Last updated: July 4, 2026
Privacy Policy
Saldo (“the app”, “we”, “us”) is a personal income and expense tracker. We handle financial data, so we take privacy seriously. This policy explains what we collect, why we collect it, and how you can control it.
1. Information We Collect
Account information
- Email address — required to create and access your account.
- Display name — optional; you can leave this blank.
- OAuth identifiers — if you sign in with Google or Apple, we receive a unique identifier and email from that provider. We do not receive your Google or Apple password.
Financial data you enter
- Transactions (date, amount, type, category, optional note)
- Categories and category groups you create
- Loan records — amounts, parties, repayment history (these are private to your account)
- Opening balance and balance date
- Reminder settings and scheduled notification times
Preferences
- Base currency, language, theme, display preferences — stored in your profile.
Technical data
- Authentication tokens managed by our backend provider (Supabase).
- App-level data cached on your device for offline use (stored only on your device; wiped on sign-out).
We do not collect analytics data, advertising identifiers, crash reports, or browsing behaviour.
2. How We Use Your Information
- To provide the Saldo service and sync your data across devices.
- To send push notifications you explicitly configure (daily spending reminders, loan due-date alerts). You can disable these at any time in Settings.
- To authenticate you and secure your account.
We do not sell your data, share it with advertisers, or use it to train AI models.
3. Data Storage & Security
Your data is stored in a PostgreSQL database managed by Supabase. Every table is protected by Row-Level Security (RLS) — a database-level policy that ensures your records are accessible only to you, even in the event of a software bug. Data is encrypted at rest and in transit (TLS 1.2+).
On mobile devices, a local offline cache (SQLite key-value store) is kept on your device only. This cache is cleared when you sign out.
4. Third-Party Services
We use Supabase (supabase.com) for database, authentication, and edge functions. Supabase processes data on our behalf under their privacy policy.
If you use Google or Apple sign-in, those providers process your authentication. We receive only the minimal identifier they expose.
No other third-party services receive your data.
5. Data Retention
Your data is retained for as long as your account is active. When you delete your account, all your personal data — transactions, categories, loans, profile, and authentication credentials — is permanently and irreversibly deleted from our production systems.
Supabase infrastructure backups may retain a copy for up to 7 days after deletion as part of their standard disaster-recovery cycle. After that window, no copy of your data exists anywhere in our systems.
6. Your Rights
- Access & export — export your transactions in Excel or CSV format at any time from Settings → Data.
- Correction — edit any transaction, category, or profile field directly in the app.
- Deletion — delete your account and all associated data from Settings → Danger Zone. See also our account deletion guide.
- Portability — use the Excel export to take your data to any other tool.
If you are in the European Economic Area, you have additional rights under the GDPR, including the right to lodge a complaint with your local supervisory authority.
7. Children’s Privacy
Saldo is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us data, contact us at dzenan.kosuta14@gmail.com and we will delete it promptly.
8. Changes to This Policy
We may update this policy as the app evolves. Material changes will be communicated via an in-app notice. The “Last updated” date at the top of this page always reflects the current version.
9. Contact
For any privacy questions or requests, contact us at dzenan.kosuta14@gmail.com. We respond within 30 days.