Clocktown Budgeting
Privacy Policy
Effective: June 10, 2026
1. Scope
This Privacy Policy applies to Clocktown Budgeting, the Clocktown support service, and the Clocktown pages on this website. Clocktown Budgeting is provided by GranFeick LLC ("Clocktown," "GranFeick," "we," "us," or "our").
2. Information we collect
Depending on the features you use, we may collect:
- Account information. A Sign in with Apple account identifier and, when Apple makes it available, your name or relay email address.
- Budget information you create. Pay-cycle settings, bills, categories, guardrails, merchant rules, debt entries, transaction reviews, notes, and saved budget snapshots.
- Connected-account information. If you choose to connect an account through Plaid, we may receive institution and account metadata, account name and type, masked account digits, and connection status.
- Transaction information. Transaction and authorization dates, merchant or transaction name, amount, category, pending status, payment channel, currency, and identifiers needed to update or remove a transaction.
- Support information. Your name, email address, message, and information you voluntarily send when requesting help.
- Security and operational information. Login, connection, deletion, error, and audit events; request timestamps; and limited device or network information generated by our service providers to secure and operate the service.
3. How we use information
We use information to:
- identify deposits and estimate pay cycles;
- calculate safe-to-spend amounts and protected bill money;
- display and categorize transactions;
- apply user-created merchant rules and spending guardrails;
- track bills, savings plans, and debt payoff priorities;
- maintain, refresh, troubleshoot, and disconnect bank links;
- authenticate users and protect account access;
- provide support, investigate errors, and improve reliability; and
- comply with law and protect users, Clocktown, and our providers.
We do not sell financial data or personal information. We do not use transaction data for advertising, and we do not share it for cross-context behavioral advertising.
4. Plaid and financial account connections
Clocktown uses Plaid to let you connect financial accounts. Plaid provides a Link interface where you choose an institution and authenticate directly with Plaid and/or that institution. Clocktown receives a temporary public token, which our server exchanges for a Plaid access token. Plaid access tokens are encrypted and stored server-side; they are not stored in the iPhone app.
We request transaction and account information only to provide the budgeting features described in this policy. Plaid's handling of information is also governed by the Plaid End User Privacy Policy.
5. Where information is processed
- Apple provides Sign in with Apple and device-level security features.
- Plaid provides financial account connection and transaction data services.
- Supabase provides authentication, database, and server-function infrastructure. User-data tables are protected by account ownership controls and Row Level Security.
- Vercel and Cloudflare provide website deployment, domain, traffic, and security infrastructure.
- Google Workspace may process messages sent to our support email.
These providers process information to deliver services to us and are governed by their own terms and privacy policies. Information may be processed in the United States and other locations where these providers operate.
6. Storage and security
Clocktown uses HTTPS for network traffic, Sign in with Apple for account identity, Keychain for device-held session material, protected account-scoped files for local budgeting data, and Supabase access controls for server-held records. Plaid access tokens and Apple revocation credentials are encrypted using separate server-side keys. Administrative accounts are protected with multi-factor authentication.
No security method is perfect. We cannot guarantee that information will never be accessed, lost, or misused, but we use safeguards designed for the sensitivity of financial information.
7. Retention
- Account, budgeting, and connected financial data are retained while your Clocktown account remains active and as needed to provide the features you choose to use.
- Unlinking a bank disconnects the Plaid Item and stops new retrieval from that connection. Previously imported transactions remain part of your Clocktown account until you delete them or delete the account.
- Successful in-app account deletion removes active Clocktown account records and the account's protected local app data. Temporary copies may remain in encrypted provider backups until those backups are overwritten under the provider's normal backup schedule.
- Security, fraud-prevention, legal, or support records may be retained only as long as reasonably necessary for those purposes. We avoid placing full transaction bodies or bank credentials in routine logs.
8. Your choices and consent withdrawal
You control whether Clocktown connects to financial accounts.
- Withdraw bank-data consent: use the disconnect control in Clocktown or contact support. This stops future retrieval from that Plaid connection.
- Delete individual information: edit or remove transactions, bills, debts, categories, merchant rules, and other user-created records where the app provides that control.
- Delete the account: open Clocktown, select Security, then Delete account, and confirm with Apple. Full instructions are available on our Account and Data Deletion page.
- Privacy request: contact support@granfeick.com to request access, correction, deletion, or other rights available under applicable law. We may verify your identity before acting.
9. Children
Clocktown is not directed to children under 13, and we do not knowingly collect personal information from children under 13. Users must be old enough to create an Apple account and lawfully use connected financial accounts.
10. Changes to this policy
We may update this policy when Clocktown's practices or legal obligations change. We will post the updated date here and provide additional notice when a material change requires it.
11. Contact
Questions or privacy requests can be sent to support@granfeick.com. Please do not email bank passwords, MFA codes, full account numbers, or other authentication secrets.