Privacy Policy
Last updated: 2026-09-16
This Privacy Policy explains what data Agent Spend Ledger collects and how it is used.
1. Data we collect
- Account data: email address and authentication metadata (via Supabase Auth).
- Wallet addresses and labels you add — these are public blockchain addresses, not private keys.
- Public on-chain payment data associated with the wallets you add (transaction hash, amount, timestamp).
- Budget and webhook configuration you enter.
2. What we never collect
We never request or store private keys, seed phrases, or wallet-approval signatures. The Service is read-only and cannot move funds.
3. How we use data
Data is used to display your dashboard, evaluate budgets, send budget-threshold alerts to webhooks you configure, and operate billing for Pro plans.
4. Data retention
We retain account and payment data for as long as your account is active. [TODO: confirm data retention period]. You can request deletion of your account and associated data by contacting us.
5. Third parties
We use Supabase for authentication and data storage, Vercel for hosting, and public RPC endpoints to read on-chain data. We do not sell your data.
6. Your rights
Depending on your jurisdiction [JURISDICTION — TODO], you may have rights to access, correct, or delete your personal data. Contact us to exercise these rights.
7. Contact
Privacy questions: contact us.