Privacy Policy
Last updated: December 7, 2025
1. Introduction
Tiny Cashflow ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our personal finance tracking application ("the Service").
2. Information We Collect
We collect only the information necessary to provide and improve the Service:
Account Information
- Email address (for account creation and communication)
- Password (securely hashed, never stored in plain text)
Financial Data You Enter
- Transaction descriptions and amounts
- Account names and balances
- Income and expense categories
- Notes and labels you add
Important: We do NOT have access to your bank accounts. All financial data in Tiny Cashflow is manually entered by you.
Technical Information
- Device type and operating system (for app compatibility)
- Error logs (to fix bugs and improve the Service)
3. How We Use Your Information
We use your information solely to:
- Provide and maintain the Service
- Sync your data across devices (Premium feature)
- Send important account notifications
- Respond to your support requests
- Improve the Service based on usage patterns
We do NOT:
- Sell your data to third parties
- Use your data for advertising
- Share your financial information with anyone
- Analyze your spending for marketing purposes
4. Data Storage and Security
Your data security is our priority:
- All data is encrypted in transit (HTTPS/TLS)
- Data is stored on secure, encrypted servers
- Passwords are hashed using industry-standard algorithms
- We regularly review and update our security practices
Free tier users can use the Service in offline-only mode, where data stays entirely on their device.
5. Third-Party Services
We use a limited number of trusted third-party services:
- Paddle: Our payment processor and Merchant of Record. Paddle handles all payment processing, billing, and tax compliance. They receive only the information necessary to process payments. See Paddle's Privacy Policy.
- Hosting Provider: Our cloud infrastructure provider stores encrypted data according to industry security standards.
6. Your Rights
You have full control over your data:
- Access: View all data stored in your account at any time
- Export: Download your complete data in standard formats
- Correction: Update any information in your account
- Deletion: Delete your account and all associated data permanently
- Portability: Take your data with you if you leave
To exercise these rights, use the settings in your account or contact us at support@tinycashflow.com.
7. Data Retention
We retain your data only as long as necessary:
- Active accounts: Data is retained while your account is active
- Deleted accounts: All data is permanently deleted within 30 days
- Cancelled subscriptions: Your data remains accessible until you delete your account
8. Cookies
We use minimal, essential cookies only:
- Authentication cookies: To keep you logged in
- Preference cookies: To remember your settings
We do NOT use tracking cookies, advertising cookies, or third-party analytics that track your behavior across websites.
9. International Data Transfers
If you access the Service from outside our server locations, your data may be transferred internationally. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.
10. GDPR Compliance (EEA Users)
If you are in the European Economic Area, you have additional rights under GDPR:
- Right to be informed about data processing
- Right to restrict processing
- Right to object to processing
- Rights related to automated decision-making
Our legal basis for processing your data is the performance of a contract (providing the Service you signed up for) and legitimate interests (improving the Service).
11. CCPA Compliance (California Users)
If you are a California resident, you have the right to:
- Know what personal information is collected
- Know whether your personal information is sold or disclosed
- Say no to the sale of personal information
- Access your personal information
- Request deletion of your personal information
- Not be discriminated against for exercising your rights
We do not sell personal information.
12. Children's Privacy
The Service is not intended for users under 16 years of age. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal information, please contact us.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. For significant changes, we will notify you via email.
14. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Email: support@tinycashflow.com