Last updated: September 1, 2026
Manila Privacy Policy
This app's policy sits under the FCT Technologies privacy policy, which covers the FCT account and the systems every app shares.
This Privacy Policy explains how Manila handles information when you use the app.
Overview
Manila turns household paperwork (receipts, warranties, insurance policies, vehicle registrations, identification, manuals and bills) into a structured, searchable record that Siri can answer questions about.
Manila requires an FCT account. Your documents are stored on your device and in your own private space on servers FCT Technologies LLC operates, so they follow you to every device you sign in on. We are telling you this plainly because it is the part that matters: Manila is not a device-only app, and the documents it holds are among the most sensitive things you own.
Reading happens on your device. Storage does not. Apple’s text recognition reads a page on the device and on-device foundation models classify it and pull out its fields. What that reading produces, and the document it read, are then stored in your account.
What Manila stores in your account
When you are signed in, the following sync to your own private, access-controlled space and are scoped to your account:
- Your documents: the original file or photo you scanned, each page image, and the text recognised from them.
- The facts extracted from each document, with the verbatim snippet each one came from and the page it is on.
- The typed facet for each document, receipt, warranty, insurance policy, registration, identification, manual, bill, or record, and its fields.
- The assets and people a document is connected to.
- Obligations: the renewals and expiries Manila derives from your documents.
Access is enforced per account at the database level. FCT Technologies LLC does not sell your data, does not share it with advertisers, and does not use it to train models.
What stays on your device only
- Your app settings and appearance choices.
- The deadline schedule Manila derives from your documents, and the notifications themselves, which are local to your device.
- The Spotlight index that lets you and Siri find a document on that device.
- The record of each extraction run, kept so the pipeline is auditable rather than a black box.
Deep Scan and Private Cloud Compute
Everyday extraction is text-only and runs entirely on your device. A long or image-heavy document can be sent for a deeper read using Deep Scan, which uses Apple’s Private Cloud Compute: Apple’s own private infrastructure, which Apple states does not store requests. It is never a third-party AI service, ours or anyone else’s, and it is never on by default: Deep Scan is a choice you make per document.
A fact with no evidence never files itself
Every fact Manila extracts carries the verbatim snippet it came from, and its confidence is computed from whether that value can actually be located in the page’s recognised text, not from a model’s own report about itself. A fact with no located evidence cannot auto-accept; it comes to you as a card to confirm or reject. This is why a Siri answer can cite its source, and why Manila will show you a blank rather than state a renewal date your document does not contain.
Analytics and tracking
Manila contains no third-party analytics SDK, no advertising identifiers, no behavioral profiling, and no cross-app tracking. Nothing about you is shared with another company.
Manila does report anonymous diagnostics to FCT: crash and performance data, a short trail of screen and action names (never content) leading up to a problem, feature-use counts, and timing measurements such as how long setup took. Screen and action names are fixed values built into the app, so nothing you type, view, or store can appear in them.
Diagnostics are keyed to a random install identifier created on first launch. They are not linked to your account or identity, the diagnostics system has no connection to account data by construction, and reinstalling the app starts a new identifier. We use diagnostics to fix crashes and improve the app, and for nothing else.
Deleting your account erases everything in it (see Deleting your data), but not these: nothing marks which diagnostics are yours, so none can be singled out, not by us, and not on request. They expire on a fixed schedule instead: 180 days for usage metrics and counters, 400 days for crash diagnostics, enforced by a daily job.
Permissions
Each is requested at the moment it becomes useful, never at launch, and each is optional: Manila works without any of them.
- Camera: to scan paperwork. Each scan is read on your device, then kept in your account so your other devices have it.
- Photo library: to import existing photos of documents.
- Calendar (write only): used only when you tap Add to Calendar and confirm the event. Manila asks for write-only access and has no ability to read what is already in your calendar.
- Notifications: to warn you before a renewal or expiry lapses. Reminders are local notifications and are never sent anywhere.
Deleting your data
Manila gives you two separate, clearly labelled options in Settings:
- Delete Manila’s data: erases everything Manila holds, documents and page images alike, on our servers and on your devices, and leaves your FCT account and any other FCT apps intact.
- Delete your account: erases your FCT account and all of its data everywhere, across every FCT app.
Signing out clears Manila’s copy from that device; your account keeps it, and signing back in restores it. The clear runs only once everything on that device has finished syncing, so signing out can never lose a document.
Children
Manila is a general-audience household utility. It collects no personal information beyond the documents you scan yourself, has no user-to-user content, and has no sharing surface.
Not legal or financial advice
Manila records, extracts and reminds. It does not interpret a policy, advise on coverage, or tell you what a document obliges you to do. Read the document, and ask the party who issued it.
Security
We use reasonable technical and organizational measures designed to protect information. No system is perfectly secure.
If a breach happens, this is what we do. Where a personal-data breach is likely to result in a risk to your rights and freedoms, we notify the relevant supervisory authority within 72 hours of becoming aware of it. Where the risk to you is high, we notify you without undue delay, describing what happened, what data was involved, what we are doing about it, and what you can do. We keep a record of every breach and its handling whether or not it is notifiable.
We hold the whole app fleet to this single deadline deliberately: it is the strictest one that applies to us, so meeting it satisfies the others rather than requiring separate timetables to be tracked and one of them to be missed.
International users
FCT Technologies LLC is based in the United States. If you use Manila outside the United States, your information may be processed in the United States or in other locations where our service providers operate.
Contact
Questions about this policy:
FCT Technologies LLC
[email protected], and we respond within 5 business days