Privacy Policy
Last updated: July 29, 2026
What we collect
When you upload a bank or card statement (PDF or CSV), we parse it to extract transactions — date, description, amount, and which account it came from. We also store the email address and password (hashed, never in plain text) you sign up with. We don't collect anything beyond what's needed to run the product: no bank login credentials, no location data, no device fingerprinting.
How we store it
Transaction descriptions are encrypted at rest (Fernet/AES-128) and only decrypted in memory when needed to answer your questions or show your ledger. Uploaded statement files are processed in memory to extract transactions and are not retained afterward. Every record is scoped to your account — other users can never see your data.
Third parties
Transaction categorization and the AskCFO chat feature call Anthropic's API to process your transaction data and questions. This data is sent solely to generate a response to you and is not used to train Anthropic's models. We don't sell your data to anyone, and we don't use it for advertising.
Your rights
You can request a copy of your data or ask us to delete your account and everything tied to it at any time by emailing hello@personalcfo.app.
Security practices
Passwords are hashed with bcrypt and never stored in plain text. Sessions use short-lived signed tokens. Sensitive fields are encrypted at rest. We don't log transaction descriptions, amounts, or the content of your questions and answers.
Contact
Questions about this policy: hello@personalcfo.app.