HGB Solutions Oy Logo

Palautus AI processes your receipts locally on your device using AI. We store essential metadata (vendor, amount, date) and receipt images to provide accurate tax optimization services that stay current with evolving regulations.

Last Updated: July 6, 2025 | Effective: July 6, 2025

Information We Collect

Account Information

Email address, name, and basic account preferences.

Receipt Metadata

Only vendor name, amount, date, and expense category extracted by AI on your device.

Receipt Images

Original receipt images stored securely for tax compliance and AI model improvement.

Usage Analytics

Anonymous technical data about app performance and feature usage.

Support Communications

Messages you send to our support team for assistance.

Local & Cloud AI Processing

Palautus AI leverages both local and cloud-based AI processes to ensure accurate, secure, and compliant tax deduction management:

How We Use Your Data

Tax Optimization Services

Service Improvement

Legal Basis (GDPR)

Your Rights Under GDPR

You have comprehensive rights over your personal data:

Access Your Data

Request a complete copy of all personal data we hold about you.

Correct Information

Update any inaccurate or incomplete personal data.

Delete Your Data

Request deletion of your personal data (subject to legal requirements).

Restrict Processing

Limit how we process your data while keeping your account active.

Data Portability

Download your data in a portable format to transfer elsewhere.

Object to Processing

Object to data processing for marketing or legitimate interest purposes.

Exercise Your Rights: Contact us at privacy@hgb.fi for any data request. We respond within 30 days as required by GDPR.

Data Security & Storage

Technical Security

Data Retention

Data Sharing

We Never:

Limited Sharing with GDPR-Compliant Partners:

All third-party processors are bound by Data Processing Agreements (DPAs) ensuring the same level of protection as this policy.

International Data Transfers

Your data is primarily processed within Finland and the EU. When transfers outside the EU are necessary, we ensure protection through:

Children's Privacy

Palautus AI is not intended for individuals under 16 years of age. We do not knowingly collect personal data from children under 16.

If you are a parent and believe your child has provided us with personal data, please contact us immediately at privacy@hgb.fi.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements.

When we make significant changes, we will:

Contact Information

Data Controller HGB Solutions Oy, Finland
Privacy Inquiries privacy@hgb.fi
Data Protection Officer dpo@hgb.fi
Website palautus.hgb.fi

We respond to privacy inquiries within 72 hours and provide full responses within 30 days as required by GDPR.