Budget Marketplace logo
Budget Marketplace

Privacy Policy

Last updated: August 4, 2026

Budget Marketplace ("the app") is a personal finance tool that connects a user's bank accounts (via Plaid) and Google account so that bank transaction data can be synced into a Google Sheets spreadsheet the user owns. This Privacy Policy explains what data the app accesses, how it is used, where it is stored, and who it is shared with.

In short: your financial data lives in your own Google account. Budget Marketplace's server stores only the minimum metadata needed to run the daily sync (which spreadsheet, which linked bank accounts, and encrypted access tokens) — never your bank credentials, and never a copy of your transaction history outside of your Google Sheet.

Information we access

How your information is used

What we store on our servers

Budget Marketplace's server (self-hosted by the developer) stores only:

Your actual transaction history and spreadsheet contents are not copied into a separate database — they live only in the Google Sheet you control.

Data sharing

We do not sell, rent, or share your Google user data or financial data with third parties. Data is only transmitted between Plaid, Google's APIs, and the app's own server as necessary to perform the syncing functionality described above. We do not use your data for advertising, and we do not use it to train AI/ML models. No one manually reads your transaction or spreadsheet data except as necessary to investigate a bug or a security issue, or as required by law.

Google user data & Limited Use

Budget Marketplace's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Data retention & deletion

Sync metadata and encrypted tokens are retained for as long as you keep a sync configuration active. You can disconnect a bank account, revoke Google access at any time from your Google Account permissions page, or contact us to request deletion of stored sync metadata.

Security

Access tokens for Plaid and Google are encrypted at rest (AES-256). All communication with Google and Plaid APIs occurs over HTTPS.

Changes to this policy

If this policy changes, the "Last updated" date above will be revised. Material changes affecting how Google user data is used will be reflected here before taking effect.

Contact

Questions about this policy or your data can be sent to claude@joevmartin.com.