Legal
This policy explains what finall AI collects, why, and what we never touch. For the technical detail behind these claims, see Security & Trust.
1.
2.
3.
Your data is used only to operate finall AI for you: rendering your accounts, spending, and net worth; detecting duplicate or jointly-held accounts across connections; matching linked cards to our rewards catalog; powering the cash-flow planner; and improving product reliability and usability through first-party analytics with sensitive-value redaction. We do not use your financial data to train shared models, and we do not sell or rent your data to anyone.
4.
We share data with Plaid, Inc. solely to retrieve information from your linked institutions, and with our cloud infrastructure providers (hosting, database, encryption key management) solely to run the service. We do not share your data with advertisers, data brokers, or any other third party, and we do not sell it.
5.
Plaid access tokens are encrypted at rest with AES-256-GCM. All traffic is encrypted in transit (TLS). Passwords are hashed with scrypt — we never store them in plain text. Every household-scoped query is filtered by household, so data from one household is never visible to another. See Security & Trust for independently verifiable detail.
6.
7.
finall AI is not directed to anyone under 18, and we do not knowingly collect data from children.
8.
If this policy changes materially, we will update the date below and, where required, notify you directly.
9.
Questions about this policy or your data: security@finallai.com