Privacy

Last updated September 2026

What this covers

Easy Splitter is a Telegram bot and Mini App that keeps group expense ledgers. This page explains what data the service keeps when you use it, and what it never does.

Who runs it

Easy Splitter is operated by Glowing Pixels UG (haftungsbeschränkt), Coppistraße 12, 10365 Berlin, Germany, which is the controller for the data described below. You can reach a person at hello@glpx.pro; the full provider details are on the imprint page.

Imprint

What is stored

Identity: your Telegram user ID and the display name you had when you joined a group's ledger.

Ledger data: the expenses and settlements you or your group members record — amount, currency, description, who paid, who is in the split, and timestamps. Every financial change also writes a short audit entry (who did what, when).

Bot drafts: while you are mid-command in the chat (for example confirming a split), the draft exists only until the command finishes or expires, about half an hour at most.

Security records: short-lived technical records that keep the service fair and safe — abuse-rate counters and double-submit protection.

Technical logs: server-side error and operations logs, kept for a limited period to keep the service healthy.

What Easy Splitter never does

No analytics, no advertising, no tracking, no profiling. Your ledger is not sold, shared, or shown to anyone outside the group it belongs to.

No chat history. The bot reads a message only to record the expense in it; it does not keep your conversations.

No money movement. Easy Splitter records who owes whom and what both sides confirmed — it never touches a payment.

Sign-in and cookies

The Mini App signs you in with the data Telegram itself provides (initData), verified server-side. That sets a single functional session cookie — HttpOnly, expiring after one hour, and not used for tracking. It is strictly necessary to deliver the service you asked for, which is the exemption in §25(2) TDDDG, so there is no consent banner: there are no other cookies and nothing to consent to.

Why it is allowed to store this

Identity and ledger data: to give you the service you asked for. A shared ledger cannot work without recording who spent what, so this is processing necessary to perform the service you requested — Art. 6(1)(b) GDPR.

Security records and technical logs: legitimate interests — Art. 6(1)(f) GDPR. The interest is keeping the service available, keeping one group from degrading it for everyone, and being able to diagnose a fault. These records are technical and short-lived, and they are not used to build a picture of you.

There is no processing based on consent, so there is no consent to withdraw. There is no automated decision-making and no profiling in the sense of Art. 22 GDPR: the only automated thing here is arithmetic on amounts you entered.

Who else sees it

Telegram. The service exists inside Telegram, so every message and every Mini App screen reaches you through it. Telegram is not a subcontractor acting on this service's instructions — for people in the EEA it is its own controller for the messenger, operated by Telegram FZ-LLC, Dubai, United Arab Emirates, which is outside the EU and EEA. What Telegram does with your data is governed by its own privacy policy, linked below, and your relationship with Telegram exists whether or not you use this bot.

The servers this service runs on. Ledger data is stored in the operator's own database on infrastructure the operator controls. It is not sold, rented, shared with advertisers, or handed to anyone outside the group the ledger belongs to.

Telegram's privacy policy

How long it is kept

Ledger data: for as long as the group ledger exists, because that is the record the group relies on. Delete the ledger and it goes.

Everything else expires on its own: a Mini App session after one hour, a half-finished bot command after thirty minutes, an unanswered settlement proposal after seven days, and abuse-rate counters after ten minutes of inactivity. Technical logs are kept only as long as they are useful for diagnosing faults.

Your rights

You can ask for a copy of your data (Art. 15), correction of it (Art. 16), deletion (Art. 17), restriction of processing (Art. 18), and a portable export (Art. 20). You can object to processing based on legitimate interests (Art. 21) — that covers the security records and logs above.

Ask through hello@glpx.pro, or @the_easy_splitter_bot on Telegram, and say which group the ledger belongs to. One caveat worth stating plainly: a ledger is shared. Deleting it removes the shared record for everyone in that group, so the other members are told it was removed.

If you think this service has handled your data wrongly, you can complain to a data protection supervisory authority — in your country of residence or place of work, or the one competent for this service, which is the Berliner Beauftragte für Datenschutz und Informationsfreiheit.

Berliner Beauftragte für Datenschutz und Informationsfreiheit· @the_easy_splitter_bot

Changes

If this policy changes, the new version appears here with a new date. Continuing to use the bot after a change means the new policy applies.