Privacy Policy
Your financial records are stored locally on your device by default. We do not upload your financial records to our servers unless you explicitly choose a cloud-powered feature such as AI financial insights.
Who we are
PrivatePocket ("the app") is provided by privatePocket LLC ("we", "us"). This policy explains what information the app processes, where it goes, and the choices you have. Effective date: 2026-10-02.
Information stored only on your device
PrivatePocket does not require an account. The following information is created by you and stored in a database on your device. It is not sent to us:
- Transactions, income, expenses, transfers, refunds and adjustments, including amounts, dates, payees, notes and tags
- Accounts and wallets, balances, categories and currencies
- Budgets, savings goals, bills, debts and payments
- Shopping lists, tasks, reminders and habits
- Your optional nickname, monthly income and financial goal
- App settings and preferences
Device protections
Android's automatic cloud backup is disabled for PrivatePocket so your database is not copied to a cloud account without your action. If you turn on the app lock, a salted hash of your PIN is stored in Android's secure keystore-backed storage; the PIN itself is never stored. Biometric checks are performed by Android; we never receive biometric data.
Optional AI Financial Coach
The AI Financial Coach is optional. Nothing is sent to it until you choose what it may see on the AI data sharing screen and then ask a question. You choose one of three levels, and you can change or turn it off at any time in Privacy Center:
With "Share my data" you also choose which types of records are included: transactions (with payees, from the last 90 days), transaction notes, accounts and balances, budgets, savings goals, bills, debts, shopping lists, and tasks and habits. Only the types you select are sent.
Whatever level you choose, you may also attach specific records or type details to a single question; only what you attach is added to that question.
Data is sent over an encrypted connection (HTTPS/WSS) to our AI service, which calculates insights from it and passes it with your question to our AI provider, Google (Gemini API), to generate the answer. It is used only to answer your request. It is not used for advertising, not sold, and not used to train AI models. Our AI service does not store your questions, your data or the answers. The AI provider processes them under its commercial API terms, which may include short-term retention for abuse and safety monitoring.
To run the service we keep only counters and technical records: a one-way hash of an anonymous installation ID, your plan, monthly AI usage, rewarded-question credits, request time, status and response time. These contain no financial content and are kept up to 30 days (usage counters until the end of the following month).
- Share my data: the record types you select, so the coach can give personal insights
- Share totals only: income and spending totals, spending per category, budgets and goals for the period
- Don't share my data: only your questions (general answers)
What is never sent for AI
The app never sends your PIN or biometric data, backups or the database file, contacts, photos or location, or any type of record you did not select. Nothing is sent in the background: data leaves your device only when you ask the AI Coach a question.
Advertising (Free plan)
On the Free plan, the app shows ads provided by Google AdMob. To deliver and measure ads and prevent fraud, Google may process device and network information such as your device advertising ID, IP address, device model and ad interactions, under Google’s own privacy policy. Where required by law (for example in the EEA, the UK and Switzerland), we ask for your consent before personalised ads are shown, and you can change your choice later in Privacy Center. You can also reset or delete your advertising ID in Android settings.
Ad formats used: banners, full-screen ads at natural breaks (for example after saving or when leaving a report), ads when you return to the app after a break, and optional rewarded ads. If you choose to watch a rewarded ad for a free AI question, the app’s anonymous installation ID is passed to Google so Google can confirm the reward to our server; it contains no financial information. Ads are never shown when you exit the app. Your financial records are never shared with advertising partners, and ads are not targeted using your financial data. The Basic and Premium plans remove ads.
Subscriptions
Purchases are processed by Google Play. We use RevenueCat to verify subscriptions; it receives purchase receipts, product and subscription status, and an anonymous app user ID. We do not receive your payment card details.
Diagnostics and analytics
This version of PrivatePocket does not include third-party analytics or crash-reporting SDKs. If this changes, we will update this policy and the in-app Privacy Center before the change takes effect, and financial data will never be included in diagnostics.
Notifications
Reminders are scheduled locally on your device. We do not use push notifications or push tokens.
Your choices and rights
You control your information:
- Export: Settings → Backup & restore lets you export all records as JSON or transactions as CSV, and create encrypted backups.
- Delete: Settings → Backup & restore → Delete local data permanently erases all records on the device. Uninstalling the app also removes them.
- AI: turn AI data sharing off in Privacy Center at any time. Because our AI service does not store your requests, there is no stored AI content to delete; you can ask us to delete the hashed technical records linked to your installation by contacting us or using “Delete AI data” in the app.
- Depending on where you live, you may have rights to access, correct, delete or object to processing of personal data. Contact us to exercise them.
Children
PrivatePocket is not directed at children under 13 (or the minimum age in your country) and we do not knowingly collect information from them.
Security
We use HTTPS for all network communication, keep secrets off the device, and design our services to avoid storing financial content. No method of storage or transmission is completely secure, so please protect your device and any backup files you create.
Changes
We may update this policy. Material changes will be shown in the app before they take effect.
Contact
Questions or requests: felixkipkiruikerich@gmail.com