Welcome to My Easy Finances ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our My Easy Finances mobile application (the "App").
1. Information We Collect
1.1 Personal Information
- Financial Data: Transaction amounts, categories, dates, and descriptions you enter
- Account Information: Account names and types you create
- Category Data: Custom spending and income categories you define
- Settings: Currency preferences, language settings, and app configuration
1.2 Technical Information
- Device Information: Device type, operating system version, and unique device identifiers
- App Usage: App performance data, crash reports, and usage analytics
- Network Information: IP address and connection type (for Firebase services only)
1.3 AI-Powered Features Data (Premium Feature)
- Transaction Summaries: Aggregated financial summaries (totals, averages, savings rate, category breakdowns)
- Monthly Breakdowns: Monthly income, expenses, savings, and top spending categories
- Expense Types: Fixed, Essential, and Not-essential classifications you assign
- Transaction Metadata: Transaction dates, amounts, categories (no descriptions or personal identifiers)
- Language Preference: Your selected app language (for generating recommendations in your language)
- Note: This data is only shared when you explicitly request AI insights. We do NOT share your personal identifiers, transaction descriptions, account names, or any personally identifiable information.
1.4 Information We Do NOT Collect
- Personal Identifiers: We do not collect your name, email address, phone number, or social security number
- Banking Credentials: We do not access your bank accounts, credit cards, or financial institutions
- Location Data: We do not collect your precise location
- Biometric Data: We do not collect fingerprint, face, or other biometric information
- Transaction Descriptions: Transaction descriptions are NOT sent to AI services
- Account Names: Your account names are NOT shared with AI services
2. How We Use Your Information
2.1 Primary Uses
- App Functionality: To provide expense tracking, income management, and financial insights
- Data Storage: To securely store your financial data locally on your device
- Analytics: To generate spending reports, trends, and financial recommendations
- Settings: To remember your preferences and app configuration
2.2 Firebase Services
- Data Storage: Your data is stored securely using Firebase Firestore (backend-only access)
- Authentication: Firebase handles secure user authentication
- Analytics: Firebase provides crash reporting and app performance data
2.3 AI-Powered Financial Insights (Premium Feature)
- Purpose: To generate personalized financial recommendations and insights based on your transaction patterns
- Service Provider: Google Gemini AI (Google Cloud AI service)
- Data Shared:
- Transaction summaries (aggregated totals, averages, percentages)
- Monthly financial breakdowns (income, expenses, savings by month)
- Category and expense-type spending data (amounts and percentages only)
- Transaction metadata (dates, amounts, categories - NO descriptions or account names)
- Language preference (to provide recommendations in your preferred language)
- What is NOT Shared:
- Transaction descriptions or notes
- Account names
- Personal identifiers (name, email, phone)
- Any personally identifiable information
- Consent: AI insights are only generated when you explicitly request them by tapping the "Get AI Insights" button.
- Rate Limiting: AI insights are rate-limited (once per week in production, 5 minutes for testing) to minimize data sharing.
- Data Retention: Transaction data sent to Gemini is processed in real-time and is not stored by Google Gemini after generating the response. We do not retain copies of data sent to Gemini in our logs beyond what is necessary for error handling (typically 30 days).
- Your Control: You can choose not to use AI insights and still access all other app features. Using AI insights is optional and requires your explicit action.
3. Data Storage and Security
3.1 Local Storage
- Primary Storage: All your financial data is stored locally on your device
- Encryption: Sensitive data is encrypted using device-specific encryption keys
- Offline Access: Your data remains accessible even without internet connection
3.2 Cloud Storage (Firebase)
- Secure Access: Only our backend services can access your cloud data
- No Client Access: Your app cannot directly read or write to the cloud database
- Data Isolation: Each user's data is completely isolated and secure
3.3 Security Measures
- Encryption: Data is encrypted both locally and in transit
- Access Control: Strict security rules prevent unauthorized access
- Regular Updates: Security measures are regularly updated and maintained
4. Data Sharing and Disclosure
4.1 We Do NOT Share Your Data With:
- Third parties for marketing or advertising purposes
- Advertisers or data brokers
- Government agencies, unless legally required
4.2 Limited Sharing
- Firebase Services: Processed by Firebase (Google) for app functionality only
- Google Gemini AI: When you request AI insights, anonymized transaction data is shared with
Google Gemini AI to generate financial recommendations. Sharing is:
- Explicit and Opt-In: Only when you tap "Get AI Insights"
- Limited Data: Financial summaries and metadata only
- Purpose-Limited: For your recommendations only
- Rate-Limited: Once per week (production)
- Secure: HTTPS encryption and compliant processing
- Not Retained: Gemini does not store your data after responding
- Legal Requirements: We may disclose data if required by law or to protect rights
- Service Providers: Trusted providers bound by confidentiality and compliant agreements
5. Your Rights and Choices
5.1 Data Control
- Access, edit, delete, or modify your financial records within the app
- Export your data in CSV format
- Delete your account and associated data
5.2 App Permissions
- Storage permission for local data storage
- Network access for Firebase services and data sync
- No additional permissions required
6. Data Retention
6.1 Local Data
- Your data remains on your device until you delete it
- Uninstalling the app removes all local data
- Data does not automatically transfer to new devices
6.2 Cloud Data
- Cloud data is permanently deleted when you delete your account
- Inactive accounts may be deleted after 12 months
- Backups kept 30 days for recovery
7. Children's Privacy
Our App is not intended for children under 13. We do not knowingly collect personal information from children under 13. Contact us if you believe your child provided information.
8. International Users
Your information may be transferred to, stored, and processed in the United States. By using the App, you consent to this transfer.
9. Changes to This Privacy Policy
We may update this Privacy Policy by:
- Posting the new policy in the App
- Updating the "Last Updated" date
- Sending an in-app notification (if applicable)
10. Contact Information
Email: support@easy-finances.com
Website: https://easyfinances.app
Address: [Your Company Address]
11. California Privacy Rights (CCPA)
11.1 Your Rights
- Right to know what personal information we collect, share, and why
- Right to delete your personal information
- Right to opt out of AI data sharing by not using "Get AI Insights"
- Right to correction of inaccurate data
- Right to non-discrimination for exercising your rights
- Right to limit use of sensitive personal information
11.2 Categories of Information We Share
- Category: Financial information
- Shared With: Google Gemini AI
- Purpose: Personalized financial recommendations
- Opt-Out: Do not use "Get AI Insights"
11.3 Exercising Your Rights
Contact support@easy-finances.com. Provide your request type and verification information. Response within 45 days.
12. European Privacy Rights (GDPR)
12.1 Your Rights
- Right of access (Article 15)
- Right to rectification (Article 16)
- Right to erasure (Article 17)
- Right to restrict processing (Article 18)
- Right to data portability (Article 20)
- Right to object (Article 21)
- Right to withdraw consent (Article 7)
12.2 Data Controller and Legal Bases
- Data Controller: [Your Company Name / Contact Information]
- Consent (Article 6(1)(a)) for AI insights
- Contract (Article 6(1)(b)) for app functionality
- Legitimate interest (Article 6(1)(f)) for improvements and analytics
12.3 AI Insights Processing
- Purpose: Personalized financial recommendations
- Legal basis: Explicit consent
- Processor: Google Gemini AI
- Transfer: United States
- Safeguards: SCCs, encryption, GDPR compliance
- Retention: Not stored after response
- Control: Withdraw consent by not using AI insights
12.4 Exercising Your Rights
Email support@easy-finances.com with request and proof of identity. Response within one month. You may also contact your data protection authority.
13. Data Processing Legal Basis
- Consent: AI insights
- Contract: App functionality and subscriptions
- Legitimate interest: App performance, data sync, analytics
- Legal obligation: Compliance with laws
14. Data Transfers
- International Transfers: United States (Firebase, Gemini), European Union regions, and other locations for redundancy
- Safeguards: SCCs, adequacy decisions, binding corporate rules, encryption, access control
- AI Transfers: Explicit consent, purpose limitation, data minimization, no retention, HTTPS security
- Your Rights: Consent/withdrawal without affecting other features
- Impact Assessment: Risks mitigated with SCCs, encryption, limited sharing, no retention, user control