Your data should have a clear job.
This policy explains what Money in Reach processes, why it is needed, and the choices available to you.
Last updated: July 29, 2026
Information you provide
- Account details such as email address, display name, and sign-in provider.
- Profile and planning information you choose to save, including income, pay frequency, goals, risk comfort, calculator defaults, scenarios, reviews, debt plans, home plans, progress, badges, and learning-path activity.
- Questions and recent conversation context sent to the Money in Reach Coach.
- Resolve case descriptions, confirmed facts, case activity, outcome details, pasted messages, reminders, and evidence files you choose to upload.
- Contact, feedback, or feature-interest submissions.
Connected financial accounts
Connected accounts are optional and available only after you choose to use Plaid Link. Money in Reach does not receive your bank login credentials. To operate the connected dashboard, the service may store a Plaid item identifier, an encrypted access token, institution and account metadata, balances, transaction summaries and normalized transaction records, recurring-payment summaries, synchronization status, and a transaction cursor. Connected data is isolated by your authenticated user ID.
Use the dashboard’s Disconnect control to ask Plaid to remove the connection and delete the encrypted token, cached accounts, transactions, recurring summaries, and connection status stored by Money in Reach.
Billing information
Money in Reach uses Stripe Checkout and the Stripe Customer Portal for Plus subscriptions. Payment-card details are entered with Stripe and are not stored by this application. Money in Reach stores the Stripe customer and subscription identifiers, subscription status, renewal-period information, and the user ID and email needed to provide access.
Information collected automatically
- Google Analytics events such as page views, article reads, calculator use, sign-in, checkout, Coach use, progress, and badge activity.
- Technical request information used by Cloudflare to deliver and protect the site, such as IP-derived request data, browser information, timestamps, and security signals.
- Local storage used for signed-in state, entitlement caching, preferences, drafts, and offline-friendly progress.
How information is used
- Operate authentication, cloud synchronization, Plus access, connected-account features, and the billing portal.
- Calculate and display the planning information you request.
- Personalize educational Coach context from the profile and aggregate dashboard information you choose to provide.
- Maintain security, prevent abuse, diagnose errors, and understand which educational features are useful.
- Respond to a message or feature-interest submission when the contact service is configured.
Service providers
Money in Reach relies on Cloudflare for hosting, security, storage, and optional AI fallback; Firebase for authentication and Firestore synchronization; Stripe for subscriptions; Plaid for connected-account access; Google Analytics for product analytics; and 1min AI for the Coach when configured. Each provider processes data under its own terms and privacy practices.
Coach privacy
The Coach receives the question, recent conversation context, selected profile fields, and aggregate connected-dashboard values needed to answer. Raw transaction lists are not deliberately added to Coach prompts. Do not enter Social Security numbers, account or routing numbers, payment-card details, passwords, tax identifiers, or other private credentials. Automated filtering may block obvious sensitive entries but cannot identify every case.
Resolve case data
Resolve stores structured case information in a Cloudflare database and uploaded evidence as private Cloudflare objects. Every case, draft, task, timeline entry, evidence request, and export is checked against the authenticated case owner. General product analytics does not include case text, company-response text, filenames, or sensitive monetary details.
When you ask Resolve to organize case evidence, relevant pasted text and supported uploaded images or PDFs may be sent to 1min AI for document analysis. Resolve instructs the model to treat documents only as untrusted evidence, not as instructions. AI results can be incomplete or incorrect and must be confirmed by you. HEIC files and files that cannot be processed remain stored for manual confirmation. Do not upload full payment-card numbers, Social Security numbers, account credentials, passwords, PINs, medical records, or government identification.
Retention and deletion
Saved account, planning, and Resolve data remains available until you delete it, disconnect the related service, or ask that it be deleted, subject to technical, fraud-prevention, billing, audit, and legal retention needs. Deleting a Resolve case removes its structured case records and private Cloudflare evidence objects. Limited security audit and Stripe transaction records may remain where needed for fraud prevention, billing, or legal obligations. AI providers may retain processing records under their own terms. Disconnecting Plaid deletes the connected data cached by Money in Reach. Stripe and other providers may retain records under their own obligations.
To request account or saved-data deletion, use the contact page. You may be asked to verify control of the account. Cancel a paid subscription in the Stripe billing portal before requesting account deletion so that renewal instructions remain clear.
Security
Money in Reach uses authenticated access, owner-scoped Firestore rules, encrypted Plaid tokens, signed webhooks, input limits, and secure transport. No online system can guarantee absolute security. Protect your sign-in credentials and sign out on shared devices.
Your choices
You can use public education and calculators without an account, decline to connect a financial institution, disconnect an existing connection, manage or cancel Plus through the billing portal, and request access, correction, or deletion through the contact page. Browser settings and privacy tools may also limit analytics or local storage.
Children
Money in Reach is not directed to children under 13 and does not knowingly request accounts from them.
Policy changes
Material changes will appear on this page with an updated date. Continued use after an update is subject to the revised policy.
Contact
Questions or privacy requests can be sent through the Money in Reach contact page.