Effective August 2026
Privacy Policy
This policy explains what Lammirian collects, why we need it, and the choices you have. We use your data to run the app. We do not sell it.
Data we collect
- Account data. Clerk handles authentication. Depending on how you sign in, we receive details such as your email address, name, profile image, and the identifiers needed to connect your Lammirian account. Sign-in options include Google, Apple, and email.
- Financial data you provide. This includes accounts, balances, transactions, categories, budgets, recurring items, plans, notes, and other information you choose to enter. The app also keeps local data so core features can work offline and sync when a connection is available.
- Connected-bank data. If you choose to connect a supported US bank through Plaid, Lammirian receives read-only account, balance, and transaction data. Plaid handles your bank credentials; Lammirian does not receive them.
- Data shared with other users. When you use splits and friends, the people you split with can see the shared expense details and amounts owed between you, and may receive push notifications about them.
- Device and usage data. PostHog helps us understand how Lammirian is used, such as which screens or features are opened and basic device information. We do not use PostHog to track you across other apps. We also store your device push token so we can deliver notifications you have enabled.
- Crash data. Sentry receives technical diagnostics when the app fails, including device, operating-system, app-version, and error details. This helps us find and fix crashes.
AI processing
Lammirian's AI features include assistant chat, voice transaction parsing, receipt OCR, note analysis, and what-if scenarios. When you use one of these features, your prompt and the context needed to answer it are sent through our backend and OpenRouter to the selected large-language-model provider. Voice input is sent for transcription as part of this processing; we do not keep the audio afterwards.
A what-if scenario may include a summary of your financial data. It may also use public web research when current outside information would improve the result. Public research is combined with your request to produce the scenario; it does not make your private financial data public.
Help improve AI
The in-app Help improve AI setting is on by default. While it is on, we may store AI inputs, outputs, relevant context, feature results, and corrections you make after an AI suggestion. We use this material to evaluate, improve, and fine-tune Lammirian's AI features.
You can stop future collection at any time in Settings → Diagnostics by turning off Help improve AI. We do not sell this data.
If you delete your account, AI-improvement records already added to this corpus are not deleted. Instead, we irreversibly anonymize them by replacing your user ID with a salted, one-way hash. This removes the direct link to your deleted account while preserving the material used to improve the models.
Android notification access
On Android, Lammirian can capture transactions from bank push notifications. This feature is disabled by default and requires your explicit permission. When enabled, matching notifications are parsed locally on your device. Notification access is optional and can be turned off in Android settings.
Subscriptions and payments
Lammirian offers Plus, Pro, and Ultra subscriptions. RevenueCat helps manage subscription status. Apple or Google processes the purchase through the App Store or Google Play, so Lammirian does not receive your full payment-card details. Those companies handle payment information under their own privacy policies.
Where your data lives
Your synced data is stored with our backend infrastructure provider, Convex, and is protected in transit and at rest. Our AI, analytics, and crash providers process only the data described above.
Retention and account deletion
We keep personal data while your account is active and as needed to provide the service, resolve security or billing issues, and meet legal obligations. Data stored locally remains on your device until the app or its data is removed.
When you delete your Lammirian account, we delete the personal data tied to it from our active systems. As explained above, records already included in the AI-improvement corpus are retained only after your user ID is replaced with a salted, one-way hash. Store purchase records may also be kept by Apple, Google, or RevenueCat under their own retention rules.
Your choices and rights
You can review and change information in the app, disconnect a linked bank, revoke Android notification access, opt out of future AI-improvement collection, or delete your account. Depending on where you live, you may also have rights to access, correct, export, restrict, or delete personal data and to object to certain processing.
To make a privacy request or ask a question, email support@lammirian.com. We may need to verify that the account is yours before completing a request.
Children
Lammirian is not directed to children under 13, and we do not knowingly collect their data. If you believe a child has created an account, contact us and we will delete it.
Changes to this policy
We may update this policy as Lammirian changes. If an update materially changes how we use personal data, we will provide notice in the app or by another reasonable method.