Privacy
What is stored
Your financial records — accounts, categories, transactions, budgets and goals — together with the email address and password hash used to sign in. Passwords are kept as salted PBKDF2-SHA256 hashes and are never recoverable in plain text.
What is not collected
No advertising, no analytics, no behavioural tracking and no third-party scripts — every stylesheet, font and script the site loads is served from this domain. Your records are not sold or shared.
Credentials for connected services
Where you connect an external service — an SMTP server for password-reset email, for example — its credentials are encrypted at rest and used only for the purpose you configured them for. Nothing is contacted on your behalf unless you set it up and trigger it.
Where it runs, and getting your data out
Your data lives in a PostgreSQL database on the server that hosts this instance, and is accessible to whoever operates that server. Traffic between your browser and the site is encrypted. You can export every transaction to CSV at any time from the reports page, and you can ask the operator to delete your account and its data.
This page describes how the app behaves today. If features are added that change what is stored or who it is shared with, this page changes with them.