Legal
Privacy
Effective August 20, 2026.
What this page is
This is the plain-English version of what we do with your information when you use Tallymoss. It's not a contract — the contract is in our Terms. If anything here ever disagrees with that contract, the Terms win.
What we collect
The basics: the email address and name you sign up with, and whatever business info you put on your account (company name, country, currency). When you connect a bank or card account, we get your transaction history through a third-party aggregator — that includes purchases made on cards linked to the same feed, not just ACH transfers — and we don't see your online-banking password. When you teach us a categorisation rule (“anything containing ‘AWS’ is infrastructure”, that kind of thing), we keep it so it applies to future transactions and so you don't have to enter it again. When you upload or email a receipt or invoice, we store it so we can match it against your books. If you write to us for support, we keep that thread so we can help you next time. We also keep a small amount of security and abuse logs — IP address, browser type, sign-in times — long enough to spot someone breaking into your account.
Why we collect it
To run the bookkeeping you signed up for: categorise transactions as they post, chase overdue invoices, send the daily P&L to your inbox, and forecast where your numbers are headed over the next few weeks. To send transactional emails — receipts, reminders, your morning P&L, security alerts about new sign-ins. To reply when you ask us something. To keep your account safe.
Where your data lives
Your data is stored in a managed Postgres database hosted in the EU/US region. It's encrypted at rest and in transit. Only a small number of people on our team can reach the raw database, and only when they need to — debugging a problem you've reported, investigating abuse, or restoring a backup after an incident.
Stripe & email delivery
Payments go through Stripe — a third-party payment processor. We never see your card number. Stripe tells us who paid, when, and on which plan, so we can show your subscription in your account. Stripe's own privacy practices apply to the data they handle directly. Reminders and your daily P&L are delivered through the Polsia email proxy, a third-party transactional email service; Polsia's own privacy practices apply to the delivery data they handle (recipient address, send timestamp, delivery status) directly.
Third parties
We use a small set of outside services to run Tallymoss: a bank-data aggregator that reads your transactions (on your behalf, with your permission), Stripe for payments, the Polsia email proxy for reminders and the daily P&L, and a hosting provider for the database and app. We don't sell your data. We don't share your financial records with anyone except the third parties listed here. We don't run third-party advertising trackers — there are no ads in this product.
Data retention
We keep your transaction history, categorisation rules, and uploaded receipts while your account is active — that's the data the service runs on. When you close your account, we run an irreversible deletion inside 30 days: transactions, rules, invoices, receipts, and support threads are scrubbed from the live database and from routine backups on their normal rotation. Anything we're legally required to keep for longer — a tax record, a flagged-abuse hold — stays in a sealed archive for the period the law requires, then gets deleted too. We'll tell you in writing if any of your data is on a legal hold and why.
Cookies & analytics
We use only the cookies we need to keep you signed in and to remember a small set of preferences (like your theme). We don't use third-party analytics cookies, and we don't use tracking pixels.
Your rights
You can export everything we have on you, correct anything that's wrong, and delete your account and data. Email tallymoss-5@polsia.app and we'll get back within 30 days. Deletion is permanent — once it's done, we can't bring your transactions or invoices back, and we won't try.
International visitors
If you're in the EU/UK, GDPR gives you the right to access, correct, port, and delete your data, and to object to or restrict certain processing — all of which we support above. If you're in California, the CCPA gives you similar rights, including the right to know what we've collected about you (also above) and to opt out of any “sale” of personal information. We don't sell personal information, so there's nothing to opt out of.
Changes
When we change this page in a way that matters — a new category of data, a new third party, a different retention period — we'll update the “Effective” date at the top, and if the change is material we'll email everyone who has an active account.
Questions
Email tallymoss-5@polsia.app and a human will answer.