Privacy Policy

Last updated July 2026

Ledger is a personal finance tracker. Your financial data is yours — this policy explains what we store, how we protect it, and the control you have over it. We do not sell your data, and we do not show you ads.

What we collect

Account info: your name and email address, provided by Google when you sign in.

Financial data you enter: the accounts, transactions, balances, categories, budgets, goals, assets, and notes you create. We only ever store what you choose to add.

How your data is protected

Isolation: every row is scoped to your user account and enforced by database Row-Level Security, so no other user — and no unauthenticated request — can read your data.

Encryption at rest: sensitive text — account numbers and names, institutions, merchant descriptions, people, and notes — is encrypted with AES-256-GCM before it is stored. The encryption key lives only in the application environment and is never kept in the database, so a database dump alone reveals nothing readable.

In transit: all traffic is served over HTTPS with strict transport security.

Authentication

Sign-in is handled through Google OAuth. We never see or store your Google password — only the name and email Google shares after you approve.

Service providers

We rely on a small set of processors to run the app:

  • Supabase — database and authentication.
  • Google — sign-in (OAuth).
  • Vercel — application hosting.
  • GoldAPI — live gold prices. No personal or financial data is sent; only the metal and currency are requested.

We do not share your data with anyone else, and we never sell it.

Cookies

We use a single secure session cookie to keep you signed in. There are no advertising or third-party tracking cookies.

Your rights

You can view and edit all of your data in the app at any time. You may request a full export or permanent deletion of your account and its data by emailing us — deletion is irreversible.

Contact

Questions about privacy? Reach us at .