
Privacy Policy
Last updated: February 2026
1. Introduction
This Privacy Policy describes how Wambai ("we", "our", or "us") collects, uses, and protects your personal information when you use our Service. We are committed to protecting your financial data and privacy.
2. Information We Collect
We collect information you provide directly: account details (name, email), financial data you enter (transactions, account balances, budgets), and documents you upload (receipts, statements). We also collect usage data (device info, browser type, pages visited) through analytics tools.
3. How We Use Your Information
We use your information to: provide and maintain the Service, process transactions and manage subscriptions, send notifications about your financial activities, improve our AI features and user experience, and communicate service updates.
4. Data Sharing
We do not sell your personal data. We share data only with: Paddle (payment processing), Firebase/Google Cloud (hosting and infrastructure), and as required by law. Household members can see shared financial data within their household.
5. Data Security
We implement industry-standard security measures including encrypted data transmission (HTTPS), secure authentication via Firebase Auth, role-based access controls within households, and regular security audits.
6. Cookies and Local Storage
We use local storage to save your preferences (theme, language) and to remember your cookie consent choice. We use essential cookies for authentication. We use Google Analytics 4 to collect anonymous usage data (pages visited, session duration, device type) to help us improve our Service. Analytics cookies (_ga, _ga_*) are only loaded after you accept our cookie consent banner. We do not use advertising cookies or tracking cookies from third parties. You can withdraw your consent at any time by clearing your browser's local storage.
7. Your Rights
You have the right to: access your personal data, correct inaccurate data, delete your account and associated data, export your financial data (Premium plan), and opt out of non-essential communications.
8. Data Retention
We retain your data for as long as your account is active. After account deletion, we remove your personal data within 30 days, except where retention is required by law.
9. Children's Privacy
The Service is not intended for users under 16 years of age. We do not knowingly collect personal information from children.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or in-app notification.
11. Contact Us
For privacy-related questions or requests, contact us at privacy@wamb.ai.