Introduction
Welcome to Financial Aggregator ("we," "our," or "us"). We respect your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our financial aggregation service.
By using our service, you agree to the collection and use of information in accordance with this Privacy Policy.
1. Information We Collect
1.1 Personal Information You Provide
When you create an account, we collect:
- Name: Your full name for account identification
- Email Address: For account authentication and communication
- Password: Encrypted using bcrypt (we never store plain-text passwords)
1.2 Financial Data via Third-Party Services
We use Plaid Inc. and Teller.io to connect your bank accounts. When you link your bank:
Data We Store:
- Account mask (last 4 digits only, e.g., "••••1234")
- Account type (checking, savings, credit card)
- Account balances (current and available)
- Transaction details (date, amount, merchant, category)
- Institution name (e.g., "Chase Bank")
Data We DO NOT Store:
- Full account numbers
- Routing numbers
- Social Security Numbers (SSN)
- Credit card CVVs
- PINs or security questions
- Bank login credentials
2. How We Use Your Information
We use your information to:
- Authenticate your identity
- Display your account balances and transactions
- Categorize and analyze your spending
- Generate financial insights and budgets
- Send transaction notifications
- Improve our service
- Detect and prevent fraud
3. How We Share Your Information
3.1 Third-Party Service Providers
We share your information with trusted third-party services:
3.2 What We Never Do
- ❌ We never sell your personal data to third parties
- ❌ We never show you ads based on your data
- ❌ We never share your data without your consent (except as required by law)
4. How We Protect Your Information
We implement industry-standard security measures:
- Encryption: All data transmitted over HTTPS/TLS 1.3
- Bank tokens: Encrypted with AES-256-GCM
- Passwords: Hashed with bcrypt (never stored in plain text)
- Access controls: Role-based access control (RBAC)
- Monitoring: 24/7 security monitoring and audit logs
5. Your Privacy Rights
You have the right to:
- Access: View your personal information
- Correction: Update or correct inaccurate data
- Deletion: Delete your account and associated data
- Export: Download your data in CSV or PDF format
- Opt-out: Unsubscribe from marketing emails
6. Contact Us
If you have questions about this Privacy Policy, please contact us:
Email: privacy@financial-aggregator.com
Response Time: We will respond within 30 days
7. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
Questions?
If you have any questions or concerns about our privacy practices, please don't hesitate to reach out.
Back to Home