Privacy Policy

Last updated: April 14, 2026

1. Information We Collect

When you use Broke, we collect information you provide directly (email, name, preferences) and financial data you authorize through Plaid (account balances, transactions, recurring items). We also collect device identifiers and usage analytics to improve the app.

2. How We Use Your Information

Your financial data is used exclusively to generate cash flow projections, detect recurring transactions, calculate health scores, and deliver shortfall alerts. We do not sell your data. We do not share your financial information with third parties except as required to operate the service (Plaid for bank connectivity, Firebase for authentication).

3. Bank Data & Plaid

Broke uses Plaid to connect to your financial institutions. We never see or store your bank login credentials. Plaid's privacy policy governs their handling of your credentials. We receive only the account and transaction data you authorize.

4. Data Storage & Security

Your data is encrypted in transit (TLS 1.3) and at rest. Financial data is stored in a secured PostgreSQL database with row-level security isolation. We use infrastructure-level secrets management and follow security best practices.

5. Data Retention

We retain your data for as long as your account is active. If you delete your account, all personal and financial data is permanently removed within 30 days.

6. Your Rights

You can request a copy of your data, correct inaccuracies, or delete your account at any time from the app's Settings screen. For additional requests, contact us at privacy@broke.app.

7. Waitlist Data

If you join our pre-launch waitlist, we collect only your email address. This is used solely to notify you when Broke launches. You can request removal at any time.

8. Changes

We may update this policy as the product evolves. Material changes will be communicated via the app or email.