Company
Project money, documents and photos stay behind HTTPS, hashed credentials and role-based access. We operate under Irish / EU data-protection rules — and we will not claim a certification we do not have.
Practical controls, aligned with the privacy policy — not a marketing checklist.
TLS in transit. The app and marketing site run on Vercel. Project data lives in managed Postgres (Neon). We do not run our own metal.
Email and password are stored as hashes. Email one-time codes can be required on sign-in. Google and Apple SSO attach to the same account — they do not invent a second ledger.
Owner, admin, project manager, bookkeeper and viewer see only what their role allows. Family and client views cannot change invoice amounts. Checks are not just hidden buttons.
Cards and subscriptions go through Stripe. We do not store full card numbers on our servers.
You can export budgets and records. Account and data deletion paths are described in the privacy policy. How-tos are in the Help Centre.
We operate from Ireland and process personal data under UK GDPR and EU GDPR where they apply. Sub-processors are listed on their own page.
Not at this time. We do not put a badge on this page that we have not earned. Controls above are how the product is built today; we will update this page if a formal audit is completed.
Application hosting is on Vercel. The database is Neon Postgres. Transactional email is Resend. Payments are Stripe. See the sub-processors page for the current list.
People you invite, within the role you give them. Viewers and family accounts cannot edit costs. Professionals can offer clients a branded portal on the Professional plan.
You can export first. After cancellation and any retention window in the privacy policy, you can request deletion. Start with the Help Centre article on export.
Something missing? See the Help Centre or sub-processors.
90-day trial. Same access controls on day one as on a paid plan.