Draft — this content is pending professional legal review (and Finnish translation) before community launch.
Privacy Policy
Draft · last edited 2026-07-17
Stewrd is built so that your financial life stays yours. This policy explains what we hold, why, where it lives, and the rights you have over it. It reflects the data-classification model in our engineering decision record ADR-0001.
What we hold, by sensitivity
Stewrd sorts every piece of data into tiers and treats each accordingly:
- Account data — your email and display name, used to sign you in.
- Financial behaviour — accounts, transactions, budgets and categories you record.
- Giving records — treated as special-category data, private to you by default, with every cross-member read logged.
- Secrets — passwords and keys, never readable by staff and never logged.
Where your data lives
Every byte is stored and processed in the European Union (Frankfurt region). It does not leave the EU. Our infrastructure providers are SOC 2 Type 2 audited and encrypt data at rest.
Retention
- Account data: removed within 30 days of account deletion.
- Financial behaviour: retained while your account is active; capped thereafter.
- Giving-record access logs: retained to support your right to audit who has read your giving.
Your rights
You can access, export, correct, or delete your data at any time, on every tier. Requests are handled within the timeframes required by the GDPR.
Contact
Data controller and contact details to be completed before launch.