Privacy Policy
Last updated: July 12, 2026
myfi (“myfi,” “we,” “us,” or “our”) is a personal-finance application operated by Gerlich Enterprises, LLC. This Privacy Policy explains what information we collect when you use myfi at myfi.space (the “Service”), how we use and protect it, who we share it with, and the choices and rights you have. By using the Service you agree to the practices described here.
myfi is a tool that helps you understand your own money. We collect the minimum information needed to provide that Service, we never sell your personal or financial information, and we do not use it for advertising.
1. Information we collect
Account & identity information
We use Sign in with Google for authentication. When you sign in, Google shares your name, email address, and profile identifier with us. We do not receive or store your Google password. We do not operate our own password-based login.
Financial account & transaction data (via Plaid)
When you connect a bank or financial account, we use Plaid Inc. to establish that connection. Through Plaid we receive information such as account names and types, balances, account and routing identifiers, and transaction history (dates, amounts, descriptions, and merchant details). We access this data on a read-only basis to power budgeting, categorization, and planning features. We never initiate payments or move money. Plaid’s handling of your credentials and data is governed by the Plaid End User Privacy Policy. We do not receive or store your online-banking username or password.
Retailer & order information
If you choose to connect a supported retailer or service (for example, Amazon or a grocery account), myfi imports order and purchase details—such as item names, amounts, and dates—so it can itemize and categorize your spending. You control which integrations you connect, and you can disconnect them at any time.
Email receipt lookup (optional)
If you grant the optional Gmail permission, myfi performs read-only searches of your mailbox to find purchase and billing receipts that help confirm recurring charges. We access only messages relevant to that purpose, we do not send email on your behalf, and you can revoke this access at any time from your Google Account permissions. Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.
Information you provide
You may enter budgets, categories, goals, household details (such as number of dependents or a planning horizon), and messages to the in-app assistant. We store this to provide the Service.
Technical & usage information
Like most web services, our hosting providers automatically process limited technical data (such as IP address, browser type, and request logs) to operate, secure, and troubleshoot the Service.
2. How we use your information
- To provide the Service: aggregate your accounts, categorize spending, build budgets, and generate spending, retirement, debt, and refinancing insights.
- To power the conversational assistant that answers questions about your finances.
- To automatically categorize transactions, including by processing merchant names and transaction descriptions with AI models (see Section 3).
- To secure the Service, prevent abuse, debug problems, and maintain reliability.
- To communicate with you about the Service when necessary.
We do not sell your personal or financial information, share it with data brokers, or use it to serve third-party advertising.
3. AI processing
To categorize transactions and answer your questions, myfi sends limited data—such as merchant names, transaction descriptions, and amounts—to third-party large-language-model providers that act as our processors. We do not send more than is needed for the feature, and we do not authorize these providers to use your data to train their general models. We do not use your financial data to train our own models.
4. How we share information
We share information only with service providers that help us operate the Service, and only as needed:
- Plaid — secure connectivity to your financial institutions.
- Google — authentication and, if you enable it, receipt lookup.
- Cloud infrastructure providers (such as Vercel, Neon, and Fly.io) — hosting, database, and compute.
- AI model providers — transaction categorization and assistant responses, as described above.
We may also disclose information if required by law, to enforce our terms, or to protect the rights, safety, and security of our users or the Service. If ownership of the Service changes, information may transfer as part of that transaction, subject to this Policy.
5. How we protect your information
We encrypt data in transit using TLS and encrypt data at rest. Particularly sensitive items, such as integration access tokens, are additionally encrypted at the application layer using AES-256-GCM with keys held in a dedicated secret store. Access to production systems is restricted and protected by multi-factor authentication. No method of transmission or storage is perfectly secure, but we work to protect your information using industry-standard safeguards.
6. Data retention
We keep your information for as long as your account is active or as needed to provide the Service. When you delete your account or disconnect an integration, we delete or de-identify the associated data within a reasonable period, except where we must retain it to comply with legal obligations or resolve disputes.
7. Your choices & rights
- Access & correction — you can view the data in the app and correct information you entered.
- Disconnect integrations — you can unlink any connected bank, retailer, or Google permission at any time.
- Deletion — you can request deletion of your account and associated data by contacting us.
- Revoke access — you can revoke myfi’s access to Google data from your Google Account permissions, and to financial accounts through Plaid or your bank.
Depending on where you live, you may have additional rights under laws such as the GDPR or CCPA/CPRA, including rights to access, correct, delete, or port your data. We honor these rights; contact us to exercise them. We do not sell or “share” personal information as those terms are defined under U.S. state privacy laws.
8. Children’s privacy
The Service is not directed to children under 13 (or the minimum age required in your jurisdiction), and we do not knowingly collect their personal information.
9. Changes to this Policy
We may update this Policy from time to time. When we make material changes, we will update the date above and, where appropriate, notify you within the Service. Your continued use after an update means you accept the revised Policy.
10. Contact us
If you have questions about this Policy or your data, contact us at privacy@myfi.space. myfi is operated by Gerlich Enterprises, LLC.