enMoney

Privacy Policy

Effective date: 6 October 2026

Overview

enMoney is a private household finance tracking application. We take your financial privacy seriously. This policy explains what data we collect, how we use it, and what controls you have.

Short version: Your financial data belongs to you. We don't sell it, share it with advertisers, or use it for anything other than running the app.

What Data We Collect

Account data — your email address and password (stored securely via Supabase Auth). If you sign in with Google, we receive only your email and name.

Financial data you enter — account balances, transactions, investment holdings, property values, salary entries, and super details. All of this data is entered by you voluntarily.

Business details — if you track a business, its name, tax treatment, and optionally its ABN. The ABN is optional and only used to file uploaded bills to the right business. For a sole trader an ABN is linked to you personally on the public ABN Lookup register, so we treat it as personal information. We do not collect your TFN.

Uploaded documents — receipts, invoices, payslips, bank statements, and property statements you upload are stored in encrypted cloud storage. These documents often contain your name, address, and identifiers such as an ABN, and are read to extract dates, amounts, and merchants.

Broker and fund statements — a CSV, Excel or PDF you import on the Investments page is read in memory to extract the transactions, then discarded. The file itself is never saved to storage, and only the resulting transactions (date, security, units, price) are kept. CSV and Excel files, and PDFs from the brokers we have written a reader for, never leave our servers. A PDF from a broker we do not yet recognise is sent to Google Gemini to be read, the same way bank statements are — the import tells you on screen when that happens, and you review every row it produces before anything is saved.

Billing data — if you choose a paid plan, Stripe collects your card details and billing name, email and country on its own payment page. We never see or store your full card number. We keep your plan, its renewal date, and the Stripe reference for your subscription, so the app knows what you have paid for.

Usage data — we log storage usage (file counts and sizes) to manage your plan limits. We do not track page views or clicks for analytics.

What We Don't Collect

  • No third-party advertising or tracking pixels
  • No sale of your data to any third party
  • No profiling, and no automated decision-making that affects your rights. Uploaded bills may be categorised or filed to a business automatically (for example by matching an ABN), which you can review and change at any time.
  • No access to your bank accounts — bank data is entered manually or by file import, and enMoney never holds a bank login. Optional broker connections read holdings and trades only; they cannot place an order or move money (see Security)

How We Store Your Data

Your data is stored in Supabase (PostgreSQL), hosted on servers in the US/EU region. Data is encrypted at rest and in transit (TLS). The security page covers the controls in detail — row-level separation between accounts, how broker credentials are sealed, who can read what, and what is not true yet.

Family Vault notes are encrypted end-to-end using AES-256-GCM with PBKDF2 key derivation. Your vault password never leaves your device — even we cannot read your vault notes.

Tax accountant portal links are user-generated, time-limited, and read-only. You control what data is included and when the link expires.

Referral links — if you create one to invite someone you know, we record that you created it. When it is used, we record which account signed up with it and that account's email address, so we can see who referred whom. That record is visible only to the people who run enMoney. The person you send it to sees your first name only if you choose to show it, and you are never told whether they signed up.

Accountant codes — if you join with, or later add, a code from an accountant who refers clients to enMoney, we record which code you used and when you agreed. Only with that agreement, that accountant can be told your name, that you joined, and whether you are on a paid plan, so they can be paid a referral commission. They are never shown your financial data. You can remove the code in Settings → Billing until your first payment.

Who We Share Your Data With

We use the following third-party infrastructure providers to operate the service:

  • Supabase — database and authentication hosting
  • Vercel — application hosting and edge functions
  • Stripe — payment processing for paid plans: card details, billing name, email and country, invoices and receipts. Stripe handles the card; it is never sent to our servers
  • Resend — transactional email delivery: invitations, two-factor security notices, tax packs you choose to email, messages from us about your account, and internal notices to the people who run the service (for example, that a referral link was used)
  • Google Gemini — document parsing for payslips, receipts and invoices, bank and property statements, and broker statements in a PDF format we do not recognise. The full document you upload is sent to Google's API to extract fields such as date, merchant, amount, currency and ABN. Google does not retain the document after processing and does not use it to train models. Uploading a document is what sends it — nothing is sent unless you upload it.
  • AI answers (Google Gemini, and Ollama until 20 October 2026) — when you ask Ask enMoney a question, the question and the figures it looks up to answer it (account balances, loans, properties, salary and super) are sent to the AI provider to write that one answer. Nothing is sent unless you ask, and we do not keep the conversation. Google does not use it to train models. Until 20 October 2026 an answer may instead come from Ollama's cloud service, which we are moving off; after that date only Gemini is used. Stock research sends only public market data about a company — never who holds it or anything about you.

We do not share your data with any other third parties.

Data Retention

Your data is kept for as long as your account is active. If you delete your account:

  • Your financial records and uploaded documents are permanently deleted within 30 days
  • Authentication records are deleted immediately
  • We do not retain any backups of your personal data beyond 30 days after deletion
  • If you ever paid for a plan, your invoices and payment records stay with Stripe, and the Stripe reference with us, for as long as Australian tax law requires us to keep business records (currently five years). They hold no financial data from your account

Your Rights

You have the right to:

  • Export your data — use the Tax Export feature to download your records as CSV
  • Delete your account — contact us at the email below and we will delete all your data within 30 days
  • Correct your data — all records in the app can be edited or deleted by you directly

Cookies

We use only essential session cookies required for authentication. We do not use marketing cookies, analytics cookies, or any third-party tracking cookies.

Changes to This Policy

If we make material changes to this policy, we will notify users via email before the changes take effect. The effective date at the top of this page will always reflect the latest version.

Contact

If you have questions about this policy or want to exercise your data rights, contact us at: support@enmoney.app

Terms of ServiceSign In