WealthPilot

Privacy Policy

Last updated: July 24, 2026

Who we are

WealthPilot is a personal finance platform operated by Harmony Technology Systems, Inc., Birmingham, Alabama. This policy explains, in plain language, what data we collect, why we collect it, and who touches it. We wrote it to be read, not skimmed past.

What we collect and why

  • Account information. Your name, email address, and a hashed password, managed through Supabase authentication. If you enable SMS two-factor authentication, your phone number.
  • Bank and financial data via Plaid. When you connect an account, we receive balances, transactions, investment holdings, and loan details so the app can track your net worth, spending, bills, and giving. Access tokens are encrypted at rest.
  • Data you add yourself. Manual assets, goals, giving records, budgets, bills, mortgages, and receipt photos you upload.
  • Usage and preference data. Settings like theme and dashboard layout, gamification progress (streaks, badges, check-ins), and your advisor quiz answers and guru selection.
  • Technical data. Error reports and standard server logs needed to keep the service running.

Bank connections (Plaid)

Bank connections are powered by Plaid. You authorize each connection yourself, and your banking credentials are entered with Plaid — never on WealthPilot, and never visible to us. We store only the access tokens Plaid issues, encrypted at rest, and you can disconnect an institution at any time from the app. Plaid's handling of your data is described in Plaid's End User Privacy Policy.

AI processing (Anthropic)

WealthPilot's coaching features are powered by Anthropic's Claude API. We send only what each feature needs:

  • Advisor chat, second opinions, and daily insights — a summarized financial snapshot (income, spending, debt, savings, giving totals, plan phase), never raw account numbers or credentials.
  • Recommendations and the daily action step — summary totals plus recent transaction dates, amounts, merchant names, and categories.
  • The Ask box — your question and your category names only. The AI interprets the question; your actual numbers are computed in our database and never sent to the model.
  • Receipt scanning — the receipt image you upload.
  • Bill email parsing — the email content you paste in.
  • Category insights — the category name and its monthly totals.

AI outputs are informational only — see our Terms on financial advice. WealthPilot uses Anthropic's Claude API under Anthropic's Commercial Terms. Data sent to the API is not used to train Anthropic's models, and Anthropic retains API inputs and outputs for a limited period for trust-and-safety purposes.

Household sharing — full financial transparency

If you join a household, the other members of that household can see your financial data — accounts, balances, transactions, goals, and giving — and you can see theirs. That is the point of the feature: shared visibility for couples and families. Do not join or invite someone into a household unless you are comfortable with complete mutual financial transparency. Leaving a household ends the sharing going forward.

Service providers

We do not sell your data. We share it only with the providers that make the service work:

ProviderPurposeData touched
PlaidBank, investment, and loan connectionsAccount balances, transactions, holdings, liabilities. Your bank credentials go to Plaid directly — WealthPilot never sees them.
Anthropic (Claude)AI coaching, chat, insights, and document parsingFinancial summaries, transaction descriptions, receipt images, and questions you ask — see the AI processing section for exactly what each feature sends.
SupabaseDatabase, authentication, and file storageYour account (email, hashed password) and all app data, including financial records and receipt images (private buckets).
VercelApplication hostingStandard web server logs (IP address, request metadata).
ResendTransactional emailYour email address and the contents of emails we send you (e.g., verification codes).
TwilioSMS verification codesYour phone number (only if you enable SMS two-factor authentication).
SentryError monitoringInternal user ID and technical error context. Request bodies, cookies, and headers are stripped before sending; no financial values or email addresses.
UpstashRate limitingRequest counters keyed by internal user ID. No financial data.
Finnhub / CoinGeckoStock and crypto pricesTicker symbols only. No personal data.

Retention, deletion, and export

We retain your account data while your account is active. If you request deletion, we delete your data within 30 days of verifying the request. When you disconnect a bank connection, the data from that connection is purged.

Deletion: to delete your account, email support@getwealthpilot.ai. We process deletion requests within 30 days of verifying them.

Export: data export is planned. In the meantime, contact support@getwealthpilot.ai and we will help.

Security

Data is encrypted in transit (TLS) and at rest; Plaid access tokens carry an additional layer of application-level encryption. The database enforces row-level security, multi-factor authentication protects logins and sensitive account changes, and receipt images live in private storage buckets. No method of transmission or storage is 100% secure, and we won't pretend otherwise — but security is a first-class part of how WealthPilot is built.

Children

WealthPilot is for adults: you must be 18 years old, or the age of majority in your jurisdiction, whichever is greater. We do not knowingly collect data from anyone under that age.

Your rights

We honor requests to access and delete your personal information for all users, regardless of your state of residence. We do not sell personal information. To make a request, email support@getwealthpilot.ai.

Demo mode

Demo personas contain entirely fictional data. Exploring the demo does not connect any real accounts or expose any real person's information.

Changes to this policy

When we make material changes, we will update the date at the top of this page and, for significant changes, notify you in the app or by email. Continued use after changes take effect means you accept the updated policy.

Contact

Harmony Technology Systems, Inc.
Birmingham, Alabama
Email: support@getwealthpilot.ai