Privacy Policy

Last updated: September 4, 2026

Prospera (“we”, “us”) helps you project cash, investments, and debt on a calendar. This policy explains what we collect and how we use it. Access is managed through our auth provider; we will update this page as the product evolves.

Information we collect

  • Account data — email address and authentication credentials managed by our auth provider (Supabase).
  • Financial inputs you enter — balances, income, expenses, investments, loans, and categorization rules.
  • Linked bank data (optional) — when you connect an institution via Plaid, we store encrypted access tokens and synced account balances, transactions, holdings, and liabilities needed to power the calendar.
  • Technical data — browser timezone cookie, session cookies, and standard server logs (IP, user agent) for security and reliability.

How we use information

We use your data to provide the product, sync linked accounts, secure the service (including rate limiting and abuse prevention), send account emails (verification, password reset), and improve reliability. We do not sell your personal or financial data.

Third parties

  • Plaid — bank linking and data aggregation. See Plaid’s legal pages.
  • Supabase — authentication and database hosting.
  • Hosting / email / error monitoring — infrastructure providers that process data on our behalf under contractual safeguards.

Retention and deletion

You can disconnect banks at any time in Settings. You can permanently delete your account (and associated data) from Settings → Profile. We may retain limited logs needed for security and legal compliance for a short period afterward.

Security

Plaid access tokens are encrypted at rest. Sessions use secure cookies in production. No method of transmission or storage is 100% secure; please use a strong unique password.

Contact

Questions about privacy: contact the Prospera operator who invited you, or the email address published with your deployment.