Privacy Policy
Last updated: May 8, 2026
๐
Stripe key encrypted
AES-256-GCM at rest. Never transmitted in plaintext after storage.
๐
Read-only access
We never request write access to your Stripe account. We can't touch your money.
๐
Delete anytime
Request full account and transaction deletion by emailing support.
1
What we collect
- Account credentials: email address and bcrypt-hashed password.
- Stripe restricted API key: encrypted at rest with AES-256-GCM. Decrypted only at sync time; never logged or transmitted in plaintext.
- Stripe transaction data: balance transactions, charges, payouts, refunds, and fees imported from your Stripe account into our database.
- IP address: used for rate limiting on public endpoints. Not stored long-term.
- Usage metadata: report generation timestamps, sync timestamps. No behavioral tracking or session recordings.
2
What we do NOT collect
- Card numbers, bank account details, or payment credentials of any kind.
- PII of your customers. We see transaction descriptions from Stripe, not customer records.
- Write access to your Stripe account. The restricted key we store is read-only.
- Third-party advertising or marketing pixels (no Facebook Pixel, Google Ads tags, etc.).
3
How we use your data
- To sync your Stripe transactions daily and categorize them using AI.
- To generate and email your monthly profit & loss report.
- To power your AutoPNL dashboard (transactions, review queue, reports).
- To send transactional emails (account verification, broken-key alerts, monthly reports). No marketing emails without consent.
- To enforce rate limits and prevent abuse.
4
Subprocessors
| Service | Purpose | Region |
|---|---|---|
| Dedicated Server | Application hosting and database | EU |
| PostgreSQL | Database, all user and transaction data | EU |
| Anthropic (Claude API) | AI transaction categorization, transaction descriptions sent | US |
| Resend | Transactional email delivery | US |
| Polar | Subscription billing (Merchant of Record) | US |
| Stripe | Read-only API access to your Stripe account | US |
Transaction descriptions are sent to Anthropic for categorization. No PII about your customers is intentionally included, but descriptions may contain merchant names.
5
Data retention
Account data and imported transactions are retained as long as your account is active. You may request deletion of your account and all associated data at any time by emailing support@autopnl.com. We will process deletion requests within 14 days.
6
Your rights
- Access: request a copy of all data we hold about you.
- Deletion: delete your account and all data (dashboard, Settings, Delete, or email support).
- Export: download your transaction history as CSV from the Reports page at any time.
- Correction: contact us to correct inaccurate account data.
7
Contact
Questions about this policy or your data? support@autopnl.com