1. Introduction
Welcome to Finova ("we," "us," or "our"). Finova is a privacy-first personal budgeting application designed to help you track expenses, manage budgets, set financial goals, and receive AI-powered insights. This Privacy Policy explains how we collect, use, store, and protect your information when you use the Finova mobile application and website (collectively, the "Service").
By using Finova, you agree to the practices described in this policy. If you do not agree, please discontinue use of the Service.
2. Information We Collect
2.1 Financial Data
Finova allows you to manually log transactions, create budgets, and set savings goals. This data includes:
- Transaction amounts, categories, notes, and dates
- Budget allocations and spending limits
- Financial goal names, target amounts, and progress
- Recurring payment schedules
Important: Finova does not link to your bank accounts or access your financial institution data. All financial information is entered manually by you.
2.2 Account Data
If you create an account (optional for core features), we may collect:
- Email address (for sign-in via email, Google, or Apple)
- Authentication identifiers (managed securely via AWS Cognito)
- Subscription tier and billing status (managed via RevenueCat)
2.3 Analytics Data
We use PostHog for product analytics. We collect anonymized, non-personally-identifiable usage events such as:
- Feature usage patterns (e.g., which screens are visited)
- App performance metrics
- Crash and error reports
We do not log personally identifiable information (PII), financial amounts, transaction details, or category names in analytics.
3. How We Use Your Data
We use the information we collect to:
- Provide core budgeting functionality (tracking, budgets, goals, dashboard)
- Generate AI-powered insights and coaching (for eligible subscription tiers)
- Sync data across devices (for Pro and Ultra subscribers)
- Improve app performance and user experience
- Process subscription payments
- Respond to support requests
4. Data Storage & Security
4.1 Offline-First Architecture
Finova is built with an offline-first design. Your financial data is stored locally on your device using a SQLite database. The app is fully functional without an internet connection — you can track expenses, manage budgets, and view your dashboard entirely offline.
4.2 Cloud Sync (Paid Tiers)
If you subscribe to Finova Pro or Ultra and enable cloud sync, your data is encrypted in transit (TLS) and stored securely in user-scoped cloud storage. Local data remains authoritative until merged, and conflict resolution is handled safely to prevent data loss.
4.3 Security Measures
We implement the following security practices:
- Encryption in transit for all network communications
- User-scoped data isolation in cloud storage
- Least-privilege entitlements for app capabilities
- No logging of PII or financial details on our servers
- Sanitized analytics that contain no sensitive information
5. Third-Party Services
Finova integrates with the following third-party services:
- AWS Cognito — Authentication and user identity management
- Amazon Bedrock — AI model inference for insights and coaching. Only aggregated, anonymized financial context is sent; no raw transaction details or PII are transmitted.
- PostHog — Product analytics (anonymized, no PII)
- RevenueCat — Subscription and in-app purchase management
- Apple App Store / Google Play — App distribution and payment processing
Each third-party service operates under its own privacy policy. We encourage you to review their policies.
6. Data Retention & Deletion
Your financial data lives on your device and is under your control. You can delete all data at any time via Settings > Clear All Data in the app.
If you use cloud sync, you can request deletion of your cloud data by contacting us at privacy@finovaai.app. We will process deletion requests within 30 days.
If you delete your account, all associated cloud data will be permanently removed within 30 days.
7. Your Rights Under GDPR (EEA Users)
If you are located in the European Economic Area (EEA), you have the following rights under the General Data Protection Regulation (GDPR):
- Right of Access — Request a copy of your personal data
- Right to Rectification — Correct inaccurate personal data
- Right to Erasure — Request deletion of your personal data
- Right to Restrict Processing — Limit how we use your data
- Right to Data Portability — Receive your data in a portable format
- Right to Object — Object to processing based on legitimate interests
To exercise these rights, contact us at privacy@finovaai.app. We will respond within 30 days.
Legal Basis for Processing: We process your data based on (a) your consent, (b) performance of a contract (providing the Service), and (c) our legitimate interest in improving the Service while maintaining your privacy.
8. Your Rights Under CCPA (California Residents)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to Know — Request disclosure of categories and specific pieces of personal information collected
- Right to Delete — Request deletion of your personal information
- Right to Opt-Out — Opt out of the sale of your personal information. Finova does not sell your personal data.
- Right to Non-Discrimination — We will not discriminate against you for exercising your CCPA rights
To submit a CCPA request, contact us at privacy@finovaai.app.
9. Children's Privacy
Finova is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such data, we will delete it promptly. If you believe a child under 13 has provided us with personal information, please contact us at privacy@finovaai.app.
10. International Data Transfers
If you use cloud sync features, your data may be processed in servers located outside your country of residence (including the United States). We ensure appropriate safeguards are in place, including standard contractual clauses where applicable, to protect your data in compliance with applicable data protection laws.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you through the app or by updating the effective date at the top of this page. Your continued use of Finova after changes are posted constitutes acceptance of the updated policy.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your data, please contact us:
- Email: privacy@finovaai.app