Privacy policy
Last updated: April 2026
Who we are
Spendium (“we”, “us”) provides personal finance software that helps you track spending, plan cash flow, and use optional AI features. This policy explains how we handle personal data when you use our website and product.
What data we collect
Account data: email, name, locale, and authentication identifiers you provide when you sign up.
Financial data you enter: transactions, categories, budgets, bills, notes, and files such as receipt images you upload.
Technical data: device/browser type, IP address, and basic logs needed for security and reliability.
Support messages you send us may be stored to respond and improve the service.
How we use data
To provide the product: compute insights, safe-to-spend style signals, reminders, and assistant responses based on your inputs.
To operate the business: billing, fraud prevention, customer support, and product analytics in aggregate form.
To communicate: transactional emails (receipts, security alerts) and optional product updates where permitted.
Legal basis (where applicable)
Where GDPR-style laws apply, we rely on contract (delivering the service you requested), legitimate interests (security, improvement), and consent where required (for example certain marketing cookies or optional features).
Cookies and analytics
We use essential cookies for sessions and security. We may use limited, privacy-respecting analytics on the marketing site to understand traffic. You can control non-essential cookies through your browser and any cookie banner we provide.
Payments
Payments are processed by third-party providers (for example card processors or mobile financial services). We receive confirmation of payment status but not your full card or MFS PIN. Their privacy policies also apply.
Storage, transfers, and retention
Data may be stored on cloud infrastructure in secure facilities. If data moves across borders, we use appropriate safeguards where required by law.
We retain information while your account is active and for a limited period afterward for legal, tax, and security needs, then delete or anonymize it consistent with our retention schedule.
Third-party services
We use subprocessors for hosting, email delivery, analytics, payments, and AI inference. We choose vendors with strong security practices and limit data shared to what they need to perform their role.
Your rights
Depending on your location, you may have rights to access, correct, delete, export, or restrict certain processing of your personal data. Contact us using the details below to exercise these rights.
Children’s privacy
Spendium is not directed to children under 13 (or the minimum age in your jurisdiction). We do not knowingly collect data from children.
Account deletion and export
Where available in the product, you can export or delete your data. Deletion may take a short time to propagate across backups. Some billing records may be retained as required by law.
Contact
For privacy questions or requests, contact the Spendium team through the support channel listed on the website or in the product.
Changes
We may update this policy from time to time. We will post the new date at the top and, when appropriate, notify you in the product or by email.