MoneyDue — Privacy Policy
0. In short
MoneyDue is an app for keeping track of personal debts. In version 1.0 your records are stored only on your device, in an encrypted database. There is no account and no sign-up.
Your records do not leave the device on their own. The app reaches out in three cases, and in none of them are your records sent:
- it fetches exchange rates — the request contains none of your data;
- it sends a reminder to a debtor — only if you tapped the button, and you see the text before it goes;
- it sends your support request — only if you wrote it.
We use no analytics, no advertising and no tracking. We do not sell data.
The moneydueapp.com website works the same way: no forms, no cookies and no analytics; see section 3.5 for details.
If syncing between devices appears in a future version, it will be described here before that version is released, it will remain your choice rather than a condition of using the app, and it will never become mandatory for access to your records.
1. Who is responsible for this data
The controller is:
Davyd Vasylevskyi, jednoosobowa działalność gospodarcza, Poland
NIP: 9542905512
Address: ul. Warszawska 40/2A, 40-008 Katowice, Poland
Email: support@moneydueapp.com
One caveat worth stating plainly: for the records that stay on your device, no processing takes place on our side. We do not receive them, do not see them and cannot obtain them. The sections below describe where processing does happen.
2. What is stored on your device
Everything you enter into the app:
- contacts — name, a phone number if you want, a note, the reminder language;
- debts — amount, currency, direction (you owe, or you are owed), description, debt date, due date, status;
- payments — amount, currency, the rate you entered, date;
- settings — interface language, summary currency, reminder tone, whether the biometric lock is on;
- exchange rates received from the provider (see section 3.1).
All of it sits in a single database file inside the app. The file is encrypted with SQLCipher (AES-256). The encryption key is created on your device at first launch and kept in the system secure storage — Keychain on iOS, Keystore on Android. The key never leaves the device and is not derived from anything you enter.
A consequence we would rather state openly: the key is tied to the device and does not move to a new one. If you change phones or delete the app, the records cannot be recovered — neither by you nor by us. That is the price of there being no copy anywhere.
3. What leaves the device
3.1. Exchange rates
The app requests rates from Frankfurter at api.frankfurter.dev so that it can show the summary in a single currency. Frankfurter collects its data from central banks.
What is sent: the rate request itself, and nothing more. Your amounts, names and identifiers are not part of it — the request is the same for every user.
Like any web service, the provider does technically see an IP address and the standard connection headers. That is an unavoidable part of how the internet works, not us passing your data on.
The request runs automatically when the stored rates are out of date, no more than once a day.
Legal basis: legitimate interest (Art. 6(1)(f) GDPR) — showing the summary in the currency you chose.
3.2. A reminder to a debtor
If someone owes you, you can send them a reminder.
How it works: the app composes the text, shows it to you, lets you change it, and only after you tap send does the system share sheet open. You choose the recipient and the app — messenger, email or SMS.
What the text contains: the unpaid remaining balance with its currency, the due date if you entered one, and a link to the app. The contact's name, the debt description, the phone number, notes and payment history are not included.
Where it goes: wherever you sent it. MoneyDue takes no part in the delivery and stores the fact of sending nowhere except your own database on the device.
Legal basis: your own action. We do not receive this message.
Worth noting separately: by sending a reminder you pass on another person's data — the amount they owe and the due date, if you entered one. Whether that is appropriate is your responsibility; the app only prepares a text that you are free to change or not to send.
3.3. Contacting support
There are two ways to write to us: an email to support@moneydueapp.com, or Telegram. Both are listed on moneydueapp.com/support and both open from the app.
By email. The email leaves your mail app and reaches a mailbox hosted with Google (Gmail). If you write from the app with the "Support" button, the email contains only what you typed yourself. If the app reported an error and you tapped "Report a problem", it fills the email in advance with the technical part: app version, operating system version, language and regional settings, the number of debts, the error message, and the stack trace — a technical description of the place where the failure happened. The email opens in your mail app and you see all of it before sending: any part of it can be deleted.
Through Telegram. A bot receives the message; the link to it is on moneydueapp.com/support. Only what you write and attach yourself is sent — the app adds nothing to this channel. The bot forwards the message to us and keeps your Telegram identifier so that we can reply, and so that you do not get the same warning twice. The bot receives neither your name nor your phone number.
Messages are processed for us by our own service on Cloudflare Workers; Telegram itself is an independent recipient.
Transfer outside the European Economic Area. None of the support channels stays entirely inside the EEA. What differs between them is the basis on which data leaves it.
Telegram (Telegram FZ-LLC) is based in the United Arab Emirates, and a conversation through it ends up there. The European Commission has not adopted an adequacy decision for the United Arab Emirates.
Google, which hosts our mailbox, and Cloudflare, where the bot runs, may process data on servers outside the EEA, including in the United States. Both companies are certified under the EU-U.S. Data Privacy Framework, for which the European Commission has adopted an adequacy decision.
If it matters to you that the conversation does not end up in a country without such a decision, write by email. You choose which channel to use.
What is never sent, through either channel: contact names, amounts, currencies, descriptions, phone numbers. The number of debts is a count, not their content. If you attach a screenshot, whatever your screen shows may be visible on it — before you send one through Telegram, the bot warns you about that.
Legal basis: legitimate interest (Art. 6(1)(f) GDPR) — replying to you and fixing the error.
Retention period: correspondence is kept for as long as it takes to settle the matter, and is deleted no later than 24 months after it arrives. This covers the email, the Telegram conversation, and the identifier the bot keeps.
3.4. Links out
The app has links to the rate provider's site and to the MoneyDue site. Tapping one opens your browser. From there the policies of those sites apply, and we are not responsible for them.
3.5. The moneydueapp.com website
The website consists of pages hosted with Cloudflare. When you open a page, Cloudflare receives your IP address and the standard request headers: without them the page cannot be delivered, and the site cannot be protected from attacks. The browser language from these headers is used to open the site in your language; it is not stored anywhere.
The website has no forms, cookies, analytics or visit counters. We keep no visit logs, and we have no list of visitors.
Cloudflare may process this data outside the EEA, including in the United States, on the basis of the EU-U.S. Data Privacy Framework, as described in section 3.3.
Legal basis: legitimate interest (Art. 6(1)(f) GDPR) — showing you the page in your language and protecting the site from attacks.
4. What we do not do
- We use no analytics and do not track what you do in the app.
- We include no third-party data collection SDKs and no crash reporting services.
- We show no advertising.
- We build no profiles and make no automated decisions.
- We do not sell data and do not pass it to third parties for their own purposes.
- We require no sign-up and do not ask who you are.
If any of this changes, it will be described here before it takes effect, and reflected in the app's store listing.
5. Device permissions
MoneyDue may ask for two permissions, and only when they are needed for a feature you chose.
Biometrics — if you turned the app lock on: Face ID or Touch ID on iPhone; device biometrics on Android, for example a fingerprint. The app receives no biometric data: the operating system performs the check, and MoneyDue learns only the result — yes or no.
Notifications — if you turn on reminders about due dates in the app settings, or accept them at your first debt with a due date. While reminders are off, the permission is not requested. The notification text is assembled on the device from your own records and is sent nowhere. If the biometric lock is on, the notification shows no contact name and no amount — only the app name and the number of reminders.
Access to contacts, the camera, location and the microphone is not requested.
6. How long data is kept
- On the device — until you delete it, or delete the app. We have no influence on that.
- Support requests — up to 24 months: emails, the Telegram conversation, and the identifier the bot keeps.
- Exchange rates — refreshed and overwritten, with no period set; they are not personal data.
7. Your rights
Under the GDPR you have the right to request access to your data, its rectification, erasure, restriction of processing and data portability, and to object to processing based on legitimate interest.
The practical side: for the records on your device we cannot act on such a request — we do not have them. Full control is yours: deleting a record in the app deletes it, and deleting the app deletes everything.
The requests we can actually act on concern correspondence with support. Write to support@moneydueapp.com.
If you believe we are infringing your rights, you have the right to lodge a complaint with a supervisory authority. In Poland this is Prezes Urzędu Ochrony Danych Osobowych (UODO), ul. Stawki 2, 00-193 Warszawa.
8. Children
MoneyDue is not intended for children and is not directed at them. We deliberately collect no data from anyone, children included.
9. Security
The database is encrypted with AES-256 (SQLCipher). The key is kept in the device's system secure storage and is available only after the device has been unlocked once.
You can additionally turn on the biometric lock, with biometrics or your device passcode. While that lock is on, the contents of the screen are hidden by a privacy screen when you switch between apps.
We cannot guarantee the security of a device that has been compromised, or left unlocked in someone else's hands. Keep your device passcode and biometrics turned on.
10. Changes
We update this document when the behaviour of the app changes. Significant changes — syncing between devices, for example — are described here before the corresponding version is released.
This document describes the behaviour of the version named in the table below. If you are using a newer version, the current revision is at moneydueapp.com/privacy.
| Date | Version | What changed |
|---|---|---|
| 22 September 2026 | 1.0 | First revision |
| 24 September 2026 | 1.0 | Section 3.5: the browser language opens the site in your language and is not stored anywhere |
| 25 September 2026 | 1.0 | Section 11: a direct link to the support bot on Telegram |
| 25 September 2026 | 1.0 | Section 3.2: the contact's name is not included in the reminder text |
11. Contacts
Questions, suggestions, problem reports:
- Telegram: @moneydue_support_bot
- email: support@moneydueapp.com