1. Scope and who this policy covers
This Privacy Policy applies to the Marnie mobile application, the Marnie website, early-access signup, and support interactions. In this policy, “Marnie”, “we”, and “us” refer to the provider of those services.
Marnie is a personal finance organisation tool. It is not a bank, lender, broker, accountant, or financial adviser. The financial information you add may be sensitive to you even when a particular privacy law does not classify it as “sensitive information”.
2. Information stored on your device
Marnie’s core financial records are stored locally on your device. Depending on the features you use, this can include:
- accounts, balances, transactions, categories, and balance adjustments;
- bills, subscriptions, scheduled income, budgets, goals, and emergency-buffer settings;
- financial profile information, settings, local insights, and conversation history;
- receipt, document, voice, and supported notification captures you choose to process; and
- local merchant rules and corrections used to improve suggestions on that device.
Camera, microphone, files, photos, and notification access are used only when you enable or use a feature that needs them. On Android, removing Marnie data does not itself revoke the operating system’s Notification Access permission; you can revoke that permission in Android Settings.
3. Information handled by online services
Some features require an online service. We limit the information sent to what is reasonably needed for the feature.
Account, profile, and subscription
Authentication and account services can hold your email address, sign-in identifiers, display name, profile image, preferred currency, onboarding status, and account timestamps. Subscription services can hold plan, entitlement, renewal, and store status. Feature-access and AI-quota records can hold usage counts linked to your account.
Optional Cloud Backup
Cloud Backup is off by default. If you enable it, Marnie uploads a private account backup containing the financial records and settings included by the backup feature. Raw notification bodies, raw notification text, and notification payloads are removed before upload; parsed transaction information can remain in the backup. Disabling backup stops future uploads but does not automatically remove the most recent backup. Replacing the backup or deleting your account removes the stored backup through the current app flow.
Waitlist, feedback, and support
If you join the waitlist, we process your email address through Mailchimp to send Marnie launch updates. If you contact support or submit feedback, we process the message, contact details, diagnostic context you choose to include, and any screenshot you attach so we can respond and improve the service.
Website visits and performance
Vercel hosts this website. We use Vercel Web Analytics to understand page visits and Vercel Speed Insights to measure loading speed, responsiveness, and layout stability. A signup confirmation page helps us estimate completed signup requests. We do not include the email entered in the signup form in analytics events or confirmation-page URLs. These website measurements do not collect the financial records stored inside the Marnie app. See Vercel’s analytics privacy information.
4. AI, voice, documents, and Insights
Marnie supports Local, Automatic, and Cloud AI modes. Local is the privacy-preserving default. Where a supported on-device model is available, Local mode keeps supported AI processing on the device.
Automatic and Cloud modes permit cloud processing. If a device cannot run a usable local model, the app can resolve an unavailable Local choice to Automatic so an eligible cloud service may provide the feature. When cloud processing is used, the information required for the task can be sent to an AI service. This may include prompts, relevant financial context, images or documents selected for review, or audio selected for transcription.
AI processing is not limited to the moment you open the Insights tab. After you allow a cloud-permitting mode or enable an AI-powered feature, insight refreshes or enabled insight notifications may run when relevant financial information changes or on the feature’s schedule.
Marnie stores account-level usage counters such as request, token, image, or audio totals for entitlement and quota management. The app’s internal AI diagnostics are designed to stay in memory and not contain user content, but AI providers process the inputs sent to them under their own service terms and retention practices.
5. Community merchant learning
Community merchant learning improves merchant and category suggestions. The current app discloses this setting as on by default after onboarding, and you can turn it off in Settings.
When enabled and you confirm a merchant correction, Marnie can submit a normalized merchant name, confirmed category, country, and general source type. The submission is designed to exclude transaction amounts, dates, account details, transaction IDs, device identifiers, and raw transaction text. Contributor records use a salted hash derived from the account identifier rather than storing the account identifier in the learning table.
Turning the setting off stops future submissions. Deleting your account removes contributor-level observations and trust records, then recalculates shared results. A de-identified directory result can remain if it continues to be supported independently by other contributors.
6. How we use and disclose information
We use information to provide authentication, backup, subscription access, transaction capture, planning, AI-assisted features, support, fraud and security protection, service reliability, and community merchant matching. We do not sell your personal information.
Service providers can process information on our behalf for infrastructure, authentication and storage, subscription management, AI and transcription, email delivery, feedback support, and waitlist communications. Current integrations include Supabase, RevenueCat, OpenRouter, Groq, Resend, and Mailchimp where the relevant feature is used.
These providers may process information outside Australia, including in the United States and other locations in which they or their subprocessors operate. The actual location can depend on infrastructure configuration and the feature used.
7. Security
We use technical and organisational measures designed to protect information, including authenticated requests, transport encryption, per-user access controls for private cloud records, and restricted storage buckets. No system can guarantee absolute security, and you should protect access to your device and sign-in account.
8. Retention and account deletion
Local financial records remain on your device until you remove them, clear the app, or use the in-app account deletion flow. Account-linked online records are kept while needed to provide the service, meet security and operational needs, or comply with applicable law.
The current in-app deletion flow permanently deletes the authenticated account, account-linked profile and usage records, cloud backup objects, subscription cache records, and contributor-level merchant learning records. It also clears Marnie financial records and supported capture and merchant-learning tables from the device. See the Delete Account page for the exact steps and important limitations.
Deleting your Marnie account does not cancel an App Store or Google Play subscription. Billing must be cancelled separately through the store. Service providers may retain limited security, transaction, backup, or legal records under their own retention obligations.
9. Your choices and privacy rights
You can change Cloud Backup, AI mode, permissions, and merchant learning in the app. You can edit much of your profile and financial information directly. Depending on where you live, you may also request access to or correction of personal information we hold, object to or restrict certain processing, or ask us to delete information.
Send privacy requests or complaints to support@trip-cache.com. Include the email used for your Marnie account and enough detail for us to understand the request. We may need to verify your identity before acting. We will investigate a privacy complaint and respond within a reasonable period.
10. Children
Marnie is not directed to children who are not legally able to consent to the creation of an account and the processing described in this policy. If you believe a child has provided personal information without appropriate consent, contact us so we can investigate and remove it where required.
11. Changes and contact
We may update this policy when the product, providers, or legal requirements change. We will update the date at the top and provide additional notice in the app when a change materially affects your choices.
For a copy of this policy in another accessible form, or for any privacy question, email support@trip-cache.com.