Security

How Clario protects your money and data

The short version: Clario reads your transactions to build your protocol. It can never move your money, and we never sell your data.

What we store

  • Account details: your email address, name and how you sign in.
  • Financial data: accounts, balances and transactions from a connected bank or entered by you, plus your bills, jars and protocol settings.
  • Subscription status from the App Store or Google Play — never your card details.
  • Technical data we need to run and improve the service, such as app version, error logs, crash reports and pseudonymous usage events.

What we never get

  • Your bank username or password — sign-in happens with Plaid or Monobank, not with us.
  • Any ability to move money, make payments or change your bank account.
  • Your card numbers or payment details — payments are handled by Apple and Google.

Bank connection providers

  • Plaid (US & Canada; UK & EU coming soon): you sign in to your bank inside Plaid's secure flow. Clario receives a read-only access token and never sees your bank credentials.
  • Monobank (Ukraine): Clario connects through Monobank's official API with read-only access to your statements. You can revoke access in Monobank at any time.
  • Everywhere else: nothing is connected. You add accounts by hand or import a statement file.
Plaid End User Privacy Policy

Where your data lives

  • Our servers run on Google Cloud in the United States, and your data is stored in encrypted, managed PostgreSQL databases.
  • Only Clario's founder can access production systems and customer data, and only for operations and support.

Encryption

  • The app and this website talk to our servers only over HTTPS with TLS 1.2 or later; plain HTTP is redirected. On iPhone, Apple's App Transport Security enforces this.
  • Bank access tokens are encrypted by us with AES-256, with a separate integrity check and separate keys.
  • Our database is encrypted at rest by our hosting provider, and passwords are stored only as one-way hashes.

Sign-in and sessions

  • Sign in with Apple, Google, or email and password. New email addresses are confirmed with a one-time code.
  • Sessions use signed tokens, kept in the iOS Keychain or Android Keystore on your phone. Signing out removes the session from your device, and deleting your account ends all of your sessions immediately.
  • You can add a PIN or Face ID / fingerprint lock to the app.

Clario AI

  • Clario AI stays off until you allow it in the app. When you ask a question, the parts of your financial data needed for the answer are sent to OpenAI. OpenAI does not use API data to train its models, and you can withdraw your permission in Settings.

Analytics and crash reports

  • The app uses Google Firebase Analytics and Crashlytics to see which screens are used and to fix crashes. These events are pseudonymous and never include your balances or transactions. Turn them off in Settings → Privacy → Share usage data.
  • The app uses Meta's App Events SDK to measure which ads bring new installs and subscriptions. It receives install, app-open and purchase events — never financial data. On iPhone, Apple asks for your permission first; on Android, you can reset or delete your advertising ID in system settings.
  • This website loads Google Analytics only if you choose "Allow analytics" in the cookie banner. It also uses Vercel's cookieless analytics for aggregate page views and performance.

No selling, no ads

  • We don't sell or rent your data, and there are no ads in Clario. Your financial data is used only to run Clario for you and is never shared for advertising.

Deleting your data

  • Delete your account from Settings in the app. We disconnect your Plaid banks and permanently erase your account and financial data from our database right away.
  • Encrypted backups age out within 14 days and server logs within 30 days.
  • Disconnecting a bank stops all further syncing immediately.
  • Prefer email? Write to us and we'll delete everything for you.