Draft for adaptation and legal review before publication.
Privacy Policy
Version 2026-08-v1 · Effective date: Not yet specified · Last updated: Not yet specified
1. Who is responsible for the data
The entity responsible for processing information is Not yet specified, Not yet specified. Privacy inquiries: Not yet specified.
2. Data minimization
We collect only the minimum information needed to operate the service. Unnecessary sensitive information, especially about children, should not be collected or entered.
3. Information we collect
- Adult account information: email address, display name, profile image from the sign-in provider, language, and time zone.
- Child profile information: nickname or display name, color and internal avatar, and permissions.
- Family usage information: recorded transactions, calculated balances, savings goals, debts, events, allowance, requests, and messages within a request.
- Files a user chooses to upload, such as a receipt image.
- Technical and security information: access logs, IP address, browser type, and audit records for security and integrity purposes.
4. How information is used
- Operating the family account, permissions, and each family member's view.
- Calculating balances and family records and displaying reports.
- Sending notifications and reminders within the service.
- Security, abuse prevention, troubleshooting, and service improvement.
- Complying with legal requirements and requests from competent authorities.
We do not sell personal information, use it for personalized advertising, or build marketing profiles.
5. Privacy within the family
The service supports privacy levels for records: private, amount only, and shared. Parents see information according to the selected settings. Transparency is the default for actions requiring parent approval. Family members may still capture or copy information displayed to them, which is outside the operator's control.
6. Sharing information with providers
- Cloud infrastructure and storage providers used to run the service and store data.
- Identity and sign-in provider used for secure account access.
- Monitoring and technical operations providers used for availability and security.
Providers act under our instructions and are required to maintain confidentiality and data security.
7. Retention and deletion
Information is retained while the account is active and for as long as required for lawful purposes. Deletion requests are processed from active systems within 30 days, and backups are removed in the normal backup cycle within Not yet specified additional days. Full details are in the Account and Data Deletion Policy.
8. Data security
We use encryption in transit, database-level access controls, role-based permission separation, and audit logging. No system is completely secure, so users should protect their sign-in credentials.
9. Your rights
- Access your information and request a copy.
- Correct inaccurate or outdated information.
- Delete information or deactivate an account.
- Restrict or object to certain processing.
- Withdraw consent, including parental consent for a child profile.
To exercise a right: Not yet specified. To protect the family, we will perform reasonable identity verification before processing the request.
10. Changes to this policy
For a material update, we will update the policy version and ask the adults in the family to accept it again. Last updated: Not yet specified.