Canopy

Privacy

Canopy's privacy policy, in plain English: what Canopy collects, why, where it goes and how to delete it. Last updated 7 October 2026.

On your phone by default

Trips, location, motion, Health workouts, scans and your footprint are stored on your phone. They leave it only if you join a league or share something, and then only what that feature needs. Precise location never leaves your phone.

Where your data is stored

For everyone, in every country, anything that reaches our server is processed and stored in the UK, on Google Cloud in London (europe-west2). If you live in the US or India, that means your data is transferred to the UK.

Sign-in is optional. It uses Firebase Authentication, a global Google service that is not limited to London. It holds your sign-in details (such as your email address and Apple or Google ID) and nothing else from Canopy.

Receipts (UK only for now)

Reading receipts is optional and only happens if you ask for it. If you connect Gmail (read-only), Canopy searches for likely receipts on your phone and shows you the matches; nothing is sent until you pick which emails to read. You can also forward receipts to a private Canopy address instead.

By default Gmail stays connected only while the app is open. If you turn on "Keep Gmail connected" (it is off unless you do), a Google sign-in key is kept in your phone's keychain (never on our server) so Canopy can look for new receipts when you open it, at most every 6 hours. "Ask me first" (the default) shows them for you to pick; "Read automatically" reads them with the same redaction. Only Gmail message ids are kept, so an email is never read twice. Disconnect Gmail or Delete all my data revokes the key with Google and deletes it.

What is sent, and to whom

Google user data (Gmail)

Canopy's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

This section covers the only Google user data Canopy uses: Gmail, if you choose "Connect Gmail" on the Food or Shopping screen. Connecting Gmail is optional, available in the UK only for now, and Canopy works fully without it. Signing in with Google (optional) gives Canopy your sign-in details only, never Gmail; that is covered under Where your data is stored.

Services we use

Google Cloud in London (our server; Vertex AI Gemini for reading the receipts you choose), Firebase Authentication (optional sign-in; global), RevenueCat with Apple and Google (only if you buy Canopy+; we never see card details), Sentry (anonymous crash reports, which you can turn off in Settings) and Open Food Facts (barcode lookups).

Your control

Settings lets you export all your data or delete all of it in one tap, including anything on our server.

United Kingdom

United States

India

Contact

founder@ed-any.com · Back to Canopy