Privacy Policy
Effective 2026-04-26 · Operator: Austin Wise · austin.k.wise@gmail.com
OneFI is a personal financial-management application operated by a single individual. This policy describes what information OneFI collects, how it is used, and how it is protected.
What we collect
- Account identifiers: name and email from your Google sign-in.
- Financial data via Plaid: transactions, balances, holdings, and account metadata for accounts you connect through Plaid Link. Plaid is a third-party data aggregator regulated as a service provider; we receive this data through Plaid's API after you authorize the connection.
- Application activity: request and sync logs used for debugging and operational health.
We do not collect biometric data, location data, or device identifiers beyond what is implicit in standard HTTP request metadata.
How we use it
- To display your financial position, transactions, and reports.
- To detect duplicate transactions and suggest categorizations.
- To trigger periodic syncs from Plaid on your behalf.
- For security and operational diagnostics.
We do not sell your data, share it for advertising, or use it for purposes outside the application.
How we protect it
- TLS 1.2+ on all public endpoints.
- Plaid access tokens encrypted with AES-256-GCM at the application layer before being written to the database.
- Backups encrypted at rest with AES-256 (SSE-B2) on Backblaze B2.
- Database reachable only from the application service on a private Docker network.
- Production access requires SSH keys; application access requires Google OAuth with MFA on the identity provider.
Third-party services
- Plaid — bank-account aggregation; OAuth-authorized access only.
- Google — sign-in (OAuth); receives email and name.
- Hetzner Cloud — application hosting.
- Backblaze B2 — encrypted offsite backups.
- GitHub — source control and CI/CD; no user data shared.
Retention and deletion
See our data retention policy. To request deletion or export of your data, email austin.k.wise@gmail.com. You may also disconnect any Plaid-linked institution from within the application; future syncs stop immediately.
Changes to this policy
Material changes will be reflected at this URL with an updated effective date.
Contact
Austin Wise — austin.k.wise@gmail.com