Sub-processors
Every third party that touches data in Finance Dashboard is listed here. There are no others.
| Provider | What it does | What it processes | Privacy policy |
|---|---|---|---|
| Plaid Inc. | Financial account aggregation | Institution credentials (entered directly with Plaid, never with this app), accounts, balances, transactions, investment holdings and investment transactions | plaid.com/legal |
| SimpleFIN Bridge | Financial account aggregation | Institution credentials (entered directly with SimpleFIN, never with this app), accounts, balances, transactions | simplefin.org |
| Google LLC | OAuth sign-in (openid, email scopes); Generative Language API (Gemini) used to read text from uploaded receipts and suggest a category |
Operator's Google account email address; receipt image content sent for text extraction | policies.google.com/privacy |
| Cloudflare, Inc. | Hosting (Workers), database (D1), object storage (R2), key-value store (KV), DNS and TLS | All application data at rest and in transit | cloudflare.com/privacypolicy |
| Open Food Facts | Public product database, queried by barcode when a barcode is read from a receipt | The barcode number only — no account, financial, or personal data | openfoodfacts.org/privacy |
Notes
- No analytics or advertising provider appears in this list, because none is used. The application code contains no Google Analytics, Google Tag Manager, Plausible, PostHog, Segment, Mixpanel, Amplitude, Sentry, Hotjar, or Microsoft Clarity integration.
- The Finance Dashboard web interface loads the Inter typeface from
Google Fonts (
fonts.googleapis.com), which means the operator's browser makes a request to Google when loading the app. No application data is sent in that request. This legal site itself loads no external resources at all — system fonts only. - This legal site sets no cookies and runs no JavaScript.
- Changes to this list are published on this page.