Privacy Policy
Effective date: June 4, 2026 · Last updated: June 4, 2026
1. Who We Are
BudgetPH is a personal finance platform operated by Kindlyf (kindlyf.com), accessible at budget.kindlyf.com. When this policy says “we,” “us,” or “our,” it refers to Kindlyf.
For privacy-related inquiries, contact us at [email protected].
2. What Data We Collect
We collect only what is necessary to provide the Service:
Account Data
- Email address (required for account creation and login)
- Password (stored as a bcrypt hash — we never see your plaintext password)
- Account preferences (theme, notification settings, subscription plan)
Financial Data You Enter
- Income entries: amounts, sources (Salary, Freelance, OFW Remittance, etc.), dates
- Expense entries: bills, credit cards, installments, non-essentials, shared expenses
- Paluwagan group data: member names, pot amounts, payment rounds
- Loan/Utang records: lender/borrower names, amounts, repayment history
- Government benefit contributions: SSS, Pag-IBIG, PhilHealth amounts
- CSV import data: transaction records uploaded from GCash or Maya
Usage and Technical Data
- Login timestamps and session data
- Browser and device type (for PWA compatibility)
- Error logs (to diagnose and fix bugs)
- MCP API key activity logs (call counts, rate limit tracking)
Payment Data
When you subscribe to Pro or Household, payment is processed by PayMongo. We do not store your GCash, Maya, or card details. PayMongo provides us with subscription status, plan tier, and renewal dates only.
3. How We Use Your Data
We use your data exclusively to provide and improve BudgetPH:
- To operate the Service: Store and display your budget data, calculate your Budget Credit Score, generate your monthly dashboard, and send email digests.
- To manage your subscription: Verify plan eligibility, enforce feature limits, and process renewals through PayMongo.
- To power AI features: Generate AI Spending Insights using aggregated totals (see Section 5). Enable MCP AI agent access using your API key.
- To improve the Service: Analyse anonymised, aggregated usage patterns to fix bugs and prioritise features.
- To communicate with you: Send account-related emails (password resets, subscription confirmations, monthly digests). We do not send marketing emails without your consent.
We do not use your data for targeted advertising, sell it to data brokers, or share it with third parties except as described in Section 6.
4. CSV Import Data
When you upload a GCash or Maya CSV file:
- The file is processed on our servers to parse and categorise transactions.
- Parsed transaction records are stored in your account as expense entries.
- The original CSV file is not retained after processing is complete.
- Transaction descriptions are used locally for keyword-based auto-categorisation. They are not sent to any AI model or external service.
5. AI Spending Insights — What Gets Sent to AI
The AI Spending Insights feature generates monthly spending analysis using an AI model via OpenRouter. We are deliberate about what data is included:
The AI response is stored in your account and displayed on your dashboard. Insights are generated at most once per month per user and only when you have sufficient data.
OpenRouter’s own privacy policy governs how they handle the anonymised prompt data on their side.
6. MCP API Keys
The MCP (Model Context Protocol) feature lets compatible AI agents access your budget data via an API key you generate.
- API keys are bcrypt-hashed before storage — we cannot recover your plaintext key.
- If you lose your key, you must revoke it and generate a new one from Account Settings.
- We log MCP call counts per hour for rate-limit enforcement. We do not log the content of individual MCP requests or responses.
- You are solely responsible for the security of your API key. Treat it like a password.
7. Data Sharing and Third Parties
We share your data with the following third parties only as necessary to operate the Service:
- PayMongo: Processes subscription payments. Receives only the minimum data needed to complete a transaction (email, plan type). BSP-regulated. PayMongo Privacy Policy.
- OpenRouter: Receives anonymised, aggregated budget totals for AI Insights only (see Section 5).
- Railway / Hosting provider: Our infrastructure provider stores encrypted data on our behalf under a data processing agreement.
- Upstash: Provides Redis-based rate limiting for MCP API calls. No financial data is stored here — only call counts and timestamps.
We do not share your data with advertisers, analytics platforms (e.g. Google Analytics), or any other third party not listed above.
8. Data Security
We take security seriously:
- All data is transmitted over HTTPS/TLS.
- Passwords are hashed with bcrypt (never stored in plaintext).
- MCP API keys are bcrypt-hashed before storage.
- Database access is restricted to the application server; no public database endpoints are exposed.
- We conduct periodic security reviews of the codebase and infrastructure.
No system is perfectly secure. If you discover a security vulnerability, please disclose it responsibly to [email protected] before public disclosure.
9. Data Retention
We retain your data for as long as your account is active. When you delete your account:
- Your financial data, account details, and generated insights are permanently deleted within 30 days.
- Anonymised, aggregated statistics derived from your data (e.g., category spending averages) may be retained in aggregate form and cannot be attributed back to you.
- We may retain records required by law (e.g., payment transaction records) for up to 7 years in compliance with Philippine accounting and tax regulations.
10. Your Rights
As a user, you have the right to:
- Access: Request a copy of the personal data we hold about you.
- Correction: Update incorrect information directly in the app or by contacting us.
- Deletion: Delete your account and all associated data at any time from Account Settings, or by emailing [email protected].
- Export: Pro and Household users can export their budget data as PDF or Excel from the dashboard. All users may request a data export by emailing us.
- Objection: Object to any processing of your data that you believe is not justified under these terms.
To exercise any of these rights, contact us at [email protected]. We will respond within 15 business days.
11. Cookies and Local Storage
BudgetPH uses minimal browser storage:
- Session cookies: Used for authentication (NextAuth.js session tokens). Required for the Service to function.
- Local storage: Stores your theme preference (light/dark) locally on your device. This data never leaves your browser.
- Service Worker cache: Enables offline PWA functionality by caching app assets on your device.
We do not use third-party tracking cookies, advertising cookies, or analytics cookies.
12. Children's Privacy
BudgetPH is not intended for users under 13 years old. We do not knowingly collect personal data from children under 13. If you believe a child under 13 has created an account, please contact us at [email protected] and we will delete the account promptly.
Users aged 13–17 must have parental or guardian consent before using the Service.
13. Changes to This Policy
We may update this Privacy Policy as the Service evolves. When we make material changes, we will update the effective date above and notify active users via email. Your continued use of BudgetPH after the update constitutes acceptance of the revised policy.
We will never make changes that reduce your privacy rights without giving you the option to delete your account first.
14. Governing Law
This Privacy Policy is governed by the laws of the Republic of the Philippines, including the Data Privacy Act of 2012 (Republic Act No. 10173) and its implementing rules and regulations.
15. Contact Us
For privacy questions, data requests, or to report a concern:
- Email: [email protected]
- Website: kindlyf.com
We aim to respond to all privacy requests within 15 business days.