Privacy Policy

MoneyTrove privacy policy

Effective date: July 13, 2026

MoneyTrove is designed as a private, local-first personal finance app. This policy explains what information the app handles and how it is used.

We do not transfer or disclose your information to third parties for purposes other than the ones provided

Financial data

Accounts, transactions, categories, budgets, goals, imports, and settings are stored on your device. MoneyTrove does not sell personal data.

Google/Gmail data

If you connect Gmail, MoneyTrove uses Google Sign-In and requests the Gmail read-only permission https://www.googleapis.com/auth/gmail.readonly. This access is used only to find and read messages matching filters you configure, such as labels and sender addresses for statement emails or transaction alerts.

MoneyTrove uses Gmail message data to import statements, transaction notifications, sender details, subjects, dates, filenames, and import results into your local MoneyTrove data. MoneyTrove does not sell Google user data, use it for ads, use it for credit scoring or lending decisions, or use it to train AI models.

MoneyTrove does not share, transfer, or disclose Google user data to any third party. Google user data is accessed and processed only on your device by the MoneyTrove app to provide the Gmail import features you choose. MoneyTrove's developer and servers do not receive or have access to your Gmail messages or other Google user data.

Backups and sync

If you enable iCloud backup or export features, your data is written to destinations you control, such as your private iCloud container or files you choose to export.

Statement and file imports

MoneyTrove processes statements, CSV files, and other import data that you explicitly choose. Some parser features may send extracted statement text to the MoneyTrove parsing service to turn it into structured transactions. Do not import files you do not want processed for that purpose.

Protection of sensitive data

MoneyTrove protects sensitive data by keeping finance records local-first in the app data container, using Google OAuth for Gmail authorization, requesting read-only Gmail access, and sending network requests over HTTPS. The MoneyTrove parsing service is protected by bearer-token authentication and rate limits.

Server logs are intentionally limited to request metadata such as request id, route, status, token prefix, source, page count, transaction count, verification status, and elapsed time. Gmail message bodies, PDF text, parsed transactions, full bearer tokens, and bank passwords are not written to server logs.

Retention and deletion of Google user data

Gmail data is retained only as needed to provide the import features you choose. MoneyTrove may keep your connected Gmail account email, configured Gmail labels and sender filters, imported transactions or statements created from Gmail messages, and local Gmail sync history entries such as message id, subject, sender, email date, account name, source type, filename, result, error text, transaction count, and processed date.

Temporary PDF downloads are deleted after Gmail import processing. Gmail sync history is stored locally and pruned by the app. Disconnecting Gmail removes the stored Gmail connection preferences from MoneyTrove and stops future Gmail access. You can delete imported transactions, statements, files, accounts, backups, and app data from MoneyTrove or your device. For help with deletion requests, contact [email protected].

Support

If you email support, the information you provide is used to respond to your request. Avoid sending bank statements, passwords, or sensitive financial documents unless specifically requested for troubleshooting.

Contact

For privacy or support questions, contact [email protected].