Tiny Track Privacy Policy
Effective date: September 25, 2026
Last updated: September 25, 2026
Delete your account and data →
1. Who we are and what Tiny Track is
Tiny Track is a point-of-sale and inventory app for small retail shops. It is published by Parallel
Vision Software Solutions ("we", "us"). The app is available on Android under the application ID
com.pv.tiny_track and on iOS under the bundle ID
com.pv.tinyTrack. There is no web version of Tiny Track.
In Tiny Track, shop staff record orders, print receipts on a Bluetooth thermal printer, track stock, and review sales reports. Each user has an access level — super admin, admin, inventory analyst, sales associate, or viewer — which controls which parts of the app they can use.
This policy explains what the app collects, why, where it is stored, and how to get it deleted. It is not legal advice.
2. Information we collect
Information you provide about yourself
When you create an account we collect:
- Your email address and password. The password is handled by Firebase Authentication — the app never stores it.
- Your first name, middle name and last name.
- Your access level and an internal user code.
- The date your account was created.
Orders
When you place an order we store the items sold (name, quantity, price and any discount), the order date, the payment mode (cash, GCash, Maya, bank transfer, or credit/debit card), any remarks you type, and the name and user ID of the staff member who created it. Tiny Track records only the payment mode. It does not process payments and never collects card numbers or e-wallet account details.
Orders do not ask for your customers' names or contact details. If you type personal information about a customer into the remarks field, you are responsible for having a lawful basis to record it.
Inventory and photos
When you add an inventory item we store its photo, code, size, price, quantity and low-stock threshold. Inventory is kept in a database on your device. If you use the backup feature in Settings, that database file is uploaded to Firebase Cloud Storage so you can restore it later.
AI item descriptions
When you pick a photo for an inventory item, the app sends that photo to Google's Gemini model through Firebase AI Logic to suggest a short product description. Only the item photo is sent — not your account details, orders or other inventory. You can edit or discard the suggestion.
Device and notification data
To send you notifications, the app stores a Firebase Cloud Messaging token for your device on your user record.
Information collected automatically by Google's SDKs
Tiny Track bundles the Firebase Analytics, Crashlytics, Cloud Messaging, App Check and Cloud Functions SDKs. Through these, Google may collect app usage data, device data, and crash diagnostics. We do not run our own analytics, we do not include any advertising SDK, and the app does not use your device's advertising ID.
3. How we use the information
- To create and sign you into your account.
- To record orders, deduct sold quantities from inventory, and print receipts.
- To show sales reports (revenue, top items and top staff) and let you export them to Excel or PDF.
- To control what each user can see and do based on their access level.
- To suggest product descriptions from item photos.
- To back up and restore your inventory database.
- To send notifications, and to show update-required or maintenance notices.
- To diagnose crashes and fix problems in the app.
4. Device permissions and why we ask
- Camera — to take photos of inventory items.
- Photos and media — to let you pick existing photos from your device.
- Bluetooth — to find and connect to thermal receipt printers. It is not used to track you or other devices.
- Notifications — to show alerts from the app.
- Storage — on older Android versions, to save exported Excel and PDF reports to your device.
- Internet — required for the app to reach Firebase.
Tiny Track does not request location permission and does not collect your precise device location. You can revoke any permission in your device settings; the features that depend on it will stop working.
5. How data is stored and who can see it
Tiny Track runs on Google Firebase — Authentication, Cloud Firestore and Cloud Storage. Account and order data are stored on Google's servers, not on our own infrastructure. Google processes it on our instructions as our service provider. Inventory is stored on your device, and in Cloud Storage only if you make a backup.
Inside the app, what you can see depends on your access level. Staff of the same shop can see the orders, inventory and reports their access level allows, including the name of the staff member who created each order.
6. Data sharing and disclosure
We do not sell or rent personal data. We do not share it with advertisers or data brokers.
We share data only:
- With Google, as the provider hosting the app's backend and the Gemini model that generates item descriptions. See Google's Privacy Policy and the Firebase Data Processing Terms.
- With other staff of your shop, according to their access level.
- Where the law requires it, such as a valid legal order.
7. Data retention
We keep your account data for as long as your account exists. Orders stay until they are cancelled or deleted, or until the account is deleted. Inventory on your device stays until you delete it or uninstall the app; backups in Cloud Storage stay until the account is deleted.
When you ask us to delete your account, we delete it within 30 days (see below). Copies may remain in Google's routine backups for [TODO: backup retention window] after that, after which they are overwritten.
8. Your rights
Whoever and wherever you are, you can ask us to give you a copy of your data, correct it, delete it, export it, or withdraw consent you previously gave. Email hello@parallelvisionsolutions.com and we will respond within 30 days.
Philippines
We handle personal information under the Data Privacy Act of 2012 (RA 10173). You have the rights to be informed, to access, to object, to erasure or blocking, to damages, to data portability, and to correct your information. You may also complain to the National Privacy Commission.
EU and EEA users (GDPR)
Parallel Vision Software Solutions is the controller for the data described here. Our legal bases:
- Contract — account, order and inventory data, which we need to provide the app you signed up for.
- Consent — camera, photo library, Bluetooth and notification access, which you grant on your device and can revoke at any time.
- Legitimate interests — crash diagnostics and app usage data, to keep the app working.
You have the rights of access, rectification, erasure, restriction, portability and objection, and you may lodge a complaint with your local supervisory authority.
California users (CCPA/CPRA)
You have the right to know what personal information we collect and how we use it, the right to have it deleted, the right to correct it, and the right to opt out of its sale or sharing. We do not sell or share personal information, so there is nothing to opt out of. We will not discriminate against you for exercising any of these rights.
9. Account and data deletion
To delete your Tiny Track account and the data attached to it:
- Email hello@parallelvisionsolutions.com from the email address registered to your account.
- Use the subject line "Delete my Tiny Track account".
- We reply to confirm the request and verify that you own the account.
- We delete the account and its data within 30 days of that confirmation.
What is deleted: your Firebase Authentication login, your user record and notification token, and any inventory backups and uploaded images that belong to your account.
What may remain: orders are sales records of the shop, not of the individual staff member, so orders you created stay with the shop, though your name is removed from them. Ask the shop's admin if you want those records deleted too. Inventory stored on your device is removed when you uninstall the app.
Deletion is permanent. We cannot restore an account once it has been deleted.
10. Children's privacy
Tiny Track is not directed to children under 13, and we do not knowingly collect data from them. If you believe a child has created an account, email us and we will delete it.
11. Security
Traffic between the app and Firebase travels over HTTPS. Access to stored data is restricted by Firebase security rules, which check who is signed in and what access level they hold, and Firebase App Check helps block requests that do not come from the genuine app. Passwords are handled by Firebase Authentication and are never stored by the app.
No system is perfectly secure. We cannot guarantee that data will never be accessed without authorisation, and you share your account credentials at your own risk.
12. International data transfers
Firebase stores data on Google's servers, which may be located outside your country, including in the United States. Google's transfer safeguards are described in the Firebase Data Processing Terms.
13. Changes to this policy
We may update this policy. When we do, we change the "last updated" date at the top of this page. If a change materially affects how we handle your data, we will give notice in the app before it takes effect.
14. Contact us
Parallel Vision Software Solutions
Email: hello@parallelvisionsolutions.com
Postal address: [TODO: registered postal address]
Data Protection Officer: [TODO: DPO name and email, or delete this line]
This policy is governed by the laws of the Republic of the Philippines.