Privacy Policy

    Your privacy is important to us. This policy explains how WealthFold collects, uses, and protects your personal information.

    Last Updated: January 22, 2026

    WealthFold ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you use our personal finance management platform, including our website, web application, and mobile applications for iOS and Android (collectively, the "Service").

    By using WealthFold, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Service.

    Information We Collect

    Personal Information You Provide

    When you create an account or use our Service, you may provide us with:

    • Account Information: Name, email address, password, and profile picture
    • Financial Data: Income, expenses, budgets, savings goals, investment holdings, and debt information that you manually enter
    • Contact Information: Email address and any information you provide when contacting support
    • Preferences: Currency settings, notification preferences, and display preferences

    Information Collected Automatically

    When you access our Service, we automatically collect:

    • Device Information: Browser type, operating system, device type, model, and unique device identifiers
    • Usage Data: Pages visited, features used, time spent on pages, and interaction patterns
    • Log Data: IP address, access times, referring URLs, and error logs
    • Local Storage: We use browser local storage (web) and secure device storage (mobile) to save your preferences and data for offline access
    • Push Tokens: If you enable notifications on mobile, we collect push notification tokens

    Third-Party Authentication

    When you use social sign-in options:

    • Apple Sign-In (iOS): We receive your email address and optionally your name. We do NOT have access to your Apple account password.
    • Google Sign-In: We receive your email address and profile information. We do NOT have access to your Google account password.
    • You can revoke access at any time through your Apple or Google account settings.

    đź”’ What We Don't Collect

    WealthFold does not connect to your bank accounts or access your actual banking credentials. All financial data in WealthFold is manually entered by you, giving you complete control over your information.

    How We Use Your Information

    We use the information we collect to:

    Provide Our Service

    Deliver the core functionality of WealthFold, including tracking finances, generating reports, and calculating projections

    Personalize Experience

    Customize your dashboard, remember preferences, and provide relevant insights based on your financial data

    Improve Our Platform

    Analyze usage patterns to enhance features, fix bugs, and develop new functionality

    Communicate With You

    Send service updates, security alerts, and respond to your support requests

    Ensure Security

    Detect and prevent fraud, abuse, and unauthorized access to your account

    Legal Compliance

    Comply with applicable laws, regulations, and legal processes

    Data Storage & Security

    Where Your Data is Stored

    Web App: Data is primarily stored locally in your browser's storage (localStorage). Mobile App: Data is stored securely in our database (Supabase/PostgreSQL) with encryption at rest and in transit. All financial data is encrypted and secured with industry-standard protocols.

    Security Measures

    We implement industry-standard security measures including:

    • HTTPS/TLS encryption for all data transmission
    • Secure password hashing using industry-standard algorithms
    • Regular security audits and vulnerability assessments
    • Access controls and authentication mechanisms
    • Data encryption at rest for cloud-synced data
    • Secure storage (Keychain on iOS, Keystore on Android) for sensitive data on mobile
    • Biometric authentication support (Face ID, Touch ID, fingerprint)

    Data Retention

    We retain your personal information for as long as your account is active or as needed to provide you services. If you delete your account, we will delete or anonymize your data within 30 days, except where we are required to retain it for legal purposes.

    Information Sharing

    We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:

    Service Providers

    We may share information with trusted third-party service providers who assist us in operating our Service, such as hosting providers and analytics services. These providers are bound by confidentiality agreements.

    Legal Requirements

    We may disclose your information if required by law, court order, or government request, or to protect our rights, property, or safety.

    Business Transfers

    In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you before your information becomes subject to a different privacy policy.

    With Your Consent

    We may share your information for other purposes with your explicit consent.

    Your Privacy Rights

    Depending on your location, you may have certain rights regarding your personal information. We are committed to honoring these rights for all users:

    Right to Access

    Request a copy of the personal data we hold about you

    Right to Rectification

    Request correction of inaccurate or incomplete data

    Right to Erasure

    Request deletion of your personal data ("right to be forgotten")

    Right to Portability

    Request your data in a machine-readable format

    For California Residents (CCPA)

    California residents have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information is collected, the right to delete personal information, and the right to opt-out of the sale of personal information. Note: WealthFold does not sell personal information.

    For European Users (GDPR)

    If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR), including the right to object to processing and the right to lodge a complaint with a supervisory authority.

    Cookies & Tracking

    We use cookies and similar technologies to enhance your experience. For detailed information about our cookie practices, please see our Cookie Policy.

    Essential Cookies:Required for the Service to function properly
    Preference Cookies:Remember your settings and preferences
    Analytics Cookies:Help us understand how you use our Service

    Push Notifications (Mobile App)

    If you enable push notifications in our mobile app:

    What We Send

    Budget alerts, goal milestones, bill reminders, and weekly summaries based on your preferences.

    Push Tokens

    We store your device's push notification token securely via Expo's push notification service.

    Control

    You can disable notifications anytime in Settings or through your device's notification settings.

    Privacy

    We do not share notification data with third parties except for delivery via Expo's infrastructure.

    Children's Privacy

    WealthFold is not intended for children under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we discover that a child under 13 has provided us with personal information, we will delete it promptly.

    Changes to This Policy

    We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. For significant changes, we may also send you an email notification. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information.

    Contact Us

    If you have any questions about this Privacy Policy, your personal data, or would like to exercise your privacy rights, please contact us:

    We will respond to all privacy-related requests within 30 days. For data access, correction, or deletion requests, we may need to verify your identity before processing your request.

    Related Policies