Effective date: July 17, 2026 · Owner: Alexey Shuliakouski · Reviewed at least annually. Contact: ashuliakousky@gmail.com
Defines how long Aside keeps consumer data and how it is deleted, covering data obtained via Plaid and data users provide. Aligns with applicable privacy laws (e.g., CCPA, GDPR).
| Data | Where | Retention |
|---|---|---|
| Plaid access token + sync cursor | Cloudflare Workers KV (encrypted at rest) | While the account is linked; deleted on unlink or account deletion |
| Transaction data (descriptions, amounts, dates) | Cloudflare Workers KV (encrypted at rest) and on the user's device | Server copy kept while the account is linked and deleted on unlink or account deletion; device copy kept until the user deletes/unlinks or uninstalls |
| Profile & preferences | On device (and backend if/when accounts exist) | While the account/app data is active; removed on deletion |
| Diagnostics/logs | Cloudflare (transient) | Short-lived operational logs only; no financial contents |
You can delete your data at any time directly in the app: Settings → Delete my data.
Aside does not maintain long-term backups of consumer financial data; there are no separate archival copies to purge.
Questions: ashuliakousky@gmail.com