Last updated: July 20, 2026
At Finansify, privacy is not an afterthought - it is how the product is designed. This Privacy Policy explains what data we process, why, on what legal basis, and what rights you have. It is provided as the information required by Articles 13 and 14 of the GDPR.
In short: your financial data is yours. We never sell your personal data, we never connect to your bank, and you decide what enters the application.
The controller of your personal data is ITQ Solutions Przemysław Kukulski, ul. Doniecka 5d/4, 42-612 Tarnowskie Góry, NIP: 645-21-34-096 ("Finansify", "we").
For any questions about this Privacy Policy or to exercise your rights, contact us at: privacy@finansify.pl
We only collect data that you provide or that is necessary to run the Service. We never ask for your online banking credentials.
We process your data for the following purposes, each with its legal basis under the GDPR:
Your data, including your financial records, is stored in our database on servers located in the European Union (Hetzner, Finland). It is protected by strict access controls, encrypted connections, and infrastructure that undergoes independent security audits.
Finansify does not connect to your bank. We never ask for, receive, or store your online banking login or any bank API credentials. Data enters the application in exactly two ways: you type it in, or you upload a file you have prepared yourself (such as a CSV statement exported from your bank). This is a deliberate design choice - you can review every file before uploading it and you always know exactly what Finansify holds, because you put it there.
We use a small number of carefully selected service providers that process data on our behalf under data processing agreements:
We use Stripe to process payments. Your payment card details are handled directly by Stripe and never reach our servers. See Stripe's Privacy Policy .
We use SparkPost to send transactional emails. Your email address is shared with SparkPost solely for the purpose of delivering these messages.
Our web application is delivered via Cloudflare, which processes technical connection data (such as your IP address) to serve the site and protect it against attacks.
Receipt scanning and AI assistant features run on our own infrastructure in the EU. No user data is sent to external AI model providers.
We never sell your personal data. Nobody outside Finansify can see your transactions.
We may create anonymized, aggregated statistics from usage of the Service - for example, "the average price of a given product across stores in a given area". These statistics are built so that no individual person can be identified from them, and once anonymized they are no longer personal data.
We use such aggregated insights to:
What is shared is never your data - it is statistics about many users combined, with all identifying information removed. Your name, email, account and individual transactions are never part of it.
We retain your data as follows:
Under the GDPR, you have the right to:
To exercise these rights, contact us at privacy@finansify.pl or use the data export feature in your account settings. We respond within one month.
You also have the right to lodge a complaint with a supervisory authority. In Poland, this is the President of the Personal Data Protection Office (Prezes Urzędu Ochrony Danych Osobowych, ul. Stawki 2, 00-193 Warszawa, uodo.gov.pl).
Finansify automatically categorizes transactions and generates financial insights to help you understand your finances. These are informational features only - we do not make any decisions about you based solely on automated processing that would produce legal effects or similarly significantly affect you.
We protect your data with security measures that are independently audited, including:
No online service can guarantee absolute security, but limiting what we collect in the first place - no bank credentials, no automatic account access - means there is simply less that could ever be exposed.
Your data is stored in the European Union. Some of our providers (such as Stripe, SparkPost or Cloudflare) may process limited data outside the European Economic Area. In such cases we ensure appropriate safeguards are in place, such as the EU–US Data Privacy Framework or Standard Contractual Clauses.
Our Service is not intended for children under 16. We do not knowingly collect personal information from children under 16. If you believe we have collected data from a child, please contact us immediately.
We may update this Privacy Policy from time to time. We will notify you of material changes via email or in the application before they take effect, and we will update the "Last updated" date on this page. See also our Terms of Service and Cookie Policy.
If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at: privacy@finansify.pl