Privacy Policy

Last updated June 23, 2026

Financial Dashboard is a personal finance dashboard operated by an individual ("the operator"). It is invite-only and handles sensitive financial data. This page explains, in plain language, what is collected, how it is stored, who can access it, and how to have it deleted. By requesting access and using Financial Dashboard, you consent to the practices described here.

What we collect

  • Account info — your name and email from Google sign-in (via Supabase Auth).
  • Bank transactions — when you connect a US bank through Plaid, or upload a BCP statement, we store the resulting transactions (date, description, amount, category). Raw PDF statements are not retained — only the parsed transactions.
  • Bank access tokens — Plaid issues a token that lets Financial Dashboard read your connected accounts on your behalf; it is stored to keep balances in sync.
  • Investments — holdings you import from a Fidelity CSV (ticker, quantity, value, gains).
  • Access requests — the email (and optional note) you submit on the landing page, plus your IP address for abuse prevention.

How it's used

Your data is used solely to power your own dashboard: aggregating accounts, computing net worth and spending, and generating AI insights you explicitly request. It is never sold, and it is not used for advertising.

Third parties

Financial Dashboard shares data with these processors only as needed to function:

  • Supabase — database, authentication, and hosting of your data.
  • Plaid — secure connection to US bank accounts.
  • Anthropic (Claude) — generates AI insights. Only a pre-summarized snapshot of your finances is sent, on explicit request.
  • Google — sign-in.
  • Resend — delivers access-request notifications to the operator.
  • Vercel — application hosting.

Storage & security

Data is stored in a Supabase (PostgreSQL) database. Every table enforces row-level security: signed-in users can only ever read or write their own rows, so one user can never see another user's data. Traffic is served over HTTPS, and API keys are kept server-side.

Who can access your data

Be aware: as the database administrator, the operator has technical access to all stored data, including your transactions and bank tokens. This is inherent to running any hosted service — your data is not hidden from the operator. It is accessed only to run and maintain Financial Dashboard, never shared, and never sold. If that level of trust isn't right for you, please don't connect a live account.

Retention & deletion

Your data is kept while your account is active. You can request deletion of your account and all associated data at any time, and connected bank tokens can be revoked so Financial Dashboard loses access immediately. To do so, email the operator (below).

Contact

Questions, data requests, or deletion: lucasruiz1336@gmail.com.

Changes

This policy may be updated as Financial Dashboard evolves; the date at the top reflects the latest version.

← Back to Financial Dashboard