Privacy Policy

Updated 14 August 2026

OmniAsset keeps your data on your device by default. Some optional features send a limited amount of data off the device — this policy says exactly what, and when. It reflects how the app actually behaves.

What stays on your device

Your accounts, holdings, transactions, cash flow, goals, snapshots and settings are stored locally on your device, encrypted at rest. No account is required for the core app, and this local data is never uploaded on its own.

When you run online analysis

The health/research report is computed on our server. When you run it, a compact snapshot of your holdings (units, amounts, dates and fund codes) is sent to our analysis engine, used to compute the report, and discarded — it is processed transiently and not stored. Your bank descriptions, raw statement files and credentials are never sent.

Cloud sync (optional)

If you turn on Cloud, your portfolio is stored with our cloud provider (encrypted on their servers, not end-to-end) so it can sync across your devices. This needs an account (email). You can delete your cloud data at any time (see “Account deletion”); local-only use never creates an account.

Optional AI interpretation

AI interpretation is off unless you enable it. When enabled, only a compact set of portfolio metrics and health flags (and, for the second opinion, the primary proposal) are sent to the AI route you chose. Your transaction ledger, daily NAV history, bank descriptions, raw holdings files and credentials are never sent.

Payments

If you buy Built-in Premium, the purchase is handled by Google Play. We receive confirmation of your subscription status, not your card details.

Analytics

Website. This website uses Cloudflare’s privacy-friendly Web Analytics to understand aggregate traffic — roughly how many people visit and where from. It is cookieless, does not build a profile of you or track you across other sites, and none of it is sold.

App — optional, off by default. The app collects no analytics unless you turn on Help improve OmniAsset in Settings. If you opt in, we collect anonymous product-usage events — for example that a health check or a comparison completed, or which feature was opened — together with a rotating anonymous install identifier (changed roughly monthly), the app version, your coarse locale (e.g. en-IN), a month-level install cohort, and the acquisition source that brought you to the app (UTM tags via the Play Install Referrer). This is first-party: events go to our own gateway and are stored by our cloud provider (Supabase); raw events are short-lived (about 35 days) and only anonymous aggregates are kept.

We never collect your holdings, amounts, balances, security or fund names, transaction history, email, account identifier, files, AI prompts or any portfolio content as analytics — the app’s event design makes that impossible, and our server rejects anything outside a fixed, non-financial event list. There are no third-party advertising or cross-site tracking SDKs. You can turn analytics off and delete your analytics identifier at any time in Settings; doing so immediately purges the identifier and any queued events.

Account deletion

You can delete your account and cloud data at any time — from the app, or on the web at /delete-account without reinstalling. Deleting the account removes active cloud data and sessions; encrypted backups age out under the retention policy. It does not cancel a Google Play subscription (manage that in Google Play).

Contact

Questions about privacy: [email protected].