PerfinanceEspañol

Perfinance Privacy Policy

Version 1.0 — Effective and last updated August 1, 2026

This Policy explains how Perfinance (“Perfinance,” “the application,” “the service,” “we,” or “us”) processes information in the Perfinance iOS application, the website at perfinance.carfloapps.com, and related support services during the current demo/pre-release phase.

1. Scope and important summary

Perfinance is a personal-finance organization tool. It does not connect to bank accounts, ask for online-banking credentials, or collect payment-card numbers. You decide whether information entered in the app is real, approximate, or fictional.

Financial information is kept on your device by default. Cloud synchronization and external artificial-intelligence features are separate, optional functions. The app requires an account, but declining cloud sync or AI processing does not prevent use of non-AI, local-only functions.

2. Information we process

Depending on the features you choose, we process:

We found no advertising SDK, cross-app tracking SDK, advertising identifier use, bank connection, remote-push token collection, or public user-content publishing in the launch implementation. Notifications are scheduled locally on the device.

3. Local storage and optional cloud sync

Financial data is stored as files in the app’s iOS sandbox. Perfinance does not add a separate application-level encryption layer to those files; it relies on iOS sandbox and device security protections. Face ID or device authentication can restrict the Private Savings interface, but this is not a separate encrypted vault.

If you enable cloud sync, Perfinance uploads structured financial data to Supabase so it can synchronize across devices signed in to your account. This includes the financial categories listed above, including Private Savings and participant names. Cloud sync is available to Free and Pro users, with different limits shown in the app. It is account-wide.

If you disable cloud sync, the app first preserves the device copy and requests permanent deletion of synchronized financial rows from the cloud. If the deletion request cannot finish, the app records a retry and keeps sync disabled locally. Re-enabling sync uploads remaining local records again.

Signing out removes account-scoped local data from that device. Deleting the app or losing a device can permanently destroy local-only data. Keep your own backups or enable sync if this risk is unacceptable. A copy may remain on another device until that device signs out, loses authorization, or its local app data is removed.

4. Imports and temporary files

Local import may create a temporary app copy and extracted text. Parsed candidates remain on the device while you review them. Finishing or canceling removes temporary files on a best-effort basis; records you accept become financial transactions.

For an AI-assisted import, the selected original is uploaded through Perfinance’s Supabase backend to private temporary storage and then sent, or converted and sent, to Google Gemini. Images may be sent inline; spreadsheet text may be sent in chunks; PDFs may use Google’s file service. Perfinance requests deletion after processing or cancellation and does not offer permanent document storage. Interrupted or abandoned processing can delay cleanup until operational cleanup runs. Provider security/abuse copies and logs are governed by provider terms.

Request/session metadata may remain for quota, abuse prevention, integrity and dispute handling. It may identify file type, count, processing state, storage path while active, token use and timestamps, but is not intended to store the original document or prompt content.

5. Artificial intelligence and speech

External AI is optional and requires a separate consent. It is available only to users who affirm they are at least 18. Declining leaves non-AI functions available.

Data varies by feature:

Requests go from the app to Perfinance’s Supabase Edge Functions and then to the Gemini Developer API. Direct account identifiers such as your name, email, password and Perfinance user ID are intentionally excluded from AI prompt context, but descriptions, documents or participant names can themselves contain personal data.

Google’s treatment depends on the production Cloud project and billing status. Under Google’s current terms, paid Gemini API content is not used to improve Google products, although limited abuse-monitoring retention may apply; unpaid-service content may be used to improve products and reviewed by humans. Perfinance must verify that its production API project has active billing before launch. Until that is confirmed, do not submit sensitive, confidential or third-party information to AI functions.

AI and speech results can be wrong, incomplete, outdated or misleading. Review and correct every import and result. They are not financial, accounting, tax, investment or legal advice.

6. Purposes

We use information to authenticate users; provide local storage, synchronization, imports, reports and requested AI results; manage subscriptions and entitlements; enforce quotas; restore purchases; secure and troubleshoot the service; prevent fraud and abuse; keep required consent and deletion evidence; communicate with users; comply with law; and establish or defend legal claims.

Where consent is legally required, optional cloud sync and external AI processing rely on the consent shown in the app and may be declined. You may withdraw cloud consent by disabling sync. AI consent can be avoided by not using AI; contact us to exercise applicable rights. Other processing is necessary to provide the account/service you request, meet legal obligations, or protect legitimate security and legal interests, as applicable.

7. Providers and international processing

We use or expect to use:

These providers have their own terms and privacy notices. Processing can occur in Mexico, the United States and other countries where providers or subprocessors operate. Those countries may have different protections. We use service configuration, contracts and security controls appropriate to the service and applicable law; we do not promise that data remains exclusively in Mexico.

We may also disclose information when required by law, to protect users or service security, in connection with a lawful transfer of the service, or with your direction. We do not sell or rent personal information, display third-party ads, use financial data for behavioral advertising, or share data for cross-context behavioral advertising.

8. Retention and deletion

Maximum schedules for billing, AI accounting, audit, support, delivery, infrastructure logs and backups are being finalized before production publication. See provider notices for provider-controlled retention. We do not use deleted cloud financial data as an archival user document.

To delete your account, use the in-app deletion flow. This does not cancel an Apple subscription; cancel separately in Apple subscription settings. Apple and RevenueCat may retain transaction records. Other devices may retain local copies as described above.

9. Your choices and rights

You can edit/delete financial records, decline or disable cloud sync, decline AI processing, manage local notifications in iOS, manage/cancel subscriptions through Apple, and delete your account in the app.

Depending on applicable law, you may request access, correction, deletion, opposition/objection, restriction, portability, or withdrawal of consent. In Mexico these include ARCO rights. Email contact@carfloapps.com with your request, the right requested, enough information to identify the account, and a description of the relevant data. We may securely verify identity and may deny or limit a request where law permits or requires. We will respond within applicable legal periods. You may complain to the competent privacy authority.

California and other U.S. residents may request applicable access, correction and deletion rights and information about disclosures. Perfinance does not sell or share personal information for cross-context behavioral advertising and will not discriminate for exercising applicable privacy rights.

10. Security

We use authentication, access controls, row-level security, private storage, transport encryption and provider security controls. No system is perfectly secure. Protect your device, Apple/Google account and sign-in session, and do not submit information you are not authorized to process.

11. Age

Perfinance is not designed specifically for children. The general service is for people age 13 or older. A minor must have parent/legal-guardian authorization where applicable. External AI features are restricted to people age 18 or older due to provider terms. Contact us if you believe a child provided data contrary to this Policy.

12. Changes

Material changes may be announced in the app and can require acceptance or acknowledgment of a new version. The effective date above identifies this version. Spanish and English versions are intended to be substantively equivalent; mandatory legal interpretation rules remain unaffected.

Contact

For questions or requests related to Perfinance, you may use the following contact channels: