Privacy Policy
Last updated: to be set on legal sign-off
This page sets out the structure and the plain-language intent of the policy, but the binding text must be drafted or reviewed by a solicitor (or a reputable template service) before launch. It is financial software and this is a regulator-facing URL — under UK GDPR and EU GDPR. The bank-feed data-controller question in particular must be confirmed in that review. Do not treat the wording below as final.
1. The headline
My Financial Life is published by Garelochsoft Ltd (“we”/“us”). Your financial data is stored locally on your own device: it’s a desktop app, so your file lives on your Mac or PC. We do not host it, sync it to a server, or keep a copy. There is no account to create to use the app. Where we are the data controller — for this website and for purchase records (section 7) — that responsibility sits with Garelochsoft Ltd.
2. What this website collects
[To be confirmed.] The website is kept deliberately minimal. If any analytics are used, they will be privacy-friendly and cookieless (e.g. Plausible or Fathom), and named here with what they collect. If no analytics are used, this section will say so plainly. Anything relating to a purchase is handled by the store you buy from and is covered separately in section 7.
3. Bank-feed data flow (when automated feeds are enabled)
Automated bank feeds are a post-launch feature. When enabled, account data passes through a third-party provider (such as Enable Banking, Plaid, or SimpleFIN) under a bring-your-own-credentials model: you hold the provider keys and the connection is yours. The intended position — to be confirmed in legal review — is that My Financial Life is not the data controller for that flow.
4. Third-party services the app can talk to (with your keys)
- Your bank-feed provider — only when you enable automated feeds.
- openexchangerates — foreign-exchange rates, using your own key.
- Tiingo — security prices and price history, using your own key.
These are optional and driven by keys you supply; the app does not phone home otherwise.
5. The My Financial Life → My Retirement Life hand-off
My Retirement Life is the sister app. A future, user-initiated export will let you move your financial data from My Financial Life into My Retirement Life. It is a file you choose to create and move — there is no automatic server-to-server transfer. Whether the two apps share one combined policy or two linked policies will be settled at legal review.
6. Your rights & retention
[To be drafted.] UK GDPR and EU GDPR rights (access, rectification, erasure, portability, objection), retention periods for anything the website or checkout partner does hold, and how to exercise them.
7. Purchases & your records
Your in-app financial data never leaves your device — but when you buy the app, that is a transaction, and a transaction creates records. We keep our side to a minimum and are straight about it here.
The app is sold through the platform stores — the Mac App Store and Microsoft Store. Apple or Microsoft is the seller of record: they process your payment, hold your billing details, and manage your entitlement to the app. Your card and billing details go to the store, not to us, and are governed by that store’s own privacy policy.
We do not issue licence keys and do not receive your card details. From the store we receive only limited and largely aggregated sales reporting (for example units sold by country and the amounts due to us) so we can meet our tax and accounting obligations (in the UK, financial records are generally kept for around six years). We ordinarily do not receive your name or email address from a store purchase — we only hold those if you contact us directly for support.
[Exact store reporting fields and retention to be confirmed and their privacy terms linked here at launch; final wording subject to legal review.]
8. Contact
Data-protection enquiries to Garelochsoft Ltd: hello@garelochsoft.com. [Registered company address to be added once the entity is formed.]
See also the Terms & Licence.