Privacy Policy

We explain what data we process, for what purpose, and who we entrust it to — in line with GDPR and how the app actually works.

Last updated: August 11, 2026
Version 2026-08-11
  • Opisaliśmy nową funkcję importu wyciągu bankowego (CSV/Excel) i to, jakie dane z wyciągu trafiają do Aplikacji: data operacji, kwota, tytuł oraz konto.
  • Zaznaczyliśmy wprost, że plik wyciągu jest odczytywany wyłącznie w Twojej przeglądarce - nie wysyłamy go na serwer i nigdzie go nie przechowujemy. Na serwer trafiają tylko te pozycje, które sam(a) wybierzesz do zaimportowania.
  • Potwierdziliśmy, że import nie łączy się z Twoim bankiem i nigdy nie prosi o dane logowania do bankowości.
View the history of all versions
1. General information

This Privacy Policy sets out the rules for processing and protecting personal data provided by Users in connection with their use of the services available in the Finanse Menadżer web application (the "App").

This is an English translation provided for your convenience. The Polish version is the governing text; in case of any discrepancy, the Polish version prevails.

The Controller of your personal data is Rafał Prokopiak, operating a sole proprietorship at Gdańska 31, 85-005 Bydgoszcz, Poland, e-mail: [email protected] (the "Controller").

2. Legal basis for processing

Your personal data is processed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (GDPR), on the following legal bases:

  • Article 6(1)(a) GDPR — consent given during registration in the App and for optional features (e.g. push notifications, connecting an external AI assistant);
  • Article 6(1)(b) GDPR — processing necessary for the performance of the paid subscription contract (handling billing and payment data);
  • Article 6(1)(c) GDPR — compliance with the Controller's legal obligations, in particular tax and accounting obligations related to settling payments and issuing invoices;
  • Article 6(1)(f) GDPR — the Controller's legitimate interest in ensuring the stability, security, and development of the App (error monitoring and fully anonymous usage analytics).
3. Scope of data collected

In providing the services, the App collects the following personal data:

  • Registration data: e-mail address, first and last name
  • Social sign-in data (Google): e-mail address, first and last name, profile photo (optional)
  • Financial data entered by the User: information about transactions, expense/income categories, accounts, financial Projects, and notes on transactions
  • Bank statement import data (if you use this feature): booking date, amount, transaction title, and the account it belongs to — read from the file you pick and stored as entries awaiting a category
  • Billing data (subscription): Stripe customer and subscription identifiers, subscription status, number of seats purchased, billing period, and next payment date
  • Push notification data (if enabled): browser push provider endpoint address, subscription encryption keys, and browser type
  • Technical data: IP address, browser type, operating system (stored in server logs and session data)
  • Diagnostic and analytical data: fully anonymous, aggregated visit statistics (Umami) and application error data logged at the time of a crash (Sentry) — see section 10 for details

Statement import: the statement file is read solely in your browser, on your device. The file itself is never sent to the Controller nor stored anywhere — only the entries you choose to import reach the server. The import does not connect to your bank and never asks for online banking credentials.

Important: the App does not collect or store bank card numbers, online banking passwords, or other sensitive authentication data. Card details and payment method details are processed solely on the side of the payment operator Stripe — the Controller only displays them live in settings (e.g. card brand and last digits) without storing them in its own database.

4. Purpose of processing

Your personal data is processed for the following purposes:

  • Enabling registration and sign-in to the App
  • Providing the personal and family finance management service
  • Storing and organizing the financial data you enter
  • Real-time data synchronization across your devices
  • Communicating with Users on matters related to the App's operation
  • Ensuring the security and integrity of data
  • Providing and administering the paid subscription (seat billing, renewals, payment processing, and issuing invoices)
  • Fulfilling the Controller's legal obligations (including tax and accounting obligations related to the paid subscription)
5. Retention period

Your personal data will be stored for as long as you have an active account in the App, plus any additional period necessary to fulfil the Controller's legal obligations (e.g. for tax or archiving purposes).

After you delete your account, all your personal data will be permanently deleted from the system within 30 days, except for data that must be retained for legal reasons.

Billing data: accounting documents related to the paid subscription (invoices, payment confirmations) are stored for the period required by tax and accounting law, i.e. 5 years from the end of the tax year in which the settlement was made — even after account deletion, as an exception to the 30-day deletion period.

6. Sharing data with third parties

Your personal data may be shared with the following processors providing services to the Controller. Each one's scope corresponds to how the App actually operates:

  • Hetzner Online GmbH — server infrastructure provider (VPS in Nuremberg, European Union), on which the Controller self-hosts the application and the PostgreSQL database (storage of all data, including authentication data)
  • Google LLC / Google Ireland Ltd. — only when signing in with a Google account is used (e-mail address, first and last name, profile photo)
  • Stripe Payments Europe, Ltd. / Stripe, Inc. — payment and subscription processing provider; processes e-mail address, first and last name, billing address, tax identification number, and card data (on Stripe's side only)
  • Sentry — error monitoring and crash diagnostics provider; processes diagnostic data at the time an error occurs (European Union region)
  • Cloudflare, Inc. — bot protection provider (Cloudflare Turnstile on the contact form) and encrypted database backup storage (Cloudflare R2, located in the European Union)
  • Plunk (useplunk.com) — transactional e-mail delivery provider (e.g. messages from the contact form and notices about your account and changes to this Policy)
  • Browser push notification providers (e.g. Google, Mozilla, Apple) — only if you enable push notifications; used to deliver notifications to your device (see section 11 for details)

Self-hosted solutions (no third-party involvement): authentication (Better Auth), real-time data synchronization (ElectricSQL), and visit analytics (Umami) run entirely on the Controller's infrastructure — this data is not shared with any external provider.

Transfers outside the EEA: some data may be processed outside the European Economic Area (including in the United States) — billing data via Stripe and e-mail message data via Plunk. Transfers are based on Standard Contractual Clauses approved by the European Commission or on a European Commission adequacy decision (e.g. the EU-U.S. Data Privacy Framework). You can obtain a copy of the safeguards applied by contacting the Controller at the address given in section 15.

All processors act under data processing agreements and provide an adequate level of data protection in line with GDPR requirements.

7. Your rights

Under GDPR, you have the following rights:

  • Right of access — you can obtain information about which personal data is being processed
  • Right to rectification — you can request correction of inaccurate data
  • Right to erasure ("right to be forgotten") — you can request deletion of your data
  • Right to restriction of processing — you can request that processing be restricted in certain situations
  • Right to data portability — you can receive your data in a structured format and transfer it to another controller
  • Right to object — you can object to processing carried out for certain purposes
  • Right to withdraw consent — you can withdraw your consent to processing at any time (this does not affect the lawfulness of processing carried out before the withdrawal)
  • Right to lodge a complaint — you can lodge a complaint with the supervisory authority (President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw, Poland)

To exercise the rights above, contact the Controller at: [email protected]. We respond no later than one month after receiving the request.

8. Security

The Controller applies appropriate technical and organizational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access.

The security measures applied include:

  • Encrypted connections (HTTPS/TLS)
  • Access control over personal data (authentication and authorization)
  • Regular, automatic database backups, encrypted in transit and stored in Cloudflare R2 (located in the European Union) with a 30-day retention period
  • Using providers that meet GDPR compliance requirements
  • Storing core data on servers located in the European Union
  • Secure session management using encrypted tokens and HTTPOnly cookies
9. Cookies and similar technologies

The App uses cookies and similar technologies to ensure proper operation, including:

  • Session cookies — necessary for the sign-in and authorization system to function
  • Preference cookies — used to remember user settings (e.g. the selected language)

Important: to analyze traffic, the App uses the cookieless tool Umami, which does not set any cookies, does not profile users, and does not receive any identifier that could link the statistics to a specific person (e.g. an e-mail address or account ID) — see section 10 for details. Because the tool operates on fully anonymous, aggregated data, its use does not require your consent. Cookies used by the payment operator Stripe during the payment process serve solely to process the transaction and prevent fraud. The App does not use advertising or marketing tracking cookies.

10. Business model and analytics

The App's only source of revenue is the paid, per-seat subscription (charged per Project user). Payments and subscriptions are handled by the Stripe payment operator, in accordance with the rules described in sections 3 and 6.

The Controller does not sell, rent, or otherwise share your data — including in anonymized or aggregated form — with third parties for commercial or marketing purposes. The App does not use advertising tracking tools (e.g. Google Analytics, advertising pixels).

To ensure the App's stability, security, and development, the Controller uses the following tools, which process data on the basis of the Controller's legitimate interest (Article 6(1)(f) GDPR):

  • Umami (self-hosted) — private, cookieless usage analytics (number of visits, most-visited pages). The tool does not set cookies, does not receive the user's e-mail address or account identifier, and collects only fully anonymous, aggregated statistics that cannot be linked to a specific person. Data remains on the Controller's infrastructure within the European Union.
  • Sentry — application error monitoring and crash diagnostics. When an error occurs, the tool logs diagnostic data (the type and content of the error, the URL, browser and operating system type, and in some cases the user identifier and IP address) solely to fix the issue. Data is processed within the European Union region.
11. Push notifications

The App may send push notifications (e.g. about recurring transactions or subscription status), only if you consent to this in your device and App settings.

Notifications are delivered via the Web Push standard and your browser's notification service (e.g. Google, Mozilla, Apple). The Controller manages its own VAPID keys and does not use an external push notification provider. In connection with the notification subscription, we store the endpoint address, encryption keys, and browser type.

You can disable push notifications at any time in the App or browser settings — the related subscription data will then be deleted.

12. Connecting to external AI assistants

The App offers an optional OAuth 2.1-compliant MCP (Model Context Protocol) server that lets you connect your own AI assistant (e.g. Claude, ChatGPT) to your financial data.

The connection is entirely voluntary and initiated only by you. The Controller does not send your data to any artificial intelligence provider — you decide which assistant to authorize, and data is transferred to the tool you choose only after you give explicit consent. You can revoke this authorization at any time.

13. Progressive Web App (PWA)

The App is a Progressive Web App (PWA), meaning it can be installed on your mobile device or computer.

Installing the PWA does not involve any additional collection of personal data. All data continues to be stored on the servers in accordance with this Privacy Policy.

14. Changes to the Privacy Policy

The Controller reserves the right to make changes to this Privacy Policy. We will inform you of any change in advance:

  • by e-mail — sent the day after the change is published, containing a brief summary of what has changed,
  • by an in-App notice.

The new version of the Policy takes effect 14 days after the notice, giving you time to review the changes. Until then, the previous version applies.

All previously published versions of the Privacy Policy are archived for compliance and audit purposes, and their full content is available in the version history.

15. Contact

If you have questions about the processing of your personal data or this Privacy Policy, please get in touch:

Data Controller: Rafał Prokopiak

Address: Gdańska 31, 85-005 Bydgoszcz, Poland

E-mail: [email protected]

Contact form: /kontakt