Informativa sulla privacy
Splittomate · ultimo aggiornamento: 3 settembre 2026
Questa informativa spiega quali dati personali trattiamo quando usi l'app Splittomate e il
sito splittomate.com, perché li trattiamo e che diritti hai. È scritta per essere letta, non
per essere archiviata: se qualcosa non ti è chiaro, scrivici.
1. Chi tratta i tuoi dati
Titolare del trattamento: Qubator Srl, Via delle Magliaie 39, 41012 Carpi
(MO), Italia — [email protected].
P.IVA/C.F. 03994550360 — REA MO-434442 — Capitale sociale € 30.000 i.v.
Splittomate è un'app per dividere le spese tra amici, coinquilini, coppie e gruppi di
viaggio: registra chi ha pagato che cosa e calcola chi deve dare quanto a chi.
2. Quali dati raccogliamo
Dati che ci dai quando ti registri
- il tuo indirizzo email e una password (che non
conserviamo in chiaro: sul server resta solo la sua impronta cifrata);
- il tuo username e il nome che scegli di mostrare agli
altri;
- se accedi con Google: l'identificativo del tuo account Google, il tuo
indirizzo email già verificato da Google, il nome e la foto del profilo. La
foto viene copiata sui nostri server e mostrata al posto delle tue iniziali negli avatar
dell'app.
Dati che inserisci usando l'app
- i gruppi che crei o a cui partecipi;
- le spese: importo, descrizione, data, categoria, note, chi ha pagato e
come è divisa; i pagamenti che registri fra di voi e i
prestiti;
- le liste della spesa condivise;
- i contatti che aggiungi: il nome o il soprannome che scrivi tu e, se
mandi un invito, l'indirizzo email a cui lo mandi;
- la foto di copertina di un gruppo, se ne carichi una al posto
dell'immagine di categoria.
Dati tecnici
- un identificativo del dispositivo per le notifiche (token di Firebase
Cloud Messaging), che serve a far arrivare le notifiche push al telefono giusto;
- le tue preferenze: lingua, tema, valuta, formato della data;
- log del server: indirizzo IP, data e ora, richiesta ed esito. Servono a
far funzionare il servizio in sicurezza e a capire i malfunzionamenti; vengono cancellati
automaticamente dopo 14 giorni;
- statistiche di scaricamento dal sito: dell'indirizzo IP non conserviamo
il valore, ma soltanto un'impronta calcolata con una chiave segreta. Ci basta a contare quanti
scaricamenti distinti ci sono stati e non permette di risalire alla persona.
- statistiche di visita del sito: quale pagina è stata aperta, quando, il
paese (ce lo comunica il nostro fornitore di rete), la lingua impostata nel browser, il tipo
di dispositivo e la pagina da cui si arriva. In più, dalle pagine del sito: se hai
cliccato il bottone per scaricare l'app, per quanto tempo la pagina è rimasta
davanti a te e fin dove l'hai scorsa — ci servono a capire se il sito spiega bene quello che
deve spiegare. Non usiamo cookie, non salviamo niente sul tuo dispositivo,
non c'è nessun servizio esterno e i dati arrivano solo ai nostri server. Anche qui l'indirizzo IP non viene conservato, ma soltanto un'impronta calcolata con
una chiave segreta e con la data del giorno: cambia ogni notte, quindi ci
permette di contare quante persone diverse hanno visitato il sito in una giornata, ma non di
riconoscere la stessa persona il giorno dopo.
Cosa non facciamo
Niente pubblicità e nessun identificativo pubblicitario. Nessun sistema di analytics di
terzi (né Google Analytics né altri), nessun cookie di tracciamento, nessuna profilazione,
nessuna decisione automatizzata sul tuo conto. Le statistiche di visita del sito le calcoliamo
solo noi, dai log del nostro server, in forma aggregata e senza conservare il tuo indirizzo
IP. Non vendiamo né cediamo i tuoi dati a terzi per finalità commerciali. Non leggiamo la
rubrica del telefono e non usiamo la posizione.
3. Perché li trattiamo, e con quale base giuridica
| Finalità | Base giuridica (GDPR) |
| Creare e gestire il tuo account; far funzionare gruppi, spese, saldi e liste; tenere
sincronizzati i tuoi dispositivi anche quando sei offline |
Esecuzione del contratto — art. 6.1.b |
| Mandarti le email di servizio: conferma dell'indirizzo, recupero della password,
conferma scritta dell'avvenuta cancellazione dell'account |
Esecuzione del contratto — art. 6.1.b |
| Mandarti le notifiche push (una spesa aggiunta, un invito, un pagamento) |
Il tuo consenso — art. 6.1.a. Lo dai concedendo il permesso di sistema e puoi revocarlo
quando vuoi dalle impostazioni del telefono o dell'app |
| Sicurezza del servizio, prevenzione degli abusi, diagnosi dei guasti |
Legittimo interesse — art. 6.1.f |
| Adempiere a obblighi previsti dalla legge |
Obbligo legale — art. 6.1.c |
4. Chi vede i tuoi dati
Le persone con cui dividi le spese
Splittomate è un'app condivisa: per fare il suo lavoro deve mostrare parte dei tuoi dati agli
altri.
- i membri di un gruppo vedono il nome che mostri, il tuo username, la tua
foto profilo se ne hai una, e tutte le spese, quote e saldi di quel gruppo;
- se attivi il link di sola lettura di un gruppo, chi ha il link e la
password di sei cifre può vedere spese e saldi di quel gruppo pur non essendo registrato. Il
link si può disattivare, e la password si può cambiare, in qualsiasi momento dalle
impostazioni del gruppo;
- i contatti che aggiungi scrivendo un nome sono visibili solo a te; se
mandi un invito, l'indirizzo email che scrivi viene usato per spedirlo.
I fornitori che lavorano per noi
Sono responsabili del trattamento: trattano i dati per conto nostro, su nostre istruzioni, e
non li usano per finalità proprie.
- InterServer, Inc. — Secaucus, New Jersey (Stati Uniti): il fornitore
del server su cui girano il database, i servizi dell'app e il sito splittomate.com, e del
servizio di posta da cui partono le nostre email;
- Cloudflare, Inc. (Stati Uniti): la rete attraverso cui il sito e il
server sono raggiungibili, e la protezione da attacchi;
- Google Ireland Ltd / Google LLC: Firebase Cloud Messaging per le
notifiche push; Google Sign-In se scegli di accedere con Google; Google Play se scarichi
l'app dallo store.
Trasferimenti fuori dall'Unione Europea
I nostri server si trovano negli Stati Uniti. Il trasferimento avviene sulla
base delle clausole contrattuali standard approvate dalla Commissione europea
(art. 46 GDPR), integrate dalle misure tecniche descritte al punto 7.
5. Per quanto tempo li conserviamo
- Finché hai un account attivo.
- Se cancelli l'account — dall'app, in Profilo → Elimina account, oppure
dalla pagina splittomate.com/delete — il tuo
profilo, il tuo indirizzo email, la tua foto e le tue preferenze vengono cancellati e il tuo
accesso viene rimosso. Ti mandiamo un'email che te lo conferma per iscritto.
- Per gli altri membri dei gruppi resti come un segnaposto con il solo nome
che già vedevano: le spese condivise devono continuare a tornare nei loro conti, quindi quei
movimenti (importi, descrizioni, quote) restano nei gruppi a cui appartengono. Non
conserviamo nulla che permetta di ricollegare quel segnaposto a un tuo eventuale nuovo
account.
- Copie di sicurezza: ogni notte facciamo un backup, conservato
14 giorni e poi cancellato automaticamente. Nei 14 giorni successivi alla
cancellazione i tuoi dati possono quindi essere ancora presenti in un backup.
- Log del server: i log di accesso al sito e all'API sono conservati
14 giorni (rotazione giornaliera) e poi cancellati automaticamente. I log
tecnici dei singoli servizi interni sono limitati per dimensione e si azzerano quando il
servizio viene aggiornato.
6. I tuoi diritti
Puoi chiederci in qualsiasi momento l'accesso ai tuoi dati, la loro
rettifica o cancellazione, la limitazione del
trattamento, la portabilità in un formato leggibile, e puoi
opporti a un trattamento basato sul legittimo interesse. Puoi anche revocare in
ogni momento il consenso alle notifiche.
La cancellazione puoi farla da solo e subito, dall'app o dalla pagina
/delete/. Per tutto il resto scrivi a
[email protected]: rispondiamo entro un mese.
Se ritieni che trattiamo i tuoi dati in modo scorretto puoi rivolgerti al
Garante per la protezione dei dati personali
(garanteprivacy.it) o all'autorità del Paese in cui
vivi.
7. Come li proteggiamo
- tutto il traffico fra app, sito e server è cifrato (HTTPS/TLS);
- le password non sono conservate in chiaro;
- il database applica regole di accesso riga per riga: ogni utente può leggere soltanto i
dati dei gruppi di cui fa parte, e questo vale anche se qualcuno provasse a interrogare il
server direttamente;
- le foto di copertina dei gruppi stanno in un archivio privato, raggiungibile solo dai
membri del gruppo;
- il server non espone porte web pubbliche: passa attraverso un tunnel protetto.
8. Minori
Splittomate non è destinata a minori di 18 anni e non raccogliamo consapevolmente dati di
minori. Se ci accorgiamo di un account intestato a un minore lo cancelliamo.
9. Cookie
Il sito non usa cookie di profilazione né strumenti di analytics. Salva nel
browser (localStorage) soltanto la lingua che hai scelto e, per i link di sola lettura dei
gruppi, la password che hai già inserito, per non richiedertela ogni volta.
10. Modifiche a questa informativa
Se la cambiamo aggiorniamo la data in cima alla pagina; se le modifiche sono importanti, te
lo segnaliamo nell'app.
Privacy Policy
Splittomate · last updated: 3 September 2026
This policy explains which personal data we process when you use the Splittomate app and the
splittomate.com website, why we process it, and what rights you have. The Italian version above
is the reference text; this is a translation for convenience.
1. Who processes your data
Data controller: Qubator Srl, Via delle Magliaie 39, 41012 Carpi (MO), Italy
— [email protected].
VAT/Tax code 03994550360 — REA MO-434442 — Share capital € 30,000 fully paid up
Splittomate is an app for splitting expenses between friends, flatmates, couples and travel
groups: it records who paid for what and works out who owes what to whom.
2. What data we collect
Data you give us when you sign up
- your email address and a password (never stored in
clear: the server only keeps its cryptographic hash);
- your username and the display name you choose;
- if you sign in with Google: your Google account identifier, your email
address as already verified by Google, your name and your profile picture.
The picture is copied to our servers and shown instead of your initials in the app's
avatars.
Data you enter while using the app
- the groups you create or join;
- expenses: amount, description, date, category, notes, who paid and how it
is split; the payments you record between you and any
loans;
- shared shopping lists;
- the contacts you add: the name or nickname you type and, if you send an
invitation, the email address you send it to;
- a group's cover photo, if you upload one instead of the category
image.
Technical data
- a device notification identifier (Firebase Cloud Messaging token), used
to deliver push notifications to the right phone;
- your preferences: language, theme, currency, date format;
- server logs: IP address, date and time, request and outcome. They keep
the service running safely and help us diagnose faults; they are deleted automatically after
14 days;
- download statistics from the website: we do not keep the IP address
itself, only a fingerprint computed with a secret key. It is enough to count distinct
downloads and cannot be traced back to a person.
- website visit statistics: which page was opened, when, the country (our
network provider tells us), the language set in the browser, the type of device and the page
you came from. In addition, from the pages themselves: whether you
clicked the button to download the app, how long the page stayed in front of
you and how far you scrolled it — these tell us whether the site explains what it should.
We use no cookies, we store nothing on your device, no external service is
involved and the data only ever reaches our own servers. Here too the IP address
is not kept, only a fingerprint computed with a secret key and with the day's
date: it changes every night, so it lets us count how many different people visited
the site on a given day, but not recognise the same person the next day.
What we do not do
No advertising and no advertising identifier. No third-party analytics (neither Google
Analytics nor any other), no tracking cookies, no profiling, no automated decisions about you.
Website visit statistics are computed by us alone, from our own server logs, in aggregate form
and without keeping your IP address. We do not sell or share your data with third parties for
commercial purposes. We do not read your phone's address book and we do not use your
location.
3. Why we process it, and on which legal basis
| Purpose | Legal basis (GDPR) |
| Creating and running your account; making groups, expenses, balances and lists work;
keeping your devices in sync even while offline |
Performance of a contract — Art. 6(1)(b) |
| Sending service emails: address confirmation, password recovery, written confirmation
that your account has been deleted |
Performance of a contract — Art. 6(1)(b) |
| Sending you push notifications (an expense added, an invitation, a payment) |
Your consent — Art. 6(1)(a). You give it by granting the system permission and can
withdraw it at any time in your phone or app settings |
| Service security, abuse prevention, fault diagnosis |
Legitimate interest — Art. 6(1)(f) |
| Complying with legal obligations |
Legal obligation — Art. 6(1)(c) |
4. Who sees your data
The people you split expenses with
Splittomate is a shared app: to do its job it has to show some of your data to others.
- group members see your display name, your username, your profile picture
if you have one, and every expense, share and balance in that group;
- if you enable a group's read-only link, whoever has the link and the
six-digit password can see that group's expenses and balances without being registered. The
link can be switched off, and the password changed, at any time in the group settings;
- contacts you add by typing a name are visible only to you; if you send an
invitation, the email address you type is used to send it.
The providers that work for us
They act as processors: they handle data on our behalf, on our instructions, and never for
their own purposes.
- InterServer, Inc. — Secaucus, New Jersey (USA): the provider of the
server running the database, the app's services and the splittomate.com website, and of the
mail service our emails are sent from;
- Cloudflare, Inc. (USA): the network through which the website and the
server are reachable, and protection against attacks;
- Google Ireland Ltd / Google LLC: Firebase Cloud Messaging for push
notifications; Google Sign-In if you choose to sign in with Google; Google Play if you
download the app from the store.
Transfers outside the European Union
Our servers are in the United States. The transfer relies on the
Standard Contractual Clauses approved by the European Commission (Art. 46
GDPR), together with the technical measures described in section 7.
5. How long we keep it
- For as long as your account is active.
- If you delete your account — in the app, under Profile → Delete account,
or from splittomate.com/delete — your profile,
email address, picture and preferences are deleted and your login is removed. We send you an
email confirming it in writing.
- To the other members of your groups you remain as a placeholder bearing
only the name they already saw: shared expenses must keep adding up in their own accounts, so
those entries (amounts, descriptions, shares) stay in the groups they belong to. We keep
nothing that could link that placeholder to a new account of yours.
- Backups: we take a backup every night, kept for 14 days
and then deleted automatically. So for 14 days after deletion your data may still exist in a
backup.
- Server logs: website and API access logs are kept for
14 days (rotated daily) and then deleted automatically. The internal
services' technical logs are capped by size and are cleared when a service is updated.
6. Your rights
At any time you can ask us for access to your data, its
correction or deletion, restriction of
processing, portability in a machine-readable format, and you can
object to processing based on legitimate interest. You can also withdraw your
consent to notifications whenever you like.
Deletion is something you can do yourself, immediately, from the app or the
/delete/ page. For anything else write to
[email protected]: we reply within one month.
If you believe we handle your data improperly you can complain to the Italian
Garante per la protezione dei dati personali
(garanteprivacy.it) or to the authority of the
country you live in.
7. How we protect it
- all traffic between app, website and server is encrypted (HTTPS/TLS);
- passwords are never stored in clear;
- the database enforces row-level access rules: each user can only read the data of the
groups they belong to, and that holds even if someone queried the server directly;
- group cover photos live in a private store, reachable only by that group's members;
- the server exposes no public web ports: it is reached through a protected tunnel.
8. Children
Splittomate is not intended for anyone under 18 and we do not knowingly collect children's
data. If we become aware of an account belonging to a minor, we delete it.
9. Cookies
The website uses no profiling cookies and no analytics tools. It only stores
in your browser (localStorage) the language you picked and, for groups' read-only links, the
password you already entered, so it doesn't ask every time.
10. Changes to this policy
If we change it we update the date at the top of the page; if the changes are significant, we
also flag them in the app.