Privacy Policy
Effective date: March 28, 2026
1. Overview
Finance Tracker (“Finance Tracker”, “we”, “us”, or “our”) is a personal finance tracking application. This Privacy Policy explains what information we collect, how we use it, and the choices you have. By using Finance Tracker you agree to the practices described here.
2. Information We Collect
2.1 Account Information
When you sign in with Google OAuth we receive your Google account ID (a stable numeric identifier), your name, and your email address as provided by Google. We store your Google account ID and email solely to identify your account. We do not receive, store, or have access to your Google password.
2.2 Financial Data
All financial data you enter — transactions, income entries, categories, recurring rules, and savings goals — is stored in our database on Cloudflare's infrastructure. You control this data entirely: you create it, you can delete it.
2.3 API Usage Data
If you use the ingest API to submit transactions programmatically, we log the parameters of each request (merchant, amount, card label, timestamp) as part of creating the transaction record. We also record the time of each API request to enforce rate limits.
2.4 Technical Data
Our hosting provider (Cloudflare) may collect standard server logs including IP addresses, browser type, and request timestamps as part of operating the service. These logs are governed by Cloudflare's Privacy Policy.
3. How We Use Your Information
- To authenticate you and associate your data with your account.
- To display, calculate, and analyse your financial data as requested.
- To enforce subscription tier limits (free plan: 200 entries).
- To enforce API rate limits and prevent abuse.
- To operate, maintain, and improve the service.
We do not sell, rent, or share your personal or financial data with third parties for advertising or marketing purposes.
4. Data Retention
Your data is retained for as long as your account exists. If you wish to delete your account and all associated data, contact us at privacy@finance-tracker.korih.com and we will permanently delete your records within 30 days.
5. Data Security
We store data in Cloudflare D1 (SQLite) hosted in Cloudflare's infrastructure, which provides encryption at rest and in transit (TLS). Access to your data is restricted to your authenticated session. API access requires a secret API key that you can regenerate at any time.
No system is perfectly secure. We implement reasonable technical safeguards but cannot guarantee absolute security.
6. Third-Party Services
We use the following third-party services to operate Finance Tracker:
- Google OAuth— for authentication only. Google's use of the data it shares with us is governed by Google's Privacy Policy.
- Cloudflare Workers / D1 / KV — for compute, database, and key-value storage. Governed by Cloudflare's Privacy Policy.
7. Your Rights
You have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your account and all associated data.
- Export your financial data (available within the app).
To exercise any of these rights, contact us at privacy@finance-tracker.korih.com.
8. Children's Privacy
Finance Tracker is not directed to children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the effective date at the top of this page. Continued use of Finance Tracker after changes constitutes acceptance of the updated policy.
10. Contact
For any privacy-related questions or requests, contact us at: privacy@finance-tracker.korih.com