1) Scope & Controller

This Policy covers personal information processed by WealthAI (“WealthAI”, “we”, “our”, “us”). If you have questions, see Contact.

2) Data We Collect

Account & Profile

  • Email address; Firebase user ID
  • Display name, avatar, short bio (optional)
  • Authentication status and timestamps

Purchase & Entitlements

  • Subscription status (active/expired), product IDs, renewal period
  • Platform order identifiers (from Apple/Google via RevenueCat)
  • We do not receive your full payment card details

Content You Provide

  • Ideas, saved items, coach inputs, and related text
  • Goal titles, descriptions, and other content you type into the App
  • Support messages and feedback

Device & Technical

  • Device model, OS version, app version, language, timezone
  • Approximate region (from store/OS), crash and performance data (if enabled)
  • Push token (for notifications you opt into)

Usage

  • Feature interactions (e.g., generates, saves), session metadata
  • In-app settings, preferences

AI Processing

  • Text you choose to send in AI features (for example: business ideas, coach questions, and 12-week goal plans) and the generated outputs
  • Limited contextual metadata needed for the AI to respond (such as feature type, archetype, and approximate language/timezone)
  • Your AI consent choice and related logs (for example, when you accepted or declined AI processing and which version of the notice you saw)

Sources: you (directly, in-app); device; app stores; entitlement provider; authentication provider; and service providers (including AI providers) noted below.

3) How We Use Data

  • Provide and improve the App, including core features and AI functionality (via third-party AI providers where you choose to use those features)
  • Authenticate users and secure accounts
  • Manage subscriptions, trials, and entitlements
  • Send optional reminders and tips via push notifications
  • Personalize content (e.g., saving limits, Pro features)
  • Monitor performance, fix bugs, prevent fraud or abuse
  • Comply with legal obligations and enforce terms
  • Respond to your requests and support inquiries
  • Record and honor your privacy and AI consent choices

5) Sharing & Disclosure

We share personal information with service providers that help us operate the App. Typical categories:

  • Authentication: Firebase Authentication (account signup/sign-in)
  • Billing/Entitlements: Apple App Store, Google Play, RevenueCat (subscription status)
  • AI Processing: OpenAI or similar AI providers (to generate outputs from your prompts when you choose to use AI features and, where required, have provided consent)
  • Hosting/Infrastructure & Crash/Performance (if enabled)

We may also disclose information to comply with legal requests, protect users, or as part of a merger, acquisition, financing, or asset sale (with appropriate safeguards).

When we send data to AI providers, we do so to generate responses and operate the App. We do not permit AI providers to use your prompts and outputs for their own advertising or to train public models on your identifiable content, and we configure available settings to reflect this. AI providers may still temporarily store data for abuse monitoring, security, or legal compliance as described in their own privacy documentation.

6) Retention & Deletion

  • We retain data while your account is active and as needed to provide the App.
  • Upon in-app account deletion (Profile → Account → Delete Account), we delete or de-identify your personal data within a reasonable period (typically within 30 days), except where retention is required for legal, security, or fraud-prevention reasons.
  • Backups may persist for a limited time per standard retention cycles.

7) Your Rights

GDPR/UK GDPR

  • Access, correction, deletion
  • Portability, restriction, objection
  • Withdraw consent (where processing is based on consent, including certain AI uses)

CCPA/CPRA (California)

  • Right to know, delete, and correct
  • Right to opt-out of certain uses of personal information for cross-context behavioral advertising
  • Right to limit use/disclosure of sensitive personal information

To exercise rights: use in-app deletion or contact us. We may verify your request.

8) International Transfers

Your data may be processed in countries outside your own (e.g., the United States). Where required, we use appropriate safeguards such as Standard Contractual Clauses.

9) Security

We employ administrative, technical, and physical safeguards designed to protect personal information. No method of transmission or storage is 100% secure.

10) Children’s Privacy

The App is intended for adults 18+. We do not knowingly collect personal information from children. If you believe a child provided data, contact us and we will take appropriate steps.

11) Cookies & Tracking

App We generally do not use third-party cookies in the mobile app. Website The website may use cookies or similar technologies for essential functionality, analytics, and preferences. You can control cookies via your browser settings.

12) Push Notifications & Preferences

  • We send push notifications only with your permission. You can disable them anytime in device settings:

iOS

  • Settings → Notifications → WealthAI

Android

  • Settings → Apps → WealthAI → Notifications

AI Features & Consent

  • Some features (for example: AI-powered ideas, Wealth Coach, and AI-generated 12-week goal plans) send your text and limited context to our AI provider (currently OpenAI) so we can generate responses for you.
  • Before we first send your content to an AI provider, the App shows an AI consent screen that explains what is shared and asks for your permission. If you decline, those AI features will not send your data to the provider and may be disabled or fall back to simpler, non-AI suggestions.
  • If you change your mind, you can stop using AI features, decline future AI prompts, or contact us to help manage your preferences. We will honor your choice going forward, subject to technical and legal limitations.
  • We use reasonable measures and provider settings so that your prompts and outputs are used only to deliver the service to you, and not for the provider’s advertising or to train public models on your identifiable content.

13) Do Not Track

Your browser may send a “Do Not Track” (DNT) signal. Because there is no industry standard for DNT, we do not respond to DNT signals at this time.

14) Changes to this Policy

We may update this Policy from time to time. We will post the updated version with a new “Last updated” date. Material changes may also be communicated in-app or by email.

15) Contact & Controller

Controller: WealthAI
Contact Support

If you are in the EEA/UK and wish to contact an EU/UK representative or Data Protection Officer (if appointed), email us for details.