Privacy Policy
This Privacy Policy explains what information we collect, how we use it, who we share it with, and the rights you have under Australian privacy law.
This policy applies to the MyLedger mobile app and the website at myledger.com.au. If you have questions about anything below, email us at admin@myledger.com.au.
1. Information We Collect
We collect only what we need to make MyLedger app work for you.
When you create an account, we collect your name, your email address, and the authentication tokens managed by Supabase. As you use the app, we store the information you choose to enter, including transactions, categories, budgets, recurring rules, financial goals, checklist progress, and any notes or labels you create on the app.
2. How We Use Your Information
We use your information to improve your experience, sync your data securely across your devices. We also use it to respond to your support requests, diagnose technical problems, fix bugs, and notify you about important updates to the app.
3. Data Security
We take reasonable steps to protect your information from misuse, loss, unauthorised access, modification, and disclosure.
Authentication is managed by Supabase Auth using secure session tokens, passwords are never stored in plain text, and access to production systems is restricted and logged.
4. Third-Party Services
MyLedger relies on a small number of trusted third-party services to operate. None of these services use your data for advertising.
These providers process data only as needed to deliver their service to us. They do not have permission to use your data for any other purpose.
5. Cookies & Tracking
The MyLedger website uses only essential cookies needed for the site to function. We do not use third-party advertising cookies, analytics that track you across other websites, or social media tracking pixels.
6. Data Retention
We keep your account information for as long as your account is active. If you delete your account, we delete your personal data within 30 days, except where we are legally required to keep certain records, for example, tax-related records for 7 years under Australian law.
Anonymised, aggregated data (such as how many users opened the app in a given week) may be retained indefinitely, as it cannot be used to identify you.
7. International Data Transfers
Some of our service providers, such as Supabase and Resend, may process data outside Australia, including in the United States and the European Union. When this happens, we ensure those providers have adequate safeguards in place, including compliance with frameworks such as the EU-US Data Privacy Framework or Standard Contractual Clauses.
8. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email if the changes significantly affect your rights, and post a notice in the app.
Continuing to use MyLedger after a policy change means you accept the updated terms.
9. Contact Us
If you have questions, concerns, or feedback about this policy on how we handle your data, please get in touch.
We aim to respond to all privacy enquiries within 5 business days.