Back
P
PrismAI

Privacy Policy

Last updated: 28 June 2026

This Privacy Policy explains how PrismAI ("we", "us") collects, uses, and protects your information when you use our personal finance application. By using PrismAI you agree to this policy.

Information we collect

  • Account information — your name and email address.
  • Financial data you enter — accounts, transactions, budgets, goals, and any asset records (e.g. insurance) you choose to add.
  • Documents you upload — receipts or documents you attach to records.
  • Usage data — basic technical logs needed to operate and secure the service.

How we use your information

We use your information solely to provide and improve the service: to display your finances, generate insights, and operate features you use. We do not sell your personal data.

AI features

When you use AI features (such as spending insights or document scanning), the relevant data is sent to our AI provider (Anthropic) to generate a response. This data is processed to serve your request and is not used to train their models. Avoid entering information you do not wish to be processed this way.

How your data is stored and secured

Your data is stored with our infrastructure providers (Supabase for database and storage, hosting on Vercel). Access is restricted to your own account through row-level security, sensitive values are encrypted at rest, and uploaded files are kept in private storage accessible only via short-lived links.

Sharing

Your data is private to you unless you explicitly invite another person to view or edit specific sections via the sharing feature. You can revoke that access at any time.

Service providers

We rely on trusted third parties to operate PrismAI, including Supabase (database, authentication, storage), Vercel (hosting), Anthropic (AI), Resend (email), and our payment provider for subscriptions. Each processes data only as needed to provide their service.

Data retention and deletion

We retain your data while your account is active. You can delete your data at any time from Settings, or request full account deletion by contacting us; we will delete your personal data except where we must retain it to meet legal obligations.

Your rights

Depending on your location, you may have rights to access, correct, export, or delete your personal data, and to object to certain processing. To exercise these rights, contact us using the details below.

Children

PrismAI is not intended for anyone under the age required to consent to data processing in their country, and we do not knowingly collect data from children.

Changes to this policy

We may update this policy from time to time. Material changes will be reflected by the "Last updated" date above and, where appropriate, communicated to you.

Contact

Questions about this policy or your data? Email us at admin@prismlab.app.