Back to home

Privacy Policy

Last updated: December 2025

Our Privacy Philosophy

Boring Money is built differently. We don't connect to your bank accounts, we don't use financial data aggregators, and we don't know your real financial situation unless you tell us.

All the financial data in Boring Money is manually entered by you. This means we never see your actual bank transactions, account balances, or spending patterns from your bank. We only see what you choose to track.

We believe this approach is better for your privacy and for your financial awareness. When you manually track your expenses, you become more mindful of your spending habits.

1. Introduction

Boring Money ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our personal finance management application.

2. Information We Collect

2.1 Information You Provide

  • Account information: email address, password (hashed)
  • Profile information: name, preferred currency, timezone
  • Financial data: income, expenses, budgets, goals, investments (manually entered by you)
  • Payment information: processed securely by Stripe, we do not store card details

2.2 Information Collected Automatically

When you use Boring Money, the following information is automatically collected and stored:

  • IP address of the requesting device
  • Date and time of access
  • Browser type and operating system
  • Pages visited and actions taken within the application

3. No Bank Connection - Privacy by Design

Boring Money is designed with privacy as a core principle. Unlike many financial apps, we deliberately chose not to integrate with bank connections or financial data aggregators.

3.1 Manual Data Entry Only

All financial data in Boring Money is manually entered by you. We have no access to your bank accounts, credit cards, or any external financial systems. This means your financial data cannot be linked to your real-world banking identity.

3.2 Minimal Identity Requirements

We require a working email address for account recovery and important notifications. However, we don't care if it's your "real" email. You're free to use privacy-focused aliases such as SimpleLogin, Firefox Relay, or any email forwarding service. Your display name is purely cosmetic and used only to personalize your experience within the app.

4. How We Use Your Information

We use your information to:

  • Provide and maintain the Boring Money service
  • Process your transactions and manage your subscription
  • Send you important updates about your account or the service
  • Improve our application based on usage patterns
  • Provide customer support
  • Detect and prevent fraud or abuse

5. Sharing Your Data

We do not sell, rent, or lease your personal data to anyone. Your data will only be shared with third-parties in compliance with the principle of "data minimisation" and in the following cases:

  • You gave explicit consent
  • This is required for the performance of the service (e.g., payment processing)
  • This is required to assert, exercise or defend legal claims and there is no reason to believe that you have an overriding interest in not disclosing your data
  • We are obliged to do so pursuant to applicable law, including by subpoenas, warrants, or other orders issued by courts or other state authorities

5. Legal Basis (GDPR)

Article 6(1)(b) GDPR: Performance of Contract

We process your data to fulfil our contractual obligations to you, including providing the Boring Money service and managing your subscription.

Article 6(1)(f) GDPR: Legitimate Interests

In some situations, processing may be necessary for the purposes of our legitimate interests, such as improving our service, ensuring security, and preventing fraud.

Article 6(1)(a) GDPR: Your Consent

In some situations, we base the processing of your data on your consent. You can withdraw your consent at any time by contacting us at privacy@boring-money.app.

6. Keeping Your Data Safe

We have implemented reasonable technical and organisational measures designed to secure your data from accidental loss and from unauthorised access, use, alteration or disclosure.

  • Encryption of data in transit (TLS/SSL)
  • Secure password hashing
  • Access controls and authentication

7. Location of Our Servers

Our servers are located in the European Union. Your data may be stored and used elsewhere depending on the location of third-parties who are permitted to access and process such data under the terms of this Privacy Policy. We only transfer your data to third countries outside the EU/EEA if adequate safeguards are in place, such as Standard Contractual Clauses (SCC) or an adequacy decision by the European Commission.

8. Cookies

We do not use cookies for tracking purposes and rely on them solely for essential features such as authentication. Cookies are small text files that are stored on your device and allow us to provide basic functionality. Legal basis for the use of cookies for essential features is our legitimate interest of website functionality (Article 6(1)(f) GDPR).

9. Third-Party Services

Stripe (Payment Processing)

We use Stripe to process payments. Your payment information is handled directly by Stripe and is subject to their Privacy Policy. We do not store your card details.

Sentry (Error Monitoring)

We use Sentry, a third-party error monitoring service, to help us diagnose and fix issues with our application. When errors occur, Sentry collects information such as the error message, device and browser information, and IP address. This information is used solely for the purpose of identifying and resolving issues and is not shared with any other third-party services. Sentry is committed to protecting the privacy and security of the data it collects. By using Boring Money, you acknowledge that we may use Sentry to collect and process error data in accordance with this policy.

Cloudflare (Infrastructure)

We use Cloudflare for content delivery, DDoS protection, and security. Cloudflare acts as a reverse proxy, meaning your requests pass through their servers before reaching ours. Cloudflare may collect certain technical data such as IP addresses and request metadata. For more information, see their Privacy Policy.

AI Providers (Pro Features)

For Pro features such as receipt scanning and the AI assistant, we may use third-party AI services. Data sent to these services is processed according to their privacy policies and is not stored permanently by these providers.

10. Retention Period

Your personal data is retained for as long as your account is active. Upon account deletion, we will delete your personal data within 30 days, unless retention is required by law (e.g., financial records for tax purposes) or for ongoing administrative or legal proceedings.

11. Your Rights

Under the General Data Protection Regulation, you have the following rights:

  • Right to access (Article 15 GDPR): Request a copy of your personal data
  • Right to rectification (Article 16 GDPR): Correct inaccurate personal data
  • Right to erasure / "right to be forgotten" (Article 17 GDPR): Request deletion of your personal data
  • Right to restrict processing (Article 18 GDPR): Limit how we process your data
  • Right to data portability (Article 20 GDPR): Export your data in a machine-readable format
  • Right to object (Article 21 GDPR): Object to certain processing activities
  • Right to lodge a complaint (Article 77 GDPR): File a complaint with a Data Protection Supervisory Authority

To exercise these rights, contact us at privacy@boring-money.app

12. Children's Privacy

Boring Money is not intended for users under 16 years of age. We do not knowingly collect personal information from children.

13. Changes to This Policy

This Privacy Policy may be amended from time to time. If we amend it, we will place an updated version here. Regularly reviewing this Privacy Policy ensures that you are always aware of what information we collect, how we use it and under what circumstances we will share it with other parties. If we make any substantial changes in the way we use your data, we will notify you by posting a prominent announcement or by contacting you directly via email.

14. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us at:

Email: privacy@boring-money.app