1. Introduction

Jointly ("we," "us," or "our") is operated by Joshua Knopman, a sole proprietor based in Brooklyn, New York. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use the Jointly mobile application (the "App").

By using the App, you agree to the collection and use of information as described in this Privacy Policy. If you do not agree, please do not use the App.

2. Information We Collect

Account Information: When you create an account, we collect your name, email address, and profile photo (if provided). You may sign in using email/password, Google Sign-In, or Apple Sign-In. If you use Apple Sign-In, Apple may provide a private relay email address instead of your real email address, depending on your Apple ID settings.

Financial Data via Plaid: If you choose to connect a bank account, we use Plaid Inc. to securely access your transaction data. Plaid retrieves transaction details (merchant name, amount, date, category) and basic account information (institution name, account mask) on your behalf. Jointly never receives, stores, or has access to your bank login credentials. Your credentials are handled entirely by Plaid under their own End User Privacy Policy.

Financial Data via Apple FinanceKit: If you choose to connect your Apple Wallet, we use Apple's FinanceKit framework to access transaction data from your Apple Card, Apple Cash, and Savings with Apple accounts. FinanceKit reads this data directly from your device — Apple does not receive or have access to the transaction data you share with Jointly. We collect transaction details (merchant name, amount, date, category) and transmit them to our servers for expense-splitting functionality. You authorize this access through a system-level iOS prompt and can revoke it at any time in iOS Settings → Privacy & Security → Finance.

Expense and Split Data: We store records of transactions, manual expenses, splits, settlement history, and related notes that you create within the App.

Receipt Images: You may attach receipt or photo images to your transactions and splits within the App. These images are stored in Firebase Storage. Receipts on a transaction you have not split remain private to you; once a transaction is split, its receipts become visible to your partner along with the shared split.

Partnership Data: If you pair with a partner, we store information about that relationship, including invite codes and shared split preferences.

Payment Preferences: If you choose to set a default payment method (Venmo, PayPal, Cash App, or Apple Cash) for settlement, we store your username for that service. For Apple Cash, we store the phone number you provide so the App can open Apple's Messages app addressed to your partner to complete a payment — the phone number is shared with your linked partner for this purpose. When you settle up or invite a partner, the App may pre-fill settlement details (such as the merchant, amount, split percentage, and date) into your chosen payment app or into a Messages/SMS draft that you review and send. We do not process payments directly.

Biometric Authentication: If you enable Face ID or Touch ID, your sign-in credentials are stored in the iOS Keychain with biometric access control. No biometric data (fingerprints, facial scans) is collected, stored, or transmitted by Jointly. All biometric processing is handled locally by Apple's LocalAuthentication framework and never leaves your device.

In-App Feedback: If you respond to an optional in-app satisfaction survey, we store your response to help improve the App. Survey responses are also sent to Firebase Analytics.

Subscription Data: If you subscribe to Jointly Premium, Apple processes your payment through the App Store. We store your subscription status and a subscription identifier in our database to manage feature access. We do not receive or store your payment method details (credit card number, billing address, etc.). All payment processing is handled entirely by Apple.

Analytics: We use Firebase Analytics to collect pseudonymous usage data to improve the App. Analytics events are tied to a random account identifier (not your name or email), and some events are generated on our servers rather than on your device. This includes screen views, feature interaction events (such as creating splits, connecting accounts, or changing settings), and aggregated behavioral metrics (such as the number of connected accounts, splits created, or your preferred payment app). We also collect user-created category names and optional survey responses. We never send your name, email, transaction amounts, merchant names, or account numbers to analytics. Analytics data is processed by Google under their privacy documentation.

Push Notifications: If you enable push notifications, we store a device token for each device you are signed in on, so we can deliver notifications about new splits, settlements, and review requests. These tokens do not contain personal information. A device's token is deleted when you sign out on that device, when you request account deletion, and automatically once it stops working.

Activity Data: We record a timestamp of when you last used the App. We use this solely to identify accounts that have been inactive for an extended period so we can pause their bank connections (see "Inactive Accounts" under Data Retention and Deletion below). This timestamp does not include your location or any details about what you did in the App.

Device Information: If you choose to submit a bug report or contact support from within the App, your message may include basic device information (app version, iOS version, and device model). This information is only sent when you initiate a support request and is not collected automatically.

3. How We Use Your Information

We use the information we collect to:

4. We Do Not Sell Your Data

We do not sell, rent, trade, or otherwise share your personal information or financial data with third parties for their marketing or advertising purposes. Period.

5. How We Share Your Information

We share your information only in the following limited circumstances:

6. Data Security

We take reasonable measures to protect your information, including:

However, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.

7. Data Retention and Deletion

We retain your data for as long as your account is active or as needed to provide our services.

Account Deletion: You can delete your account directly from the App via Settings. Account deletion includes a 7-day grace period during which you can cancel by signing back into the App. After 7 days, all of your data is permanently and irreversibly deleted, including your profile, transactions, splits, settlement history, partnership data, category preferences, uploaded receipt images, your profile photo, and any connected account records. Please note that settled splits your partner created and settled are part of your partner's own settlement history and remain in their account after your deletion. You may also contact us at help@getjointly.co for assistance with a deletion request.

Disconnecting a Bank Account: When you disconnect a bank account, the associated Plaid access token is immediately revoked and deleted from our servers, preventing any further data access. Disconnecting only stops future syncing — it does not delete anything already synced. Your existing transactions, splits, settlement history, and any transactions you marked Personal are all retained. If you want that data removed, you can use "Remove Accounts" in Settings → Connected Accounts, which lets you pick individual accounts at that bank; removing an account stops syncing it and permanently deletes its transactions and unsettled splits (settled splits remain in your settlement history because they are shared with your partner). You can also delete your entire account.

Deleting a Manual Expense: A transaction you added by hand can be deleted outright by the person who added it, as long as it has not been settled. Deleting it permanently removes the transaction and any splits it created from our servers, for you and for your partner, and updates the balance between you. This cannot be undone. Transactions synced from a connected bank or from Apple Wallet cannot be deleted this way, because they are a record of a charge that actually occurred — you can mark those Personal to keep them out of your shared splits instead.

Inactive Accounts: If you do not use the App for an extended period (currently 45 days), we automatically pause your bank connections to protect your privacy and avoid maintaining access we no longer need on your behalf: the associated Plaid access tokens are revoked and deleted from our servers, exactly as if you had disconnected the account yourself. We send you a notice beforehand so you have an opportunity to return first. Your cached transactions, splits, and settlement history are retained — only the live bank connection is removed. You can reconnect at any time from Settings to resume syncing. This inactivity pause applies to all connections, including Apple Wallet via FinanceKit (Apple Card, Apple Cash, and Apple Savings). FinanceKit reads data directly from your device rather than through a third party, so there is no access token for us to revoke; instead we clear the authorization record that permits the App to read those accounts, and syncing stops until you reconnect from Settings.

Disconnecting Apple Wallet: When you revoke FinanceKit access — either through the App's settings or via iOS Settings → Privacy & Security → Finance — we immediately stop accessing new transaction data from your Apple Wallet. As with a bank disconnection, this only stops future syncing: revoking FinanceKit access does not delete previously shared data. Your existing transactions, splits, and settlement history are retained until you remove them yourself or delete your account.

Removing Older Transactions: In Settings → Connected Accounts you can adjust the "Show Transactions From" date. Moving this date forward permanently and irreversibly deletes synced transactions dated before it from our servers. Your splits and settlement history are preserved.

Consent: Before connecting your first bank account, we obtain your explicit consent to access transaction data through Plaid. For Apple Wallet connections, consent is obtained through the FinanceKit authorization prompt, a system-level iOS dialog. This consent is logged with a timestamp for our records. You can revoke access at any time by disconnecting your bank account in Settings.

8. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

To exercise any of these rights, contact us at legal@getjointly.co.

9. California Residents (CCPA/CPRA)

If you are a California resident, you have the right to know what personal information we collect, request access to or deletion of it, correct inaccurate information, and opt out of the sale or sharing of personal information. As stated above, we do not sell or share your personal information, and we will not discriminate against you for exercising any of these rights.

The categories of personal information we collect are: identifiers (name, email, account identifier, device token); financial information (transaction details, account masks, institution names, subscription status); commercial information (splits, settlement history, category preferences); visual information (your profile photo and any receipt images you upload); a phone number (only if you provide one for Apple Cash); internet or other electronic activity (pseudonymous app usage and analytics events); and, only when you submit it, the contents of a support request. We use this information for the purposes described in "How We Use Your Information" above. To make a request, contact us at legal@getjointly.co.

10. New York Residents

In compliance with the New York SHIELD Act, we implement reasonable safeguards to protect the security, confidentiality, and integrity of private information of New York residents, including administrative, technical, and physical safeguards.

Breach Notification: In the event of a security breach that compromises your personal information, we will notify affected users without undue delay, as required by applicable law, and describe the nature of the incident and the steps we are taking in response.

11. Children's Privacy

The App is intended for adults. As stated in our Terms of Service, you must be at least 18 years old to use Jointly, and the App is not directed to minors. We do not knowingly collect personal information from anyone under 18, and in particular do not knowingly collect information from children under 13. If we become aware that we have collected personal information from someone under 18, we will take steps to delete that information promptly. If you believe a minor has provided us with personal information, please contact us at legal@getjointly.co.

12. Disclaimer of Liability

The App is provided on an "as is" and "as available" basis, without warranties of any kind, either express or implied. Jointly is not a financial advisor, accountant, or bank. The App is a tool for tracking and splitting shared expenses and does not provide financial, tax, or legal advice.

To the fullest extent permitted by applicable law, Jointly and its operator shall not be liable for any indirect, incidental, special, consequential, or punitive damages, or any loss of profits, revenue, data, or use, arising out of or related to your use of the App, including but not limited to:

You use the App at your own risk and are solely responsible for verifying the accuracy of any financial information.

13. Third-Party Links and Services

The App may contain links to third-party services (such as Plaid, Apple FinanceKit, Venmo, PayPal, and Cash App). We are not responsible for the privacy practices or content of these third-party services. We encourage you to review their privacy policies before using them.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by updating the "Last updated" date at the top of this page. Your continued use of the App after changes constitutes your acceptance of the updated policy.

15. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us at:

Jointly
Operated by Joshua Knopman
Brooklyn, New York
info@getjointly.co