1. Who we are
Boodget (the “App”) is an iPhone spending companion developed by Jianwei Huang. For privacy questions, contact hjwcloud@gmail.com.
2. Storage in the App
Your expense records, categories, settings, insights, and connection preferences are stored in an app database on your device using Apple’s storage frameworks. Plaid access tokens and SimpleFIN access URLs are stored in the iOS Keychain where applicable. Local storage does not mean the product is fully local: some of the same financial data is transmitted through the services described below.
Boodget does not include advertising SDKs, cross-app tracking, or behavioral analytics.
3. Data categories and purposes
Depending on the features you choose, Boodget and its service providers process the following categories of data:
| Category | Examples | Purpose |
|---|---|---|
| Financial information | Account names and type, partial account number or mask, balances, transactions, amounts, dates, merchant details, categories | Import and display transactions, calculate spending, categorize activity, generate Pulse insights, and recommend cards |
| Identifiers and credentials | Plaid Item, account, merchant, and transaction identifiers; Plaid access tokens; SimpleFIN Access URL | Maintain connections, synchronize changes, prevent duplicates, and disconnect providers |
| User-provided content | Expenses, merchant labels, categories, notes, and settings you enter or edit | Provide the tracking and organization features you request |
| Diagnostics and request data | Server request timing, status, errors, and content recorded in operational logs | Secure, operate, troubleshoot, and improve service reliability |
| Support communications | Your email address and message when you contact the developer | Respond to your request and provide support |
Boodget does not use these categories for third-party advertising or cross-company tracking.
4. Transaction sources you choose
You can enter expenses manually or choose to connect supported sources. Each connection is optional and user-controlled.
- Apple Wallet / FinanceKit: With your permission, the App reads supported transaction data on your device. You can revoke access in iOS Settings.
- Plaid: If you connect a financial institution through Plaid Link, Plaid handles the institution sign-in. A developer-operated Boodget server exchanges Plaid tokens and proxies synchronization. Plaid access tokens, account metadata, and transaction data therefore pass through that server. Bank sign-in credentials are handled by Plaid and the connected institution, not directly by the App.
- SimpleFIN: If you connect SimpleFIN, its service provides the account and transaction data you authorize.
Disconnecting a source stops future Boodget syncs. Data already imported remains on your device until you delete it or remove the App.
5. Processing services
To clean up merchant names, categorize unknown transactions, distinguish purchases from refunds or transfers, and generate monthly insights, Boodget sends transaction information—such as merchant descriptions, amounts, dates, categories, monthly summaries, and transaction digests—to a developer-operated server. That server may send relevant content to an AI provider to perform the requested classification or analysis.
Boodget does not currently attach a Boodget account ID or advertising identifier to these requests. The server keeps operational logs for reliability, debugging, and security. Depending on the event being logged, those logs may contain financial or service-request data.
6. Data sharing and third parties
Boodget does not sell personal data. Data is disclosed only to provide a feature you choose, operate the service, comply with law, or protect the rights and security of users and the service. Relevant third parties include Plaid, SimpleFIN and its providers, connected financial institutions, infrastructure hosting providers, and Anthropic for AI-supported classification and insights.
When a service provider processes data on Boodget’s behalf, Boodget requires it to use the data only for the relevant service and to protect the data consistently with this policy and applicable requirements. Providers that interact with you directly or determine their own processing also operate under their own terms and privacy policies.
7. Security and credentials
Production service credentials are kept on the Boodget server, not embedded in the App. Connection tokens stored by the App use the iOS Keychain where applicable, and App-to-server traffic uses encrypted HTTPS connections.
The Boodget server and connected providers are part of the product’s data-processing boundary. As with any connected financial service, no method of transmission or storage can be guaranteed completely secure. Boodget reduces exposure through encrypted transport, platform credential storage, and limiting processing to product functions.
8. Retention
Local data remains until you delete records or remove the App, subject to any device backups you control. Plaid Items remain active until disconnected or otherwise removed, and connected providers may retain data under their own policies. Operational server logs are retained as reasonably needed for security, debugging, and service reliability; a fixed deletion schedule is not currently guaranteed.
9. Your choices, revoking consent, and deletion
You can use manual tracking without connecting Plaid, SimpleFIN, or Apple Wallet. You can manage or withdraw permissions and request deletion as follows:
- Apple Wallet: revoke FinanceKit access in iOS Settings under Privacy & Security → Finance.
- Plaid: disconnect each institution in Boodget Settings. The App requests removal of the Plaid Item before deleting its local token. You may also manage eligible Plaid connections through Plaid Portal.
- SimpleFIN: disable or revoke the Access URL through your SimpleFIN provider and turn off or clear the connection in Boodget.
- Local Boodget data: use Settings → Clear All Data to remove transactions, analysis, benefit records, and local connection data. Deleting the App also removes its local data, subject to device backups you control.
- Server logs or support data: email hjwcloud@gmail.com with a privacy or deletion request. Because Boodget does not maintain user accounts, include enough information to identify the relevant support exchange or approximate request time. The developer will make reasonable efforts to locate and delete eligible data, subject to security, legal, and technical retention needs.
10. Children’s privacy
Boodget is not directed to children under 13, and we do not knowingly collect personal information from children.
11. International processing
Boodget and its service providers may process data in the United States and other countries where they operate. Those locations may have data-protection rules different from those in your jurisdiction.
12. Changes to this policy
If this policy changes, the revised version will be posted here with a new effective date.
13. Contact
Questions or requests can be sent to hjwcloud@gmail.com.