Legal
Subprocessors & data processing
A short, honest list. Fewer providers means fewer places your financial data can go.
- Version
- v1.0.0
- Effective
- Last updated
Read with the privacy policy.
Roles
For data you upload, you are the party who decides what to process and why; FinBizDoc processes it on your instruction to produce the analysis you asked for. The providers below process it only on our instruction, for the purposes listed, and are not permitted to use it for their own advertising or profiling.
Current providers
| Provider role | Purpose | Data processed |
|---|---|---|
| Application platform (hosting, database, authentication, file storage) | Runs the app, stores accounts, uploaded documents and derived data | Email address, session data, uploaded documents, extracted transactions, saved scenarios, reports |
| AI model provider | Draft extraction from documents and plain-language explanation of computed figures | Masked document text (account numbers, PAN and similar identifiers replaced) and, for explanations, only the already-computed figures |
| Google sign-in (only if you choose it) | Authenticating you without a password | Your email address, name and profile image as returned by Google |
What is masked before anything leaves the app
- Bank and card account numbers are reduced to their last few digits.
- PAN, Aadhaar-like and similar identifier patterns are replaced with placeholders.
- Explanations receive only verified computed outputs, never the whole statement.
- Document contents are never written to application logs.
Safeguards
- Encryption in transit for every request, and at rest in storage and the database.
- Private storage buckets with short-lived signed URLs.
- Row-level security so a row is only ever readable by its owner.
- Server-side-only secrets; no provider key is ever exposed to the browser.
International transfers
Providers may process data in regions outside your own. Where that happens, transfers rely on the provider's standard contractual safeguards, and the masking above limits what identifiable content can be transferred at all.
Changes
If a provider is added, replaced or removed, this page is updated and the change is surfaced in the product where it affects how your data is handled.