Privacy Policy
Last Updated: 1/30/2026
1. Information We Collect
We collect information you provide directly to us when you create an account, including your name, email address, and financial data used for simulations. Usage data is also collected automatically to improve the Service.
2. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service.
- Process payments via our third-party provider, Stripe.
- Communicate with you exclusively about your account or the Service.
3. Data Security & Encryption
Bank-Level Encryption: We utilize advanced AES-256 Envelope Encryption for all sensitive financial data. This means your data is encrypted with a unique Data Encryption Key (DEK), which is itself encrypted by a secure System Master Key.
Field-Level Protection: Specific sensitive fields—such as your account balances, income, and debt amounts—are encrypted at the application level before they ever touch our database. Because this data is encrypted uniquely to your account, even if our database were compromised, your sensitive financial numbers would remain unreadable ciphertext.
Data Decoupling: Your authentication credentials (password, login tokens) are managed securely by a separate identity provider and are never accessible to our administrators. Your financial profile is stored in a decoupled database, keyed only by a unique user identifier (UID), maximizing privacy and reducing risk.
4. Cookies & Tracking Technology
We use cookies and similar tracking technologies to track the activity on our Service and store certain information.
- Essential Cookies: We use cookies provided by our identity provider (Firebase Authentication) to maintain your secure login session.
- Payment Cookies: Our payment processor (Stripe) may use cookies to prevent fraud and process transactions securely.
