Privacy Policy

Last updated: April 12, 2026

1. Information We Collect

We collect the following types of information:

  • Account information: email address and display name when you sign up.
  • Financial data: transactions, budgets, goals, recurring bills, income sources, and assets you enter or import. Bank statement PDFs you upload are processed to extract transaction data and are not stored after processing.
  • Scanned documents and receipts: images or PDFs of receipts and bills you scan are processed to extract relevant data and are not retained after extraction.
  • Voice input: when you use the AI Voice feature, your voice is recorded and transmitted to Google (Gemini) for speech processing. We do not store raw audio recordings on our servers.
  • AI chat messages: text messages you send to the AI assistant, along with relevant financial context needed to respond, are processed by our AI provider. Chat history is stored on our servers to enable conversation continuity.
  • Device and notification data: push notification tokens to send you bill reminders, weekly summaries, and account alerts.
  • Usage data: how you interact with the app, including features used and session duration, to help us improve the service.

2. How We Use Your Information

  • To provide and improve the SoyFin service
  • To categorize transactions and generate spending insights
  • To power AI chat and voice features with relevant financial context
  • To send push notifications (bill reminders, weekly summaries, account alerts)
  • To enable household features where you choose to share data with members
  • To send important account and service updates
  • To respond to support requests

3. Third-Party AI Services

SoyFin uses third-party AI providers to power the AI Voice and AI Chat features. Your permission is requested before these features are activated. The following explains exactly what data is sent, to whom, and how it is used.

AI Voice — Google Gemini

Who receives your data: Google LLC, via the Gemini API.

What is sent: When you use the AI Voice feature, the following data is transmitted to Google Gemini:

  • Your voice audio recording (captured while you hold the mic button)
  • A summary of your current financial context (e.g. recent transactions, current budget balances, active goals) needed to generate a relevant response
  • Your display name, to personalize responses

How it is collected: Audio is recorded only while you actively hold the microphone button in the app. Financial context is pulled from your account at the time of each request.

How it is used: Google Gemini transcribes your voice, processes your query in context, and returns a text or audio response. The audio recording is not stored by SoyFin after transmission.

Google provides data protection standards equivalent to or exceeding industry requirements. Google's handling of this data is governed by the Google Privacy Policy and the Gemini API Terms of Service.

AI Chat — Text Assistant

Who receives your data: Google LLC, via the Gemini API.

What is sent: When you send a message to the AI Chat assistant, the following data is transmitted:

  • Your text message
  • Your conversation history with the assistant (to maintain context)
  • Relevant financial data from your account needed to answer your query (e.g. recent transactions, budget totals, goal progress) — only the minimum required for each request
  • Your display name

How it is collected: Data is sent each time you submit a message in the AI Chat screen. You initiate every request.

How it is used: The AI provider uses this data solely to generate a response to your query. Your full transaction history is never sent in bulk — only the subset relevant to your question.

The AI Chat feature is powered by Google Gemini. Google provides data protection standards equivalent to or exceeding industry requirements. Their handling of this data is governed by the Google Privacy Policy and the Gemini API Terms of Service.

Important: We do not use your personal or financial data to train AI models. Data sent to Google Gemini is used only to respond to your in-session request and is subject to Google's data retention policies, not ours.

4. Household Data Sharing

If you create or join a household, certain financial data (such as shared transactions and budgets) will be visible to other members of that household. You control what you share. Leaving or removing a household stops further data sharing with those members.

5. Data Security

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Access to user data is restricted to authorized personnel only, and we conduct regular security audits. Given the sensitive nature of financial data, we apply industry-standard best practices to protect your information.

6. Data Sharing with Third Parties

We do not sell, rent, or share your personal or financial data with third parties for marketing purposes. We may share data only in the following cases:

  • With your explicit consent
  • To comply with legal obligations or court orders
  • With AI service providers (see Section 3) strictly for feature functionality
  • With infrastructure providers (cloud hosting, database) under strict data protection agreements

7. Data Retention

We retain your data for as long as your account is active. If you delete your account, we will remove your personal and financial data within 30 days, except where retention is required by law. Push notification tokens are removed immediately upon account deletion or notification opt-out.

8. Your Rights

You have the right to:

  • Access your personal data
  • Request correction of inaccurate data
  • Request deletion of your data
  • Export your data in a portable format (CSV export available on Pro plan)
  • Opt out of push notifications at any time via device settings
  • Withdraw consent at any time

To exercise any of these rights, contact us at help@soyfin.com.

9. Children's Privacy

SoyFin is not directed at children under the age of 13 (or 16 in the EU). We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal information, we will delete it promptly. If you believe a child has submitted data to us, contact us at help@soyfin.com.

10. Cookies

We use essential cookies to keep you logged in and maintain your preferences. We use analytics cookies to understand how the app is used. You can manage cookie preferences in your browser settings.

11. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of significant changes via email or an in-app notification. Continued use of the Service after changes constitutes acceptance of the updated policy.

12. Contact

For privacy-related questions or requests, contact us at help@soyfin.com

For subscription and billing terms, see our Terms & Conditions.