Data Protection

Privacy Policy

Your privacy is important to us

Last updated: January 22, 2026

Introduction

moedas.app ('we', 'our', 'Platform') is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you use our personal finance platform.

This policy applies to all moedas.app users, including visitors, registered users, and premium subscribers. By using our Service, you agree to the practices described in this policy.

GDPR Compliance

We comply with the European Union's General Data Protection Regulation (GDPR) and respect your rights over your personal data.

1 Data We Collect

Account Data

When you create a moedas.app account, we collect:

  • Email: For authentication and communication
  • Username: For personalizing your experience
  • Password (encrypted): For account security

Financial Data

To provide the budgeting service, we store:

  • Income and expenses you enter
  • Budget scenarios and allocation percentages
  • Group memberships and shared budgets
  • WhatsApp number (only if you choose to connect)

Payment Data (Subscribers)

Important: We DO NOT store credit card data. All payments are securely processed through Stripe, a PCI-DSS Level 1 certified payment processor.

We only store:

  • Subscription ID (provided by Stripe)
  • Subscription status (active, cancelled, etc.)
  • Invoice history

What We DON'T Collect:

  • ✗ Sensitive data (race, religion, political opinions, health)
  • ✗ Complete financial data (card numbers, CVV)
  • ✗ Data from minors under 18 (knowingly)
  • ✗ Social media data (unless you use Google login)

2 How We Use Your Data

We use your personal data to:

Provide the Service

Store and process your budget data, calculate allocations, generate monthly reports

Personalization

Adapt the interface to your language and currency preferences

Security

Prevent fraud, protect against unauthorized access

Communication

Send monthly WhatsApp reports (if enabled) and important service updates

3 Data Sharing

No Sale Policy

We NEVER sell, rent, or trade your personal data to third parties.

We only share data in the following situations:

Service Providers

Partners who help us operate the platform:

  • Stripe: Payment processing (PCI-DSS compliant)
  • Twilio: WhatsApp message delivery (only if you connect WhatsApp)

Legal Obligations

We may disclose data if legally required (court order, tax authorities, criminal investigations) or to protect our legal rights.

4 Data Security

We implement technical and organizational security measures to protect your data:

SSL/TLS Encryption

All communications are encrypted in transit

Password Encryption

Passwords hashed with bcrypt, sensitive data encrypted at rest

CSRF & Rate Limiting

Protection against cross-site attacks and brute force

JWT Authentication

Secure token-based access with refresh token rotation

Important: No system is 100% secure. While we implement best practices, we recommend using a strong, unique password for your moedas.app account.

5 Your Rights (GDPR)

Under GDPR, you have the following rights over your personal data:

Right of Access

Request a copy of all data we have about you

Right of Rectification

Correct inaccurate or incomplete data via your profile settings

Right to Erasure

Request deletion of your account and all associated data

Right to Portability

Receive your financial data in a structured, readable format

How to Exercise Your Rights

To exercise any of these rights, contact us at:

suporte@moedas.app

6 Data Retention

We retain your data only as long as necessary:

Active Account

While your account is active and you use the service

Inactive Account

Up to 2 years after last activity, then automatically deleted

After Deletion

30-day recovery period, then permanently and irreversibly deleted

7 Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices, services, or legal requirements.

How We'll Notify You

  • Email to registered users (for material changes)
  • Prominent notice on the website
  • Update of 'Last updated' date at the top of this page

Contact — Data Protection

If you have questions or wish to exercise your privacy rights, contact us:

Address:

Viana do Castelo, Portugal

This Privacy Policy is part of our Terms of Service.

© 2026 moedas.app. Committed to your privacy and security.