1. What Achievr collects
Account details
Your email address, and a display name if you set one. If you sign in with Google, we receive the basic profile that Google returns — name, email address, and profile picture. Passwords are handled by Firebase Authentication and are never visible to Achievr.
Financial data you enter
Income, bills, budgets, buckets and sinking funds, goals, transactions, categories, dates, and any notes you write. This is the substance of the app.
Bank data, if you connect an account
Through Plaid, Achievr receives account names, types, balances, and transaction history for the institutions you link. Achievr requests transaction data only. Your banking credentials are entered into Plaid’s own interface and never reach Achievr; what we store is the access token Plaid issues so that syncing can continue.
Household data
If you invite someone into a household, we store the invitation and the membership, and the financial data in that household becomes visible to its members.
Assistant data, if you enable it
The API key you provide for your chosen model provider, and the conversations you have with the assistant.
Technical logs
The service runs on Firebase App Hosting, which records ordinary server logs: IP address, user agent, requested path, timestamp, and response status. These are used to keep the service running and to investigate errors and abuse.
2. How it is used
Your data is used to:
- show you your finances, forecasts, and reports
- import and categorise transactions from institutions you have linked
- share data with the people you have invited into your household
- answer your questions through the assistant, when you use it
- keep the service secure, available, and working correctly
- reply to you when you contact support
It is not sold, rented, or shared with data brokers, and it is not used to target advertising. There are no advertising or analytics trackers on this site.
3. Who else processes it
Achievr relies on a small number of providers, each for a specific job:
- Google (Firebase Authentication, Cloud Firestore, Firebase App Hosting) — sign-in, database storage, and hosting. Your financial records live in Firestore.
- Plaid — bank connections and transaction import. Only if you link an institution. Plaid handles your banking credentials under its own privacy policy.
- Your chosen model provider (currently Anthropic or OpenAI, or an OpenAI-compatible endpoint you configure) — only if you enable the assistant, and only using the API key you supply. Financial context relevant to your question is sent to that provider, and their terms and privacy policy govern what they do with it.
4. How it is protected
Traffic is served over HTTPS. Firestore encrypts data at rest, and security rules restrict each document to the account or household it belongs to.
Your model provider API key gets stricter handling than the rest: it is stored outside your user profile in a collection the browser cannot read by any route, and is only ever used server-side. It is never sent back to the client, including to you.
No system is perfectly secure. Use a strong, unique password, and tell us promptly if you think your account has been accessed by someone else.
5. How long it is kept
Your data is kept while your account is open. Closing your account removes your financial records and revokes the Plaid access tokens for any linked institutions. Server logs are retained on the hosting platform’s own schedule, and backups may persist for a short period after deletion before they age out.
6. Your choices
- See and correct your data — everything Achievr holds about your finances is visible and editable in the app.
- Disconnect a bank — at any time from settings. Syncing stops and the access token is revoked.
- Remove your assistant key — at any time from settings, which stops any further data going to a model provider.
- Delete your account — from settings, or by writing to support@achievr.me.
- Ask for a copy — email us and we will export what we hold for you.
Depending on where you live you may have further rights over your personal data, including to object to or restrict processing. Write to support@achievr.me and we will honour them.
8. Children
Achievr is for adults and is not directed at children. We do not knowingly collect data from anyone under 18. If you believe a child has created an account, contact us and we will remove it.
9. Changes to this policy
If this policy changes, the date at the top of the page changes with it. Material changes to how your data is used will be signposted in the app rather than made quietly.
10. Contact
Privacy questions and data requests go to support@achievr.me. See also the Terms of Service and the contact page.