Privacy Policy

Last updated: February 2025

1. Who we are

Monetrail is operated by Webtron Future Solutions S.R.L. ("we", "us"), with registered office in Popesti-Leordeni, Ilfov, Romania, CUI 41958940. We are the data controller for the personal data we process in connection with the Monetrail application. You can contact us at office@monetrail.com.

2. Data we collect

We collect and process the following categories of data:

  • Account data: email address, password (stored in hashed form), and any profile information you provide when you register or update your account.
  • Expense and usage data: the expenses, subscriptions, and related details you add (amounts, dates, categories, notes), calendar preferences, reminder settings, and how you use the application (e.g. feature usage) to provide and improve the service.
  • Payment and billing data: when you subscribe to a paid plan, payment and subscription information is processed by our payment provider (e.g. Polar). We may receive transaction identifiers and plan status; we do not store full payment card details.
  • Support and communications: when you contact us (e.g. via the in-app support form or email), we process the content of your message and your contact details to respond to you.
  • Technical and log data: IP address, browser type, device information, and log data (e.g. access times) for security, troubleshooting, and analytics in accordance with this policy.

3. How we use your data

We use your data to:

  • Provide, maintain, and improve the Monetrail service;
  • Authenticate you and manage your account;
  • Process subscriptions and communicate about billing;
  • Send you reminders and notifications you have requested;
  • Respond to support requests and communicate with you;
  • Ensure security, prevent abuse, and comply with legal obligations;
  • Analyze usage in an aggregated or anonymized way to improve our product.

We process your data on the basis of: performance of our contract with you, your consent where applicable, our legitimate interests (e.g. security, improvement of the service), and compliance with legal obligations.

4. Data sharing and third parties

We do not sell your personal data. We may share data with:

  • Service providers: we use providers who process data on our behalf (e.g. hosting, authentication, email delivery, payment processing). These include Supabase (database and auth), Resend (email), Polar (payments), and similar infrastructure providers. They are bound by contractual obligations to protect your data and use it only as we instruct.
  • Legal and safety: we may disclose data if required by law, court order, or to protect our rights, your safety, or the safety of others.

Where we transfer data outside the European Economic Area, we ensure appropriate safeguards (e.g. adequacy decisions or standard contractual clauses) are in place as required by applicable law.

5. Cookies and similar technologies

We use cookies and similar technologies to keep you logged in, remember your preferences, and for essential operation of the service. We may also use analytics cookies to understand how the application is used in an aggregated way. You can control cookies through your browser settings; disabling certain cookies may affect the functionality of the service.

6. Data retention

We retain your data for as long as your account is active or as needed to provide you the service and to comply with legal, accounting, or security requirements. After you delete your account or request deletion, we will delete or anonymize your personal data within a reasonable period, except where we must retain it for legal or legitimate business purposes.

7. Your rights (including GDPR)

If you are in the European Economic Area (including Romania) or another jurisdiction that grants these rights, you may have the right to:

  • Access the personal data we hold about you;
  • Request correction of inaccurate or incomplete data;
  • Request erasure of your data ("right to be forgotten"), subject to legal exceptions;
  • Object to or restrict certain processing;
  • Data portability (receive your data in a structured, machine-readable format);
  • Withdraw consent where processing is based on consent;
  • Lodge a complaint with a supervisory authority (e.g. in Romania: ANSPDCP).

To exercise these rights, contact us at office@monetrail.com. We will respond within the timeframes required by applicable law.

8. Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes encryption, access controls, and secure infrastructure. No method of transmission or storage is 100% secure; we encourage you to use a strong password and keep your login details confidential.

9. Children

The Service is not directed at individuals under 16. We do not knowingly collect personal data from children under 16. If you become aware that a child has provided us with personal data, please contact us and we will take steps to delete such information.

10. Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated policy on this page and indicate the date of the last update. Material changes may be communicated to you by email or through the application. We encourage you to review this policy periodically.

11. Contact

For any questions about this Privacy Policy or our data practices:

Webtron Future Solutions S.R.L.
Popesti-Leordeni, Ilfov, Romania
CUI: 41958940
Email: office@monetrail.com