Privacy Policy
How SpendSense handles consumer financial data.
This policy explains how SpendSense collects, uses, protects, and deletes information when you use the SpendSense web or mobile application, including information received through Plaid Link.
Last updated: April 19, 2026
Plaid data
Used only to power your SpendSense workspace.
Connected account and transaction data supports budgeting, review, planning, trends, and sync features.
No sale
We do not sell consumer financial data.
We also do not share Plaid-derived financial data with advertisers or data brokers.
Control
Export and delete controls are available in Settings.
You can download your data or delete your account and connected financial records from the application.
Information we collect
- Account information you provide, such as your name, email address, password credentials, and settings.
- Financial account, balance, and transaction information made available after you connect an account through Plaid Link.
- Product usage events needed to understand activation and reliability. These analytics are designed not to include financial amounts, merchant names, account numbers, or transaction descriptions.
- Technical information such as device, browser, app version, IP address, request metadata, error logs, and security signals needed to operate and protect SpendSense.
Information we receive from Plaid
- When you connect a financial institution, SpendSense may receive account names, account types and subtypes, balances, transaction history, merchant or transaction descriptions, dates, categories, institution identifiers, item identifiers, and related metadata from Plaid.
- SpendSense receives and stores Plaid access tokens so the application can refresh account and transaction data after the initial connection.
- SpendSense does not receive your financial institution login credentials from Plaid Link.
How we use information
- To provide budgeting, account aggregation, transaction review, planning, trends, and related SpendSense features.
- To authenticate users, protect accounts, investigate abuse, debug reliability issues, and maintain the security of the service.
- To improve product flows using privacy-first analytics that avoid collecting sensitive financial content.
- To comply with legal, regulatory, security, and contractual obligations.
Plaid and connected accounts
- SpendSense uses Plaid Link to let you connect financial institutions. When you use Plaid Link, Plaid may collect credentials or authentication information directly from you under Plaid's own policies.
- SpendSense receives Plaid access tokens, item metadata, account details, balances, and transactions needed to operate the application.
- Plaid access tokens are encrypted by SpendSense before storage. Plaid-derived account and transaction data are stored in managed production Postgres with encryption at rest provided by the database platform.
- You can disconnect connected institutions through SpendSense where available, through Plaid, or through your financial institution.
Sharing
- We do not sell consumer financial data.
- We share data with service providers that help us operate SpendSense, including hosting, database, monitoring, analytics, email, and Plaid connectivity providers.
- We do not share Plaid-derived financial data with advertisers or data brokers.
- We may disclose information when required by law, to protect rights and security, or in connection with a business transaction such as a merger, financing, or acquisition.
Security and retention
- SpendSense uses HTTPS/TLS for data in transit and production database encryption at rest for stored data.
- Plaid access tokens are encrypted before storage and are only decrypted by the backend when needed to communicate with Plaid.
- Production access is limited to authorized operators and service providers with a business need to operate, secure, or support the application.
- We keep information for as long as needed to provide the service, meet legal obligations, resolve disputes, enforce agreements, and maintain backups. If you delete your account, active application data is deleted from the production application database subject to backup and legal-retention limits.
Your choices
- You can export your SpendSense data from Settings.
- You can delete your SpendSense account from Settings, which removes your profile, connected bank records, accounts, transactions, budgets, goals, recurring rules, categories, and related app data.
- You can disconnect connected institutions where the app provides that control, and you may also manage Plaid connections through Plaid or your financial institution.
- You can reject non-essential analytics cookies where the web app presents a consent banner.
Changes to this policy
- We may update this policy as SpendSense changes. When we make material changes, we will update the date above and provide additional notice where required.