Privacy policy
Updated: 2026-09-09
What this app stores
The financial records you enter: accounts, transactions, categories, tags, budgets and settings. If you sign in, we also store the identifier, email address, name and avatar link that Google gives us — nothing else from your Google account.
We never ask for access to your bank accounts, cards or statements, and we never will. You enter transactions yourself, dictate them, or import a file you downloaded.
Where it is stored
Primarily in your own browser, in its local database. The app works fully without a network and without an account.
If you turn on sync, a copy is kept in a PostgreSQL database hosted by Supabase. Row-level security means every row is readable and writable only by the account that created it. Nobody else — including other users of the app — can reach your rows.
Who else is involved
- Google — sign-in only. Google learns that you signed in to this app; it does not receive your financial data.
- Supabase — hosts the database and the sign-in service.
- Vercel — hosts the site itself.
- Your browser — voice input uses the browser's own speech recognition. In some browsers the audio is processed on the vendor's servers. That is the browser's behaviour, not ours; the recognised text and the amounts stay on your device.
- DeepSeek — only while you are signed in with sync on. Signed out, or with sync off, nothing is ever sent there.
AI parsing
This is the only feature where the content of your records leaves the device for a reason other than sync. It runs automatically in quick add whenever you are signed in with sync on; there is no separate switch for it. Dictation is sent as soon as you stop speaking — you press nothing, and the parsed entries arrive as a finished list. A line you typed yourself is sent when you press «Add». Signed out, quick add falls back to parsing on your device, and nothing is sent anywhere. The full manual entry form never uses it.
Two things can be sent to the external model (DeepSeek), and nothing else. The first is the text you dictated or typed yourself — dictation at the moment you stop speaking, a typed line when you press «Add». The second is the descriptions of statement rows on the import screen — only if you press «Categories via AI» there, and without the amounts, dates or balances that go with them. Card and account numbers, national ID numbers, phone numbers and email addresses are stripped out before sending; the server checks again and refuses if anything remains. Your transaction history, balances and reports are never sent, and neither is the statement file itself — PDF is read on your device.
The model does not decide amounts or dates. It splits the text into separate phrases; the amounts, dates and accounts in them are read by the same code that works offline. It does suggest a category, but only from the list of categories in your app — anything else is discarded, and a category you have corrected yourself always wins. Nothing is saved automatically: you see the proposed list and confirm it yourself.
What we do not do
No advertising. No analytics that follow you around. No selling or sharing of your data, anonymised or otherwise. There is no business model here that depends on knowing what you eat or where you travel.
Your data is yours
Export everything to JSON or CSV at any moment, from Settings. Clearing the site data in your browser removes the local copy. Deleting your account removes your rows from the server.
Children
The app is not intended for children under 16.
Changes
If this policy changes in a way that matters, the date below changes with it and the previous wording stays in the project's public source history.
Contact
Questions and deletion requests: azamat.kagarman@gmail.com