Last updated August 22, 2026
We don’t sell your data, and there are no advertising or analytics trackers on Firdona. This page lists, plainly, exactly what’s collected and which third parties see it.
We do not sell data to advertisers or data brokers, and there are no ad-tracking or analytics scripts on this site.
Firdona uses one session cookie to keep you signed in (a signed JWT via Auth.js). No third-party advertising or tracking cookies are set.
Your data is retained while your account exists. To request deletion of your account and everything tied to it, contact the account owner via firdona.com — this removes your user record and everything referencing it (accounts, transactions, goals, conversations, notifications) from the database.
Passwords are hashed with bcrypt, never stored in plaintext. Plaid access tokens are encrypted at rest. Sessions use signed, httpOnly JWT cookies. That said, Firdona is an early-preview product without a formal security audit — see the Terms of Service for current limitations.
If what we collect or who we share it with changes — notably once real bank connections and payment processing are introduced — we’ll update the date at the top of this page.
Questions about this policy or a data deletion request: reach the account owner via the contact on firdona.com.