Legal
Privacy Policy
Last updated September 11, 2026
Who we are
girlmath is a personal finance dashboard operated by Street Tribe("we," "us," or "our"). This policy explains what information we collect when you use the girlmath website and iOS app, how we use it, and the choices you have.
Questions: streettribe@outlook.com.
Information we collect
Account information. If you create an account, we collect your email address and authentication credentials. Sign-in is provided through Supabase Auth (email/password and, where enabled, Google sign-in).
Dashboard and finance data you enter. This includes widgets, categories, amounts, goals, habit entries, net-worth snapshots, and similar content you add. When you are signed in, this data may sync to our cloud database so you can use it across devices. When you are not signed in, data may stay only in your browser or device storage.
Statement purchases. If you upload a bank or card e-statement (PDF), we process it to extract purchase details such as date, merchant, amount, and category. We design the flow to avoid keeping the PDF file and to strip sensitive leftovers (for example card numbers) from merchant text before storage. Do not upload documents you are not allowed to process.
AI helper messages. If you use the AI helper, we receive the messages you send and a short summary of your dashboard context so the assistant can give relevant advice. Those requests are processed by our AI provider (currently Google Gemini) to generate a reply. For Plus members we also track approximate AI token usage so we can apply your included monthly allowance.
Linked bank accounts (Plus). If you connect a bank through our bank-sync partner (currently Plaid), we store an encrypted access credential and receive transaction details such as date, merchant, amount, and category. We use that data only to power your dashboard ledger and related girlmath features. You can disconnect a bank at any time; when Plus ends we disconnect linked banks so sync stops.
Billing. If you subscribe to Plus, payment processors (Stripe on the web; Apple / RevenueCat on iOS) process your payment details. We store subscription status and related IDs needed to keep your plan in sync — not your full card number.
Shared dashboards. If you enable sharing, we store a share token so others can open a read-only view of your dashboard via a link.
Technical data. Like most services, our hosts and providers may process IP address, device/browser type, timestamps, and basic diagnostics needed to run and secure the product.
How we use information
- Provide, sync, and display your dashboards and widgets
- Authenticate you and keep your account secure
- Parse statements and power spending-related features
- Run the AI helper when you ask for it
- Sync linked-bank transactions when you enable Plus bank sync
- Process Plus subscriptions and apply plan entitlements
- Enable optional share links you turn on
- Improve reliability, prevent abuse, and fix bugs
- Respond to support requests you send us
We do not sell your personal information. We do not use your finance data for third-party advertising.
Where data is stored and who helps us
We use trusted service providers to operate girlmath, including:
- Supabase — authentication and cloud database storage for signed-in users
- Vercel — website hosting and related infrastructure
- Google (Gemini) — AI helper responses when you use that feature
- Stripe — web payments for girlmath Plus
- Plaid — optional bank linking and transaction sync for Plus
- Apple — app distribution, TestFlight, App Store subscriptions, and related platform services if you use the iOS app
- RevenueCat — helps manage iOS subscription entitlements when App Store billing is enabled
These providers process data on our behalf under their own terms and security practices. Data may be stored or processed in the United States or other countries where those providers operate.
Local storage and cookies
The website may use local browser storage (and similar technologies) to keep dashboards, preferences, or session-related data on your device. The iOS app may store data on-device and, for Home Screen widgets, in an app group shared with the widget extension so widgets can show your metrics.
Sharing and disclosure
We may disclose information:
- To service providers who help us run girlmath
- When you choose to share a read-only dashboard link with someone
- If required by law, regulation, or legal process, or to protect rights, safety, and security
- In connection with a merger, acquisition, or sale of assets, with notice where required
Retention and deletion
We keep account and synced dashboard data while your account is active. You can delete widgets or disable sharing in the product. To request deletion of your account and associated cloud data, email streettribe@outlook.com. Local-only data can be cleared by clearing site data or deleting the app.
Children
girlmath is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us information, contact us and we will take appropriate steps to delete it.
Your choices
- Use the product without an account (local-only, where available)
- Sign out or delete your account by contacting us
- Turn sharing off at any time
- Avoid uploading statements or using the AI helper if you prefer
Depending on where you live, you may have rights to access, correct, or delete personal information. Contact us to make a request.
Security
We use reasonable administrative and technical measures to protect information, including encrypted transport (HTTPS) and access controls on cloud data. No method of transmission or storage is 100% secure.
Changes
We may update this policy from time to time. We will post the revised version on this page and update the "Last updated" date. If changes are material, we may provide additional notice.
Contact
Street Tribe — girlmath privacy
streettribe@outlook.com