Legal
Privacy Policy
Effective July 5, 2026
This Privacy Policy explains what information Earmarkr collects, how we use it, who we share it with, and the choices you have. Earmarkr is a personal-finance app, so protecting your data is central to what we do.
Information we collect
We collect only what we need to run your budget:
- Account information — the email address and password you use to sign in. Passwords are hashed with Argon2id and are never stored or visible in plain text.
- Financial information — the accounts, balances, and transactions you add manually or connect through our bank-sync provider, Plaid, plus the budget structure, categories, allocations, and goals you create.
- Security information — your two-factor (TOTP) enrollment and an append-only audit log of sensitive actions, used to keep your account safe.
- Usage and device information — basic technical data such as IP address, browser type, and diagnostic logs, used to operate and secure the service. Sensitive values are never written to logs.
We do not ask for or store your online banking username or password. When you connect a bank, Plaid establishes and holds that connection on your behalf.
How we use your information
- To provide the service — importing transactions, computing your budget, reserves, reports, and payoff projections, and keeping accounts in sync.
- To secure your account — authentication, two-factor verification, fraud and abuse prevention, and audit logging.
- To support you — responding to your questions and troubleshooting issues you report.
- To improve Earmarkr — understanding aggregate, de-identified usage so we can make the product better.
- To comply with law — meeting legal, tax, and regulatory obligations.
We do not sell your data
We do not sell your personal or financial information, and we do not share it with advertisers. Your budget is yours. We only share data with the limited service providers described below, and only as needed to operate Earmarkr.
How we protect your information
Sensitive secrets are protected with AES-256-GCM envelope encryption, passwords use Argon2id, two-factor authentication is required, and every sensitive action is written to an append-only audit log. See our Security page for more detail.
Data retention
We keep your information for as long as your account is active. If you close your account, we delete or de-identify your personal and financial data within a reasonable period, except where we are required to retain certain records to comply with law.
Your choices and rights
- Access and export — you can view and export your data from within the app at any time.
- Correction — you can edit your accounts, transactions, and budget directly.
- Deletion — you can disconnect a bank connection or close your account, which removes the associated data as described above.
- Communication — you can opt out of non-essential emails while still receiving important account and security notices.
Depending on where you live, you may have additional rights under laws such as the GDPR or CCPA. Contact us to exercise them.
Changes to this policy
We may update this policy as Earmarkr evolves. When we make material changes, we will update the effective date above and, where appropriate, notify you in the app or by email.
Contact us
Questions about privacy? Reach us at the privacy contact below and we will be glad to help.
Reach the team at [email protected] or visit our Contact page.