Privacy Policy
Last updated: August 23, 2026
1. Introduction
My Money Analytics (“we”, “our”, “us”) provides financial wellness tools that help you understand and manage your money. We are committed to protecting your privacy and handling personal and financial information responsibly. This policy describes our current practices and controls; it is not a certification that every financial-services or state privacy law applies to, or has approved, our service.
2. Information We Collect
We collect the following categories of information:
- Personal Information: Name, email address, profile details.
- User-Provided Financial Data: Budget details, income, expenses, savings goals, debts, and any data you manually input.
- Financial Institution Data (via Plaid or similar integrations): Transaction history, account balances, institution names, account types, and similar read-only financial data. Your login credentials are never shared with us.
- Technical Data: IP address, browser type, device information, and usage logs for security and performance.
- Diagnostics: App version, operating-system and device model, crash stack traces, failed feature or API names, request identifiers, and performance timings. We configure Sentry not to receive default personal information, session replay, authentication data, financial values, Plaid identifiers, or purchase tokens.
- Optional Public-Site Analytics: If you allow analytics, Google Analytics receives a sanitized public-page category, a query-free page location, an origin-only referring site, and ordinary browser/request information used to provide aggregate traffic reporting. We do not send member, financial, form, calculator-input, or calculator-result data.
- Communications: Support messages, feedback, and email correspondence.
3. How We Use Your Information
We use your information only for legitimate and disclosed purposes, including:
- Providing core app functionality and tools
- Generating budgeting insights, analytics, and financial trends
- Personalizing your financial views and recommendations
- Maintaining security, fraud prevention, and account integrity
- Responding to support inquiries
- Improving our platform experience
- Sending optional product news, financial education, and announcements when you choose to receive our email newsletter
We do not sell or rent personal or financial data, operate as a data broker, or share personal data for cross-context behavioral advertising. Newsletter contact details are provided only to our delivery processor when you opt in.
4. Protection of Financial Information
We use administrative, technical, and operational safeguards designed to reduce foreseeable risks. These include:
- Encryption for supported sensitive data in transit and encrypted application fields at rest
- Authentication, least-privilege access controls, and security event recording
- Least-privilege data design (only accessing what is necessary)
- Secure third-party integrations with contractual data-protection requirements
Although we take strong measures, no system is fully immune from security risks. We encourage you to use strong passwords and enable MFA where available.
5. When We Share Information
We only share information under the following limited circumstances:
- Service Providers: Payment processors (Stripe, Apple, or Google, depending on where a subscription is purchased), infrastructure providers, Sentry for privacy-filtered diagnostics, Google Analytics for consented public-site measurement, and communication vendors, including Resend for optional newsletter delivery. A current service-provider list and material-change notice process is available on our Subprocessors page.
- Financial Data Providers: When connecting accounts, your financial institution data is transmitted securely through Plaid or similar providers, subject to their respective privacy policies.
- Legal Requirements: Government, regulatory, or law-enforcement requests when required by applicable laws.
- Protection of Our Services: Detecting fraud, preventing security incidents, or enforcing our Terms of Use.
6. Your Privacy Rights
We provide the following controls to signed-in U.S. members, whether or not a particular state-law threshold applies:
- Access a copy of your personal data
- Request corrections to inaccurate data
- Request deletion of your information
- Export your data (“data portability”)
- Opt out of certain processing where applicable
- Appeal a denied privacy request
- Withdraw newsletter consent at any time from Settings or through the unsubscribe link in any newsletter
Signed-in members can submit and track access, correction, deletion, and appeal requests from Privacy & data settings. If you cannot sign in, use our public account-deletion instructions or contact us at support@mymoneyanalytics.com.
7. Data Retention
We retain your information while your account is active. When you disconnect a linked financial account, you can either delete its account data immediately or keep only its compacted balance snapshots and presentation details for up to 24 months so that history can be restored if you reconnect the account. Disconnecting always revokes Plaid access and removes synced transactions, provider credentials, and live account data. Retained accounts are hidden from ordinary product views and can be reviewed or deleted immediately from Privacy & Data settings. They are included in account-data exports.
When you request full account deletion, you may choose immediate deletion or, while eligible paid access remains, deletion at the verified end of the current period. Immediate deletion locks access at once. Period-end deletion stops renewal when accepted, preserves access through the displayed date, and automatically locks access and begins permanent deletion on that date. Both paths queue removal of active connections, retained history, notification devices, identity data, profile data, and stored financial history. Apple and Google manage store refunds; an immediate Apple deletion does not itself cancel Apple billing. Backups remain access-restricted and beyond ordinary use until they expire; if a backup is restored, deletion records are reapplied before the restored environment serves users.
Generated access exports expire after 24 hours and can be downloaded once. Privacy-request narratives and verification material are removed 30 days after a case closes. HMAC-only deletion-completion evidence is retained for 24 months. Pseudonymized auto-renew consent and cancellation evidence is retained until the later of three years after consent or one year after termination. A deletion-notice email address is encrypted, used only for delivery retries, and removed after successful completion delivery or within seven days. Invoices, tax, dispute, fraud, and chargeback records may remain with the billing provider for a legally justified limited-retention period; they are not used for product or marketing purposes or to recreate your account. General application logs are scheduled for 30-day retention. Legal exceptions or a documented litigation hold may require a different period.
Google Analytics event-level and user-level data is configured for two-month retention. Your browser-side analytics choice lasts up to 12 months unless you change it sooner.
8. Cookies & Analytics
We use essential cookies and browser storage for authentication, security, and preferences. Google Analytics remains completely unloaded unless you select “Allow analytics.” When allowed, it measures only approved, sanitized public-page visits. Advertising personalization, Google Signals, User-ID, remarketing, enhanced conversions, cross-domain tracking, and automatic form or content collection are disabled. Signed-out visitors can select “Privacy choices”; signed-in members can use Settings → Privacy & data to allow or withdraw analytics. Withdrawal stops subsequent measurement and removes accessible Google Analytics cookies. Declining analytics does not limit site or app functionality.
We separately use privacy-filtered diagnostics to maintain security, diagnose crashes, and improve performance. We do not use Sentry session replay or provide financial data to Sentry. Disabling essential cookies in your browser may prevent browser features from working.
9. Children's Privacy
My Money Analytics is offered only to people located in the United States who are 18 or older. We do not knowingly collect information from minors. If we become aware of such data, it will be deleted.
10. Changes to This Privacy Policy
We may update this policy to reflect changes in our practices or legal requirements. When updated, the “Last updated” date above will change. When a material update requires renewed acceptance, signed-in members will be asked to review and affirm the new version.
11. Contact Us
You may contact us with privacy questions or requests at support@mymoneyanalytics.com. For general company questions or partnership inquiries, you can also reach contact@mymoneyanalytics.com.
