Last updated: 1 May 2026
Plain-English summaryLedger collects only what we need to do bookkeeping for your business. We host your data in Singapore. We send receipt images to Google Gemini in the United States so the AI can read them — by uploading a receipt you agree to that. We keep your accounting records for 5 years (as Singapore law requires) even if you close your account, after which we delete them.
Operator: Code&Canvas Pte Ltd (Singapore)
Service: ledger.codeandcraft.ai
Data Protection Officer (DPO): dpo@codeandcraft.ai
Security disclosure: security@codeandcraft.ai
Support: hello@codeandcraft.ai
This Privacy Policy applies to anyone who creates an account on Ledger or uses the service through their employer's account. It is written to comply with Singapore's Personal Data Protection Act 2012 (PDPA). If you are a tenant administrator using Ledger to process your own customers' data, your organisation is the data controller and you must give those individuals an appropriate privacy notice; we act as your data intermediary.
Important cross-border transfer. When you upload a receipt, we send the image and a small amount of context (your existing categories and projects, so the AI can match) to Google Gemini API operated by Google LLC in the United States. Google processes the image, returns extracted fields, and per Google's API terms does not use it to train models or share it with other parties.
This is a transfer of personal data outside Singapore. We rely on Google's adherence to industry-standard contractual safeguards (including Standard Contractual Clauses) for that transfer. By uploading a receipt to Ledger, you consent to this transfer. If you do not consent, do not upload the receipt; Ledger's OCR features will be unavailable to you, but you can still enter transactions manually.
The structured output (extracted vendor, date, amount, GST, category) is stored in your Singapore-hosted tenant. We do not retain raw Gemini API requests or responses beyond the one-shot processing window.
Each processor is bound by its own contractual safeguards for the cross-border transfer. We will publish a Data Processing Agreement (DPA) for B2B customers on request to dpo@codeandcraft.ai.
Singapore law (Companies Act, Income Tax Act, GST Act) requires accounting records to be kept for 5 years from the end of the relevant financial year. While your account is active, we retain your data until you delete it. After you close your account:
You have the right to:
To exercise any of these rights, email dpo@codeandcraft.ai. We respond within 30 days.
Found a vulnerability? Please report it to security@codeandcraft.ai — we acknowledge within 72 hours.
If a data breach causing significant harm or affecting 500 or more individuals occurs, we will notify the PDPC and affected users within 72 hours of becoming aware of the breach, as required by PDPA.
We may update this policy. Material changes will be announced by email at least 14 days before they take effect. The current version is always at /docs/privacy_policy with the "last updated" date at the top.
Code&Canvas Pte Ltd, Singapore. Governing law: Singapore. Disputes are subject to the exclusive jurisdiction of the Singapore courts.
DPO: dpo@codeandcraft.ai · Security: security@codeandcraft.ai · Support: hello@codeandcraft.ai
This document is a first draft for compliance posture. Review by a Singapore-qualified solicitor is recommended before relying on it in a contractual dispute.