Privacy Notice

Last updated: January 5, 2026

1. Introduction

This Privacy Notice explains how CoupleCents collects, uses, and protects personal data. We are committed to transparent data practices and respecting your privacy.

CoupleCents is designed with privacy in mind:

  • Open-source: Our code is publicly available for audit
  • Minimal collection: We collect only what's necessary to operate the Service

2. Data Controller

Eugenio Garcia is the data controller and operator of CoupleCents.

3. Information We Collect

If You Self-Host or Use Locally

If you self-host CoupleCents or use it entirely locally, we do not collect any data. All information stays on your device or your own servers.

If You Use the Hosted Service

If you use the hosted version of CoupleCents, we may collect:

  • Account Information: Email address, name, profile picture (optional)
  • Financial Data: Transactions, categories, budgets, and notes you voluntarily input
  • Technical Data: IP address, browser type, device type, access logs, timestamps
  • Communication Data: Messages you send us (support inquiries, feedback)

What We Do NOT Collect

We do not collect or store:

  • Credit card numbers or banking credentials
  • Passwords
  • Location data
  • Behavioral tracking or browsing history
  • Data for advertising or marketing purposes

4. How We Use Your Data

We process personal data to:

  • Provide and maintain the Service
  • Enable account authentication and security
  • Store and sync your financial data
  • Respond to your inquiries and provide support
  • Improve functionality, features, and user experience
  • Comply with legal obligations

We do not use your data for:

  • Commercial advertising or marketing
  • Selling or sharing with data brokers
  • Behavioral profiling
  • Building predictive models about your finances

5. Legal Basis for Processing

We process your data based on:

  • Consent: You explicitly agree to processing by using the Service
  • Contract: Processing is necessary to provide the Service you requested
  • Legitimate Interest: We have a legitimate interest in improving security and service quality
  • Legal Obligation: Where required by applicable law

6. Data Security

We implement reasonable technical and organizational measures to protect personal data, including:

  • Encryption in transit (HTTPS/TLS)
  • Encrypted storage for sensitive data
  • Secure authentication mechanisms
  • Regular security reviews
  • Access controls and monitoring

However, no system is completely secure. We cannot guarantee absolute security, and you use the Service at your own risk.

7. Data Retention

We retain personal data only as long as necessary to:

  • Provide the Service
  • Fulfill the purposes described in this notice
  • Comply with legal requirements

When you delete your account, we will delete your data within 30 days, except where:

  • Legally required to retain it
  • Data is anonymized and cannot identify you
  • You have a pending transaction or dispute

8. Data Sharing

We do not sell or share your personal or financial data with third parties for profit.

We may share data only with:

  • Service providers: Hosting providers, database services, and infrastructure partners who are contractually bound to protect your data
  • Legal requirements: Government authorities or law enforcement, but only when legally required (with notice where possible)
  • Your explicit consent: If you authorize us to share specific data

9. International Data Transfers

The Service may be hosted on servers located in various countries. When your data is transferred across borders, we apply appropriate safeguards to ensure your data remains protected according to this Privacy Notice.

By using the Service, you acknowledge that your data may be processed internationally.

10. Your Rights

Depending on your location, you may have the right to:

Access

  • Request a copy of all personal data we hold about you
  • Receive it in a portable, machine-readable format

Rectification

  • Correct or update inaccurate data
  • Request incomplete data be completed

Erasure ("Right to be Forgotten")

  • Request deletion of your data in most circumstances
  • Some data may be retained for legal or operational reasons

Restriction

  • Request we limit how we use your data

Objection

  • Object to processing of your data
  • Withdraw consent at any time

Complaint

  • File a complaint with your local data protection authority

To exercise any of these rights, please message us at: LinkedIn: Eugenio Garcia

We will respond to requests within 30 days.

11. Cookies & Analytics

Analytics

We may use privacy-respecting analytics tools to understand aggregate usage patterns (e.g., which features are used most). These tools do not:

  • Track individual user behavior
  • Enable cross-site tracking
  • Build user profiles
  • Use cookies for advertising

Cookies

We may use minimal cookies for:

  • Session management (keeping you logged in)
  • Language preferences
  • User interface settings

You can disable cookies in your browser settings. This may limit some functionality.

Third-Party Analytics

If we use third-party analytics, it will be limited and privacy-focused, such as:

  • Plausible Analytics
  • Fathom Analytics
  • Similar privacy-first providers

12. Children's Privacy

CoupleCents is not intended for children under 18 years old. We do not knowingly collect data from children.

If you are under 18 and believe we have collected your data, please contact us immediately.

If you are a parent or guardian and believe a child has provided information, please contact us.

13. Changes to This Privacy Notice

We may update this Privacy Notice periodically. When we make material changes:

  • We will post the updated notice on the Service
  • We will update the "Last updated" date
  • If changes significantly reduce your privacy protections, we will notify you via email

Your continued use of the Service constitutes acceptance of the revised Privacy Notice.

14. Open-Source Transparency

CoupleCents is developed in the open. Our source code is publicly available on GitHub, allowing you to:

  • Review how data is handled
  • Audit security practices
  • Verify privacy claims
  • Report security issues responsibly

Repository: https://github.com/egarcia-p/couple-cents

15. Contact

For privacy-related inquiries, questions, or to exercise your rights, please contact:

GitHub: egarcia-p
LinkedIn: Eugenio Garcia

We will respond to all inquiries within 30 days.


Disclaimer: This Privacy Notice is provided for informational purposes and does not constitute legal advice. For compliance in your specific jurisdiction, consult with a qualified legal professional.

Last updated: January 5, 2026