1. Information We Collect
- Account information: name, email address, password hash, profile picture (if provided), and authentication provider, such as Google.
- Financial data you enter: transactions, budgets, categories, loans, ledger entries, and notes. EMS does not connect directly to your bank.
- Usage data: log files, device information, IP address, and basic analytics required to operate and secure the Service.
- Files you upload: avatars and receipt images, stored on Cloudinary.
2. How We Use Your Information
- To provide and maintain the Service.
- To authenticate you and keep your account secure.
- To generate AI-powered insights about your spending. AI processing is performed by our backend and the Groq API. Your data is never used to train third-party models.
- To send transactional emails (verification, password reset, alerts).
- To detect, prevent, and address abuse or fraud.
3. Legal Basis (GDPR)
We process your personal data on the basis of (a) the contract you enter when creating an account, (b) your consent for optional features, and (c) our legitimate interest in securing the Service.
4. Data Sharing
We do not sell your personal data. We share data only with sub-processors strictly necessary to operate the Service:
- MongoDB Atlas: primary database hosting
- Cloudinary: image storage
- Groq: AI inference for insights and chat
- Google: sign-in, only if you choose Google authentication
- SMTP provider: outbound transactional email
5. Data Retention
We retain your data for as long as your account is active. When you delete your account, all of your data is permanently removed from our database within 30 days. That covers transactions, budgets, loans, notifications, contacts, and uploaded file references. Backups are rotated within 90 days.
6. Your Rights
You have the right to:
- Access the personal data we hold about you.
- Export your data in machine-readable JSON format at any time from Settings → Export my data.
- Correct inaccurate information from your profile page.
- Delete your account and all associated data from Settings → Delete account.
- Withdraw consent for optional features at any time.
- Lodge a complaint with your local data protection authority.
7. Security
Passwords are hashed with bcrypt. All traffic is served over HTTPS. JWT access tokens expire within 15 minutes; refresh tokens are stored hashed and revocable. We follow industry best practices to protect your data, but no internet service can be 100% secure.
8. Children
The Service is not directed to children under 13. We do not knowingly collect data from children. If you believe a child has provided us data, please contact us so we can delete it.
9. Changes
We may update this Privacy Policy from time to time. Material changes will be announced in-app and via email at least 14 days in advance.
10. Contact
For questions or to exercise any of the rights above, contact us at privacy@ems.com.
Looking for our Terms?
Read the rules that govern your use of EMS.