Privacy
Privacy Policy
Last updated: 2026-05-25
What we collect, and from where
Infer.tax reads transactions from connected bank and credit-card accounts via Plaid, and reads receipts from your inbox via the Gmail API. We use the data to classify each transaction, build position memos that document our reasoning, and assemble a packet your CPA can rely on. We do not use any of your data to influence another user's classification — cross-user learning is forbidden by product policy and enforced in code.
We do not collect, request, or store any tax identification numbers (TIN, EIN, or SSN). Your CPA handles the filing; we hand off the paper trail.
Bank and inbox connections
Bank connectivity is read-only and powered by Plaid. We never receive your bank password and we cannot move money. Gmail connectivity uses OAuth scopes you can revoke at any time. Free accounts read sender and subject metadata only; full-message access is opt-in and Pro-only.
Google API Services User Data Policy
Infer.tax's use and transfer of Google user data adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Data accessed via the gmail.readonly scope is used only to identify and extract receipt information for the signed-in user's own tax records.
- Infer.tax does NOT transfer Google user data to others except as needed to provide the feature, comply with applicable law, or as part of a merger, acquisition, or sale of assets with continued privacy protection.
- Infer.tax does NOT use Google user data for serving advertisements, including retargeting or personalized or interest-based ads.
- Infer.tax does NOT allow humans to read Google user data unless we have explicit consent for a specific message, it is necessary for security purposes, to comply with applicable law, or for internal operations where the data has been aggregated and anonymized.
- Infer.tax does NOT use Google user data to train, retrain, or improve generalized or non-personalized AI/ML models.
Free accounts read sender and subject metadata only: no messages.get with format==full or format==raw. That boundary is enforced in convex/gmail.ts and by the gmail-no-body-fetch-on-free ESLint rule. Pro accounts may opt in to body and attachment access for receipt extraction.
SMS messaging and mobile opt-in privacy
Infer.tax Pro subscribers may choose to receive recurring SMS messages from Infer.tax at the mobile number they provide. Messages include tax-classification and bookkeeping review prompts. Message frequency is up to 3 messages/week. Msg & data rates may apply. Reply STOP to opt out and HELP for help. Consent to receive SMS messages is not required to purchase or use Infer.tax.
We do not share or sell mobile opt-in data, phone numbers, or SMS consent records for marketing. We use and disclose mobile opt-in data and consent only as needed to deliver Infer.tax SMS messages, operate the service, honor STOP/HELP requests, maintain compliance records, prevent abuse, or comply with law.
AI providers and zero retention
Classification, position-memo composition, SMS reply parsing, and chat run through two large-language-model providers: OpenAI (for small-tier work like classification and parsing) and Anthropic (for mid-tier work like memo composition and packet assembly). Both relationships are configured for zero retention — neither provider stores prompts or completions on their side, and neither uses your data to train models.
Prompts include only what the surface needs (the transaction line and a short context window), never raw inbox bodies or aggregate ledgers.
How long we keep your data
Pro accounts retain ledger and memo history for the duration of your subscription plus a 7-year audit-defense window after the last filed tax year. You can export or delete on demand.
Free accounts that are inactive for 24 consecutive months are archived and then deleted. We will email you twice before any deletion.
Deletion and access
You can delete your account at any time from Settings, or by writing to privacy@infer.tax. Deletion removes your transactions, memos, packets, and connection tokens within 30 days. Operational backups are purged on a 90-day rolling window.
GDPR (EU residents)
If you reside in the European Economic Area or the United Kingdom, you have rights of access, rectification, erasure, portability, restriction, and objection. Contact privacy@infer.tax to exercise any of these. We respond within 30 days.
CCPA (California residents)
We do not sell or share your personal information for cross-context behavioral advertising. Use the link below to confirm or to file a deletion request:
Children
Infer.tax is not intended for anyone under 18. We do not knowingly collect data from minors.
Changes to this policy
We will email registered users when material changes are made. The "last updated" date above always reflects the current version.