; full-message access is opt-in and Pro-only.
Google API Services User Data Policy
Infer.tax's use and transfer of Google user data adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Data accessed via the gmail.readonly scope is used only to identify and extract receipt information for the signed-in user's own tax records.
- Infer.tax does NOT transfer Google user data to others except as needed to provide the feature, comply with applicable law, or as part of a merger, acquisition, or sale of assets with continued privacy protection.
- Infer.tax does NOT use Google user data for serving advertisements, including retargeting or personalized or interest-based ads.
- Infer.tax does NOT allow humans to read Google user data unless we have explicit consent for a specific message, it is necessary for security purposes, to comply with applicable law, or for internal operations where the data has been aggregated and anonymized.
- Infer.tax does NOT use Google user data to train, retrain, or improve generalized or non-personalized AI/ML models.
Free accounts read sender and subject metadata only: no messages.get with format==full or format==raw. That boundary is enforced in convex/gmail.ts and by the gmail-no-body-fetch-on-free ESLint rule. Pro accounts may opt in to body and attachment access for receipt extraction.
SMS messaging and mobile opt-in privacy
Infer.tax Pro subscribers may choose to receive recurring SMS messages from Infer.tax at the mobile number they provide. Messages include tax-classification and bookkeeping review prompts. Message frequency is up to 3 messages/week. Msg & data rates may apply. Reply STOP to opt out and HELP for help. Consent to receive SMS messages is not required to purchase or use Infer.tax.
Truscape does not share or sell mobile numbers, mobile opt-in data, or SMS consent records with third parties or affiliates for marketing or promotional purposes. We use and disclose mobile information only as needed to deliver Infer.tax SMS messages, operate the service, honor STOP/HELP requests, maintain compliance records, prevent abuse, or comply with law.
AI providers and data handling
Classification, position-memo composition, SMS reply parsing, and chat may use OpenAI, Anthropic, or Google's paid Gemini API. We select the provider by task and send only the data needed for that task. Paid API inputs and outputs are not used by these providers to train or improve their general models under the applicable service terms.
For Gemini transaction classification, Google project logging is disabled and any explicitly enabled project logs use a seven-day retention window. Google may separately process prompts and responses for a limited period to detect abuse and may process that data where Google or its subprocessors operate. Truscape has accepted this limited processing under Google's paid-service data-processing terms. We do not enable Gemini conversation storage, grounding, file storage, or explicit context caching for transaction classification.
Prompts include only what the task needs, such as a minimized and scrubbed transaction line and a short context window. We do not send credentials, account or routing numbers, tax identification numbers, raw inbox bodies, or aggregate ledgers to the transaction classifier.
How long we keep your data
Pro accounts retain ledger and memo history for the duration of your subscription plus a 7-year audit-defense window after the last filed tax year. You can export or delete on demand.
Free accounts that are inactive for 24 consecutive months are archived and then deleted. We will email you twice before any deletion.
Deletion and access
You can delete your account at any time from Settings, or by writing to privacy@infer.tax. Deletion removes your transactions, memos, packets, and connection tokens within 30 days. Operational backups are purged on a 90-day rolling window.
GDPR (EU residents)
If you reside in the European Economic Area or the United Kingdom, you have rights of access, rectification, erasure, portability, restriction, and objection. Contact privacy@infer.tax to exercise any of these. We respond within 30 days.
CCPA (California residents)
We do not sell or share your personal information for cross-context behavioral advertising. Use the link below to confirm or to file a deletion request:
Children
Infer.tax is not intended for anyone under 18. We do not knowingly collect data from minors.
Changes to this policy
We will email registered users when material changes are made. The "last updated" date above always reflects the current version.