Privacy Policy
Effective date: February 28, 2026
1. Introduction
Rural Capital, LLC ("we," "us," or "Company"), a Texas limited liability company, operates Findurance ("the Service"), a personal finance forecasting application. This Privacy Policy explains how we collect, use, store, and protect your information when you use the Service.
By using Findurance, you agree to the collection and use of information as described in this policy. This policy should be read alongside our Terms of Service.
2. Information We Collect
Account Information
When you create an account, we collect:
- Email address
- Hashed password (stored securely via Supabase authentication; we never store plaintext passwords)
- Account preferences and settings
Financial Data You Provide
To provide forecasting services, we store the financial data you choose to enter, including:
- Account names, types, and balances
- Budget items (income and expense entries)
- Debt information
- Ledger entries and transaction records
- Reconciliation history
Authentication Data from OAuth Providers
If you sign in using a third-party provider (such as Google), we receive basic profile information (such as your name and email address) as authorized by that provider. We do not receive or store your third-party account password.
Automatically Collected Data
Our servers automatically collect limited technical data, including:
- IP address
- Browser type and version
- Access times and dates
- Pages visited within the Service
We do not use tracking cookies, advertising pixels, or third-party analytics services beyond essential authentication session management.
Future: Bank Connection Data
Findurance plans to offer optional bank account connections via Plaid in the future. This feature is not yet implemented. When available, we will update this Privacy Policy to describe what data is collected through Plaid, how it is used, and your choices regarding that data. Bank connection will always require your explicit consent.
3. How We Use Your Information
We use the information we collect to:
- Operate the Service — process your financial data to generate forecasts, manage your accounts, and provide core functionality.
- Authenticate you — verify your identity and maintain your session.
- Communicate with you — send service-related notifications, respond to your requests, and provide customer support.
- Improve the Service — analyze usage patterns (in aggregate) to fix bugs, improve performance, and develop new features.
We do not use your financial data for advertising, profiling, or any purpose unrelated to providing the Service.
4. How We Store & Protect Your Information
We take the security of your data seriously and employ the following measures:
- Database security — your data is stored in Supabase (PostgreSQL) with Row-Level Security (RLS) enabled on every table, ensuring users can only access their own data.
- Password protection — passwords are hashed using bcrypt via Supabase Auth. We never store or have access to plaintext passwords.
- Encryption in transit — all data transmitted between your browser and our servers is encrypted using HTTPS/TLS.
- Security headers — we implement industry-standard HTTP security headers to protect against common web vulnerabilities.
While we strive to protect your data, no method of electronic storage or internet transmission is 100% secure. We cannot guarantee absolute security.
5. Data Sharing
We do not sell your personal information. We do not sell, rent, or trade your data to third parties for marketing or any other purpose.
We may share your data only in the following limited circumstances:
- Service providers — we use Supabase for authentication and data storage, and Fly.io for application hosting. These providers process data on our behalf and are bound by their own privacy and security commitments.
- Future: Plaid — if and when bank connections are available, Plaid will process bank data with your explicit consent, subject to Plaid's own privacy policy.
- Legal requirements — we may disclose your information if required by law, regulation, legal process, or governmental request.
- Protection of rights — we may disclose information to protect the rights, property, or safety of Rural Capital, LLC, our users, or the public.
6. Data Retention
We retain your data for as long as your account is active and as needed to provide the Service. Specifically:
- Account data — retained while your account exists.
- Financial data — retained while your account is active. You may request deletion at any time.
- Server logs — retained for a limited period for security and debugging purposes, then automatically deleted.
You may request deletion of your account and all associated data by contacting us at info@findurance.app. We will process deletion requests within 30 days.
7. Your Rights
All Users
Regardless of your location, you have the right to:
- Access your personal data that we hold.
- Correct inaccurate information in your account.
- Delete your account and associated data by emailing info@findurance.app.
- Export your data (this feature is planned for a future release).
California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know — you may request details about the categories and specific pieces of personal information we have collected about you.
- Right to delete — you may request that we delete personal information we have collected from you.
- Right to opt-out of sale — we do not sell personal information, so there is nothing to opt out of.
- Right to non-discrimination — we will not discriminate against you for exercising your CCPA rights.
To exercise any of these rights, contact us at info@findurance.app. We will respond within 45 days as required by the CCPA.
8. Cookies & Tracking
Findurance uses essential cookies only:
- Authentication session cookies — these are necessary for you to stay logged in and use the Service. They are set by Supabase Auth and expire when your session ends or after a defined period.
We do not use:
- Advertising or marketing cookies
- Third-party tracking pixels
- Analytics cookies (such as Google Analytics)
- Social media tracking widgets
9. Children's Privacy
Findurance is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If we learn that we have collected information from a child under 18, we will take steps to delete that information promptly.
10. International Users
Findurance is operated in the United States. If you access the Service from outside the United States, your information will be transferred to and processed in the United States.
We do not specifically target users in the European Union or other jurisdictions with their own comprehensive data protection laws (such as the GDPR). By using the Service, you acknowledge that your data will be handled in accordance with U.S. law and this Privacy Policy.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email or through an in-app notification and update the "Effective date" at the top of this page.
Your continued use of the Service after changes are posted constitutes acceptance of the updated policy.
12. Contact
If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us:
Rural Capital, LLC
Email: info@findurance.app