Privacy Policy
Overview
Feetsco is a read-only financial insights app that connects your bank transactions with receipts to provide personalized, evidence-backed insights. We retain detailed data to power precise answers. You can delete your entire account at any time.
This policy applies to the Feetsco mobile and web applications. Our marketing website (www.feetsco.com) collects no personal data.
Information We Collect
Account Information
When you sign up, we collect your name, email address, and authentication credentials via Google or Apple sign-in. We may also collect your birthdate and phone number to personalize your experience.
Financial Data via Plaid
We use Plaid to securely connect to your bank accounts. Through Plaid, we access:
- Account balances and metadata
- Transaction history (merchant names, amounts, dates, categories, locations)
We access this data in read-only mode. We cannot move money or modify your accounts.
Email Receipts
With your permission, we connect to Gmail to search for receipt emails. We only access emails that match receipt-related criteria and do not read other emails. This connection is optional.
Uploaded Receipts
You can photograph and upload receipts. We use optical character recognition (OCR) to extract merchant, item, and price information.
Usage Data
With your consent, we collect analytics about how you interact with the app to improve our service. This includes features used, screens viewed, and questions asked. You can opt out of analytics in your privacy settings.
Behavioral Insights
With your consent, we generate personalized financial profiles based on your spending patterns to provide more relevant nudges and insights. You can opt out of this feature in your privacy settings.
How We Use Your Data
- Matching: Link receipts to bank transactions for item-level detail
- Insights: Generate personalized nudges and answer your financial questions
- Evidence: Cite specific transactions and receipts to support every answer
- Notifications: Send reminders for goals you've accepted
- Improvement: With your consent, analyze usage patterns to improve the app
Legal Basis for Processing (GDPR)
We process your data based on the following legal grounds:
| Processing Activity | Legal Basis |
|---|---|
| Account management, authentication | Contract performance |
| Bank data sync, receipt matching | Contract performance |
| Nudges and insights generation | Contract performance |
| Behavioral profiling | Your consent |
| Analytics | Your consent |
| Error tracking and service quality | Legitimate interest |
| Marketing communications | Your consent |
Third-Party Services
| Service | Purpose | Data Shared |
|---|---|---|
| Plaid | Secure bank account connections | Bank credentials (via OAuth) |
| OpenAI | AI processing for insights | Transactions, receipts (anonymized where possible) |
| Amazon Web Services | Cloud infrastructure | All data (encrypted at rest) |
| Google/Apple | Authentication | Email, name |
| Amplitude | Product analytics (with consent) | User ID, app usage events |
| Sentry | Error tracking | Error context, user ID |
| Stripe | Payment processing | Email, payment info |
| Firebase | Push notifications | Device tokens |
Each service has its own privacy policy. We share only the minimum data necessary for each service to function.
Data Retention
We retain your data as follows:
- Account and financial data: For the duration of your account
- Analytics logs: 90 days
- Error logs: 30 days
- Notification logs: 30 days
When you delete your account, all your data is permanently removed from our systems, including transactions, receipts, insights, and connected account information.
Data Security
We protect your data with:
- Encryption in transit (TLS) and at rest (AES-256)
- Row-level database security isolating each account
- Envelope encryption for sensitive credentials (bank tokens, API keys)
- No storage of bank credentials (handled by Plaid)
- Regular security reviews and penetration testing
Your Rights
All users have the following rights:
- Access: View all data we have about you within the app
- Export: Download your data in a portable format
- Delete: Permanently delete your account and all associated data
- Disconnect: Revoke access to connected accounts (Plaid, email) at any time
- Opt-out: Disable analytics and behavioral profiling in settings
- Rectification: Correct inaccurate personal data
- Restriction: Request we limit processing of your data
- Objection: Object to processing based on legitimate interest
- Withdraw consent: Withdraw consent for processing at any time
- Portability: Receive your data in a structured, machine-readable format
- Complaint: Lodge a complaint with your local data protection authority
- Right to Know: Request disclosure of data collected about you
- Right to Delete: Request deletion of your personal information
- Right to Correct: Request correction of inaccurate information
- Right to Opt-Out: Opt out of the sale or sharing of personal information
- Right to Limit: Limit use of sensitive personal information
- Non-discrimination: You will not be discriminated against for exercising these rights
We do not sell your personal information. To exercise your CCPA rights, use the privacy settings in the app or email privacy@feetsco.com.
International Data Transfers
Your data is processed in the United States. For users outside the US, we transfer data based on:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Data processing agreements with our service providers
Children's Privacy
Feetsco is not intended for users under 18. We do not knowingly collect data from children. If we learn we have collected data from someone under 18, we will delete it promptly.
Changes to This Policy
We may update this policy and will notify you of material changes via the app or email. Your continued use after changes constitutes acceptance of the updated policy.
We maintain versioned copies of this policy. The version number and last updated date are displayed at the top of this page.
Contact
Questions or requests? Contact us at:
- Privacy: privacy@feetsco.com
- General: support@feetsco.com
For GDPR inquiries, you may also contact our Data Protection contact at privacy@feetsco.com.