Scope
This policy describes how Purple Apps LTDA (CNPJ 68.148.554/0001-74), the company behind MyMoney ("MyMoney", "we", "us"), collects, uses, and protects information when you use mymoneyapp.io, the installable web app, and related services (together, the "Service"). It applies to everyone who visits the site or holds a MyMoney account, and to the members of any household workspace you share.
By using the Service you agree to the practices set out here. If you do not agree with this policy, please do not use the Service.
Information we collect
We collect as little as the Service can run on. Information falls into a few groups.
Account information
The details you give us when you sign up: name, email address, and profile picture. Sign-in is handled by our authentication provider, so passwords and one-time codes never reach our servers; with social sign-in we receive only the name and email your provider shares.
Billing information
If you subscribe, your card details go directly to our payment processor. We never see or store card numbers. We keep your customer reference, plan, subscription status, billing period, and the country and currency you were billed in.
Financial data you enter
Bank accounts, credit cards, transactions, categories, statements, income, goals, budgets, and the members and contents of any household you create or join. This is data you type in or import from CSV/XLSX files. MyMoney has no bank connections, so we never receive or store bank credentials, and nothing in the Service can move money.
Integrations you connect
If you connect Google Calendar in Settings, we store an encrypted access token so the app can create and update calendar events for the bills you choose. We read nothing else from your calendar. Disconnecting removes the token.
Preferences and technical data
Your language, theme, and display preferences; standard server logs (IP address, browser, timestamps); and the country our hosting edge reports for a request, used to pick a default language and billing currency. Technical data is never joined to your financial data for analysis.
Cookies and analytics
We set the cookies needed to keep you signed in and to remember your language, theme, and cookie choice. On the public pages only (homepage, guide, contact, this page) and only after you opt in through the cookie banner, we use Google Tag Manager (Google Analytics) to measure visits and sign-ups, and the Meta Pixel to measure the performance of our own advertising; Google reCAPTCHA protects the contact form. You can accept or refuse each category separately, and change your choice at any time from the "Cookie preferences" link in the footer. Browsers that send the Global Privacy Control signal are treated as having refused. These tools receive page views and technical identifiers. They never receive your financial records: transactions, balances, goals, and account names are not sent to any analytics or advertising service, and none of these scripts load inside the signed-in app.
| Category | How it is stored and who can read it |
|---|---|
| Account information | Encrypted at rest. Readable by our systems for authentication, billing, and support. |
| Financial data | Encrypted in transit and at rest in our database. Read only by the app on your behalf; not analysed, sold, or shared. |
| Integration tokens | Encrypted with a separate key before storage; deleted when you disconnect. |
| Technical data | Server logs kept for a short rolling window (at most 90 days); analytics data held by the providers named in section 7. |
What we never do
This section is a commitment, not a description of current practice that we may quietly change. Any change to it will be announced at least 30 days before it takes effect.
- We do not sell, rent, or trade your information to anyone, for any price, under any circumstance.
- We do not analyse your financial data for our own ends: no categorising for resale, no credit or risk scoring, no behavioural profiling, no training of machine-learning models on your records.
- We do not show advertising inside the app, and we do not share your financial data with advertising networks. Analytics on the site measure visits and sign-ups, not what you record.
- We do not ask for bank credentials and cannot move money. Everything in MyMoney is entered or imported by you.
- We do not browse your records. Access to production systems is limited to what running the service, helping you when you ask, and investigating abuse require, and every access is logged.
The insights, tips, and analytics you see in the app are computed from your own data, for you. They are never compared with, or shared with, other users.
How we use information
We use the information we hold for a short, specific list of purposes:
- To create and secure your account, and to authenticate you when you sign in.
- To provide the features you use: dashboards, statements, calendars, goals, exports, household sharing, and the integrations you connect.
- To process subscription payments, apply your plan's limits, and send receipts.
- To provide support when you contact us, using only what you choose to share in that conversation.
- To keep the Service reliable and secure, using server logs and aggregated technical data.
- To send service messages such as security alerts, billing notices, and material changes to this policy. We do not send marketing email unless you opt in, and you can opt out at any time.
We do not use your information for automated decision-making that produces legal or similarly significant effects.
Households and shared data
Your Personal workspace is private to you. When you create or join a household, everything created inside it (accounts, cards, transactions, goals, categories) is visible to every member of that household, and each member's name and email is visible to the others. Nothing crosses between your personal workspace and a household.
Leaving a household, or being removed from it, ends your access to it. Data you added while you were a member stays with the household, because it describes shared finances. Owners can delete a household entirely, which deletes its data for everyone.
Security and encryption
Everything between your device and MyMoney travels over TLS. Data is encrypted at rest in our database and backups. Integration tokens are additionally encrypted with a key held separately from the database. Sign-in and session security are provided by a dedicated authentication provider.
Access to production systems is restricted to the people who operate the Service, protected by strong authentication, and logged. Nobody at MyMoney opens your records to look at them; access happens only to keep the Service running or to help you when you ask.
If a security incident ever affects your information, we will notify affected users and the relevant authorities without undue delay, in line with the LGPD and GDPR.
You can add a layer of your own: masking balances in Settings hides amounts on screen until you choose to reveal them, and a full export lets you keep your own copy at any time.
Retention and deletion
We keep your account and financial data for as long as your account is open. You can export everything as CSV or XLSX from the app whenever you like, and re-import it later. Technical logs are deleted on a short rolling window of at most 90 days. Integration tokens are deleted the moment you disconnect the integration.
To delete your account, email us from the address on the account. We erase your account and all financial data within 30 days, and backups age out within 90 days. We retain only the invoicing records that tax and accounting law require, which do not include your transactions.
Your rights
Depending on where you live, you have the right to access, correct, export, restrict, or delete your personal information, and to object to certain processing. Under Brazil's LGPD you may also confirm that we process your data, ask about the parties we share it with, and revoke consent. Most of these you can exercise directly in the app: editing your data, exporting it in full, and disconnecting integrations. For everything else, contact us and we will act within the legal deadline.
Residents of Brazil may lodge a complaint with the ANPD; residents of the EEA and UK with their supervisory authority. Residents of California may exercise rights under the CCPA/CPRA; we do not sell or share personal information as those terms are defined. We will never discriminate against you for exercising a privacy right.
International transfers
MyMoney is operated from Brazil and hosted with providers whose infrastructure is in the United States. When your data is transferred outside your country, it is protected by the safeguards each law requires (such as standard contractual clauses) and by the commitments in this policy.
Children
The Service is not directed to anyone under 16, and we do not knowingly collect information from children. If you believe a child has given us information, contact us and we will delete it.
Changes to this policy
We may update this policy as the Service evolves. Minor clarifications take effect when posted. Any material change, and any change at all to section 3, "What we never do", will be announced by email and in the app at least 30 days before it takes effect. Previous versions remain available on request.
Contact us
Questions about this policy, or about how your information is handled, come straight to us. We answer every message.