Last updated: June 13, 2026

Privacy Policy

Ledgerplot ("we", "us") provides a personal finance app that helps you consolidate bank statements, receipts, and manually logged transactions. This policy explains what data we collect, why, and how you can control it.

Contact: legal@ledgerplot.com

1. Data we collect

  • Account data — email address and authentication identifiers required to create and sign into your account.
  • Financial data you upload — bank statements (PDF/CSV) and receipts you choose to upload, plus transactions you log manually. We parse these into structured transactions (date, description, amount, category).
  • App data — budgets, categories, learned categorization rules, and your display-currency preference.
  • Chat messages with Penny, our in-app assistant, including the tool results returned by your account.
  • Operational logs — minimal request logs used to keep the service running, detect abuse, and debug errors.

We do not ask for, store, or transmit your online banking credentials. We do not connect to your bank.

2. Why we process your data (legal basis under GDPR)

  • Contract — to provide the service you signed up for (categorizing your statements, showing dashboards, running Penny).
  • Legitimate interest — to keep the service secure, prevent abuse, and improve reliability.
  • Consent — for optional features that require it (for example, opt-in analytics, if introduced later).

3. Sub-processors

We rely on a small set of vendors to operate the service:

  • Lovable Cloud — hosting, database, authentication, and file storage.
  • Lovable AI Gateway — the routing layer for all LLM calls (transaction categorization, statement and receipt parsing, Penny chat). Inputs are not used to train third-party models.

We do not have a direct relationship with any third-party model provider. All AI requests go through the Lovable AI Gateway under our account.

What we send to the AI Gateway

  • Transaction descriptions and amounts (for categorization).
  • Extracted text from uploaded statements and receipts (for parsing into transactions).
  • Your chat messages to Penny and the tool results from your account.

We never send banking credentials — we don't have any.

4. Retention

We retain your data for as long as your account is active. When you delete your account, your personal data is deleted within 30 days, except where we are required to retain it for legal or accounting reasons.

5. Your rights

Wherever you live, you can ask us to access, correct, export, or delete your data. Under GDPR (EEA/UK), CCPA/CPRA (California), and similar laws you also have rights to object to or restrict certain processing, and to lodge a complaint with your local data protection authority.

The fastest way to exercise these rights is from the app: Settings → Privacy & data. You can export your data as a JSON file and delete your account from there. For anything else, email legal@ledgerplot.com.

6. Cookies

We use cookies and similar storage only to keep you signed in. We do not currently use advertising, cross-site tracking, or third-party analytics cookies.

7. Children

Ledgerplot is not directed at children under 16. If you believe a child has given us personal data, contact us and we will delete it.

8. International transfers

Your data may be processed in countries other than where you live, including the United States and the European Union, by our sub-processors. We rely on standard safeguards (e.g. Standard Contractual Clauses) where required.

9. Security

Data is encrypted in transit and at rest. Per-user row-level security ensures other customers cannot read your data. No system is perfectly secure — if you spot an issue, please contact us.

10. Changes

We may update this policy. Material changes will be announced in-app or by email. Continued use after an update means you accept the new policy.