KeepSafe Ledger Privacy Policy

Last updated: 2026-08-12
KeepSafe Ledger is a product of The One Barter LLC ("we," "us," "our"), which operates as the data controller for anything described in this policy.

1. Overview

KeepSafe Ledger is a local-first desktop finance application. Your financial data lives on your device by default. Some optional features — specifically bank connections via Plaid, cloud AI providers, and paid subscriptions — involve sending certain data off your device. This policy describes exactly what those features do and what data they touch.

2. Data We Process

3. Data Storage — Default (No Bank Connection)

4. Optional Bank Connections (Plaid)

If you choose to connect a bank account inside KeepSafe Ledger, we use Plaid to authenticate with your bank and to retrieve transactions and account balances.

What Plaid sees: your bank login credentials, the transactions Plaid can retrieve on your behalf, and the account balances your bank exposes.

What KeepSafe's servers see and store:

What KeepSafe's servers do NOT store:

Retention. Access tokens are deleted from our servers when you either (a) disconnect the bank from Profile → Connected Banks, (b) cancel your subscription, or (c) request deletion via support@keepsafeledger.com.

Your rights. You can disconnect any bank at any time from Profile. Disconnecting deletes both the access token on our servers and the sync cursor. Transactions already imported to your device remain on your device and are unaffected.

If you prefer not to send any data off your device, use CSV import instead — it works fully offline.

5. Payments, Trials, and License Keys

Paid subscriptions (KeepSafe Ledger Plus) are processed by Stripe. We never see or store your full card details.

Once a purchase completes, our Stripe webhook Worker:

If you start a 14-day free trial, we store your email address plus a one-time verification code (deleted immediately on successful verification) and a "trial consumed" flag preventing repeat trials from the same email.

6. Optional Third-Party AI Providers

If you configure a cloud AI provider (BYOK) instead of the default on-device AI, aggregated finance summaries — never raw transactions — are sent directly from your device to that provider using your own API key.

6a. Feedback Submissions

If you send us feedback via the in-app Send Feedback form, we collect what you choose to share plus a small amount of context to help us triage:

What we do with it:

We do not attach your finance data, Plaid transactions, or any local KeepSafe data to feedback submissions. Only the fields listed above.

You can request deletion of past feedback submissions by emailing support@keepsafeledger.com with your install ID or reference number.

7. Sub-processors

We rely on the following sub-processors to operate KeepSafe Ledger's optional online features. Each is bound by their own contractual privacy obligations.

Sub-processorPurposeData touched
Cloudflare Workers + KVHosts backend + stores tokens/licenses/feedbackPlaid access tokens, license records, sync cursors, feedback submissions
PlaidBank connection + transaction retrievalYour bank credentials, transactions, balances
StripePayment processingCard details, billing address, email
ResendTransactional email deliveryYour email address, verification code, license key, feedback digest
GitHubFeedback issue mirror (private repo)Your feedback text and metadata (see Section 6a)

8. Security

9. Data Retention

10. Your Choices

11. Children

KeepSafe Ledger is not directed at children under 13. We do not knowingly collect data from children.

12. Contact

For privacy questions or deletion requests: support@keepsafeledger.com

Security-vulnerability disclosures: see our security policy.