Privacy Policy
Last updated: July 7, 2026
Effective Date: June 6, 2026
Last Updated: June 16, 2026
Monivra LLC ("we," "our," or "us") operates the Monivra mobile application (the "App"). This Privacy Policy explains how we collect, use, store, and protect your personal information, and describes the rights you have over your data.
By using the App, you agree to this Privacy Policy. If you do not agree, please do not use the App.
1. Who We Are
Company: Monivra LLC
State of Formation: New Jersey, USA
Contact: privacy@monivra.app
2. Information We Collect
We collect only the information necessary to provide the App's features. We do not collect information for advertising or sell your data to third parties.
2.1 Information You Provide Directly
- Name and email address — Account creation and authentication
- Transactions (amount, category, date, description, store) — Core budgeting and tracking features
- Budget limits — Budget management
- Savings goals — Goal tracking
- Net worth entries (assets and liabilities) — Net worth tracking
- Subscription details — Subscription tracking
- Receipt images — Receipt storage and reference
- Currency preference — Display and calculation settings
2.2 Information Collected Automatically
- Authentication tokens — Temporary session tokens used to keep you logged in securely.
- App preferences — Theme (dark/light) and notification settings stored on your device.
- Session activity logs — Each time you log in or out, we record the event type, timestamp, device platform, IP address, and approximate location (city, region, country). This data is used solely for security monitoring and is retained for 90 days.
2.3 Information We Do NOT Collect
- Bank account credentials or financial institution access
- Precise GPS location
- Contacts
- Device identifiers for advertising
- Browsing history
3. How We Use Your Information
We use your information solely to:
- Provide, maintain, and improve the App's features
- Authenticate your identity and protect your account
- Detect and investigate unauthorized or suspicious account access using session activity logs
- Send budget alerts and notifications (only if you enable them)
- Respond to your support and privacy requests
- Comply with applicable law
4. How We Store Your Data
Your data is stored securely on Supabase (supabase.com), hosted on Amazon Web Services (AWS). Supabase is GDPR-compliant, SOC 2 Type II certified, and encrypts data at rest (AES-256) and in transit (TLS 1.2+). Receipt images are stored in Supabase Storage with private access policies.
Data location: AWS infrastructure, primarily in the United States.
5. Third-Party Services
- Supabase — Database, authentication, file storage
- Expo — App framework and build tools
- ipwho.is — IP geolocation lookup for session security logs
We do not share your personal data with any other third parties.
6. Your Rights
6.1 Right to Access (GDPR Art. 15 / CCPA)
Export all your data at any time from Settings → Privacy → Export My Data. Your data will be provided as a JSON file.
6.2 Right to Erasure (GDPR Art. 17 / CCPA)
Permanently delete your account and all associated data from Settings → Danger Zone → Delete Account. Deletion is immediate and irreversible.
6.3 Right to Rectification (GDPR Art. 16)
Update your name and account information at any time from Settings → Edit Profile.
6.4 Right to Data Portability (GDPR Art. 20)
Your exported data is provided in JSON format, which is machine-readable and transferable.
6.5 Right to Object / Opt Out
Disable budget alert notifications at any time from Settings → Notifications.
6.6 Submitting a Privacy Request
For any other privacy request, contact us at privacy@monivra.app. We will respond within 30 days.
7. Data Retention
We retain your data for as long as your account is active. When you delete your account, all your data is permanently deleted within 30 days. Session activity logs are retained for a maximum of 90 days from each event date.
8. Children's Privacy
The App is not directed to children under the age of 13 (or 16 in the EU). If you believe a child has provided us with their information, contact us at privacy@monivra.app.
9. Data Transfers
Your data may be processed in the United States. If you are located in the EEA or UK, your data is transferred under Supabase Standard Contractual Clauses.
10. Security
We implement encrypted storage and transmission, row-level security (RLS) policies, secure email OTP authentication, and optional biometric authentication. If you discover a security issue, contact privacy@monivra.app.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will update the "Last Updated" date and notify you via the App for significant changes.
12. Contact Us
Email: privacy@monivra.app
Company: Monivra LLC, New Jersey, USA