Effective Date: February 24, 2026 · Last Updated: February 24, 2026
The Short Version

Your bills stay on your phone. When we analyze a bill, the image is sent encrypted to our AI service, which doesn't train on it and deletes it within 30 days. We don't have user accounts, cloud storage, or any persistent copy of your data. We don't sell, share, or monetize your data. Period.

1. What Information We Collect

Information you provide directly

Data TypeWhenWhere Stored
Bill images (photos or screenshots of medical bills)When you scan a billOn your device only
Analysis results (findings, line items, dispute letters)After AI analysis completesOn your device only
User-entered savings amountsWhen you manually log savingsOn your device only

Information collected automatically

Data TypePurposeDuration
Crash logs & diagnosticsApp stability & bug fixing90 days
Anonymous usage analytics (screens visited, features used — no bill content)Improving the app experience12 months

Information we do NOT collect

2. How We Use Your Information

Bill images are used for one purpose: AI-powered analysis to identify potential billing errors. Specifically:

We do not use your bill images, analysis results, or any personal data for advertising, marketing, profiling, or sale to third parties.

3. AI Processing & Third-Party Services

How Analysis Works

When you scan a bill, the image is sent over an encrypted (TLS 1.2+) connection to Anthropic's Claude API for analysis. Here is exactly what happens:

For current information about Anthropic's data handling practices, see Anthropic's Usage Policy.

4. Data Storage & Security

On-device storage

All bill images, analysis results, dispute letters, and savings data are stored exclusively on your device using the operating system's local storage mechanisms. This data is protected by your device's security (passcode, biometric lock, device encryption).

What happens when you uninstall

Uninstalling Billscope permanently deletes all locally stored data, including bill images, analysis history, and dispute letters. Because we do not maintain cloud backups, this deletion is irreversible.

Security measures

5. Who We Share Data With

We share your data with exactly one third party for one purpose:

ProviderData SharedPurposeRetention
Anthropic (Claude API)Bill images during analysisAI-powered bill analysisUp to 30 days, then auto-deleted
Apple (RevenueCat/App Store)Purchase receiptsSubscription managementPer Apple's privacy policy

We do not sell, rent, or share your data with advertisers, data brokers, analytics companies, or any other third parties.

6. HIPAA, PHI & Healthcare Data

Important: Billscope and HIPAA

Billscope is a consumer educational tool. We are not a HIPAA-covered entity (we are not a healthcare provider, health plan, or healthcare clearinghouse) and we are not a business associate of any covered entity.

What this means for you:

If you require HIPAA-covered billing review services, please consult a certified medical billing advocate or your healthcare provider's patient advocate.

FTC Health Breach Notification Rule

As a consumer health tool, Billscope is subject to the FTC Health Breach Notification Rule. In the unlikely event of a data breach involving your health information, we will notify affected users and the FTC in accordance with applicable requirements.

7. Your Rights

Because your data is stored on your device, you have direct control over it:

8. State-Specific Provisions

California (CCPA/CPRA)

California residents have additional rights under the California Consumer Privacy Act as amended by the California Privacy Rights Act. We do not sell personal information, we do not share personal information for cross-context behavioral advertising, and we do not use sensitive personal information for purposes beyond what is needed to provide the service. California residents may exercise their rights by contacting us at privacy@billscope.ai.

Washington (My Health My Data Act)

Washington residents have rights under the My Health My Data Act regarding consumer health data. We collect health data (medical bill contents) only with your consent (granted at first scan), use it only for bill analysis, do not sell it, and delete it when you uninstall the app. Washington residents may exercise their rights by contacting us at the address below.

Other States

We comply with applicable privacy laws in all U.S. states. If your state provides additional privacy rights, contact us and we will honor them.

9. Children's Privacy

Billscope is not intended for use by children under 18. We do not knowingly collect information from children. If you believe a child has used Billscope, contact us and we will assist with any concerns.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated through an in-app notice. The "Last Updated" date at the top of this page will always reflect the most recent version.

11. Contact Us

For privacy questions, data requests, or concerns:

Email: privacy@billscope.ai
General inquiries: privacy@billscope.ai

We aim to respond to all privacy inquiries within 30 days.