← Back to dashboard
Privacy Policy
Effective date: July 27, 2026 · Last updated: August 28, 2026
This Privacy Policy explains how Hemi Enterprises LLC ("we", "us") collects, uses,
and protects your information when you use Outgain — our web dashboard and our
mobile app (together, the "Service"). By using the Service you agree to this policy.
1. Information we collect
- Account information — your email address, optional name, and a securely hashed password. We never store your password in plaintext.
- Financial account data — when you connect accounts, we receive read-only data such as account names, balances, holdings, institution names, and transactions. This is retrieved through the data providers listed below.
- Manually entered data — accounts and balances you add by hand, and cryptocurrency holdings you enter yourself (coin symbol and quantity). No exchange connection or API key is involved; these are valued using public market prices.
- Derived data — figures we compute from your data to power the app: net-worth snapshots, balance history, spending and cash-flow summaries, recurring-payment detection, and budget progress.
- Billing status — if you subscribe, our payment processor (Stripe) tells us your subscription status. We never see or store your card number.
- Device and notification data — if you enable push notifications in the mobile app, we store a push token that identifies your device to the notification service, along with its platform (iOS/Android).
- Activity data — the time of your last sign-in / authenticated activity, used for security and to send optional "welcome back" reminders.
- Technical data — basic request metadata (e.g. IP address) used for security and rate limiting.
We do not collect or store your banking or brokerage login credentials. Those are entered directly with our providers, never with us.
2. Service providers
We use the following third parties to operate the Service. Their handling of your data is governed by their own privacy policies:
- Plaid Inc. — bank and credit card connections. See the Plaid End User Privacy Policy.
- SnapTrade — brokerage connections.
- Anthropic — powers the AI features (financial briefings and chart building). See "AI features" below.
- Stripe — subscription billing. Card details are entered with and stored by Stripe only.
- Resend — sending verification, password-reset, and alert emails.
- Expo — delivering mobile push notifications.
- Railway and Vercel — application, database, and web hosting.
- Market price data from public sources (e.g. Yahoo Finance, Finnhub, Coinbase). Requests for prices do not include your personal information.
3. AI features
Some features — the daily briefing and natural-language chart building — are powered by
Anthropic's Claude models. When you use them, relevant portions of your financial data
(for example aggregated spending figures, account balances, subscription costs, and any
prompt you type) are sent to Anthropic's API to generate the result. Under Anthropic's
commercial API terms, this data is not used to train their models. We do not send your
password, provider credentials, or access tokens to Anthropic.
4. How we use your information
- To display your aggregated net worth, accounts, holdings, transactions, and history.
- To compute budgets, cash flow, recurring payments, and investment performance.
- To generate AI briefings and charts you request.
- To authenticate you and keep your account secure.
- To send essential account emails (verification, password reset) and, if enabled, financial alerts and push notifications. You can disable alerts and notifications at any time.
- To process your subscription through Stripe.
We do not sell your personal information, we do not use your financial data for advertising, and we use no third-party advertising or analytics trackers.
5. How we share information
We share data only with the service providers listed above, strictly as needed to operate the Service, and where required by law. We do not sell or rent personal data to third parties.
6. Security
- Provider access tokens are encrypted at rest using AES-256-GCM.
- Passwords are hashed (scrypt); we cannot recover them.
- All traffic is served over HTTPS; session cookies are HttpOnly and Secure; the mobile app stores its session token in the device's secure keychain.
- Resetting your password signs out every existing session on all devices.
- No security measure is perfect; we cannot guarantee absolute security.
7. Data retention
We retain your data while your account is active. Fine-grained net-worth snapshots are automatically pruned after 90 days. When you delete your account, we delete your stored data and revoke connected provider access (see below).
8. Your rights & choices
- Access — your data is visible to you in the dashboard at any time, and transactions can be exported as CSV.
- Disconnect — you can unlink any connected institution from the app.
- Deletion — you can permanently delete your account and all associated data from Config → Delete Account on the web, or Dashboard → Account → Delete Account in the mobile app. This revokes Plaid/SnapTrade access and erases your records. You may also email us at support@outgainapp.com.
- Notifications — push notifications and email alerts are optional and can be turned off in the app or via your device settings.
- Depending on your location, you may have additional rights under the GDPR or CCPA. To exercise them, contact us at support@outgainapp.com.
9. Children
The Service is not directed to anyone under 18, and we do not knowingly collect their information.
10. Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the effective date above.
11. Contact
Questions or requests: support@outgainapp.com · Hemi Enterprises LLC.