Privacy Policy
Last updated: October 6, 2026
1. What We Collect
FinDefend collects only the information necessary to identify recurring subscriptions and price changes on your behalf:
- Account Information: Your email address and authentication credentials.
- Financial Documents & Statement CSVs: Bank or credit card transaction CSV files uploaded to scan for recurring charges.
- Extracted Vendor Data: Merchant names, transaction dates, amounts, and detected subscription intervals.
2. Data Retention & Deletion
We minimize financial data storage. Raw transaction files and temporary parsed statements are processed in memory and deleted promptly after recurring vendor extraction.
You retain full control over your data. You may download an export of your account data or permanently request complete account and vendor deletion anytime through the shipped export and deletion endpoints in your account settings.
3. Subprocessors
We work with trusted third-party service providers (subprocessors) to operate FinDefend:
- Railway & Postgres: Cloud infrastructure, application hosting, and database persistence.
- Stripe: Payment processing and subscription management. Financial details (card numbers) are handled directly by Stripe.
- Resend: Transactional email delivery (such as price-hike alerts, digest summaries, and login magic links).
- Cloudflare: DNS management, content delivery, and web application security (DDoS protection).
4. Contact Us
If you have questions about this Privacy Policy or your personal data, please contact our privacy team at support@findefend.com.