Privacy Policy

Last updated: 8/5/2025

Introduction

NestFi ("NestFi", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the NestFi progressive-web-application and any related services (collectively, the "Service"). By accessing or using the Service you agree to the collection and use of information in accordance with this Policy.

1. Information We Collect

  • Account Information: When you create an account we collect your email address or authentication token from the chosen identity provider (e.g., Google), plus your display name if you choose to provide it.
  • Personal-Finance Data: Budgets, wallet names & balances, transactions, categories, notes, and any other content you choose to store in the Service.
  • Usage Data: Interactions within the app such as feature clicks, error logs, and performance metrics. This data is anonymised and aggregated whenever possible.
  • Device & Log Data: IP address, browser type, operating system, referring URLs, and diagnostic information collected automatically through Firebase and Google Analytics for Firebase.
  • Cookies & Local Storage: We use cookies and the browser's local storage (IndexedDB) to keep you signed in, remember settings, and enable offline mode.

2. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the Service;
  • Enable offline functionality and sync when you regain connectivity;
  • Personalise your experience and deliver relevant content, including ads;
  • Monitor and analyse usage to improve performance and develop new features;
  • Detect, prevent, and address technical issues or fraudulent activities;
  • Communicate with you about updates, security alerts, and support messages.

3. Legal Basis for Processing

We process your information under the following legal bases: (i) performance of a contract (providing the Service); (ii) legitimate interests (improving and securing the Service); (iii) your consent (for optional analytics or marketing); and (iv) compliance with legal obligations.

4. Sharing of Information

We do not sell your personal information. We may share it only:

  • With service providers such as Firebase (hosting, authentication, cloud functions, Firestore/IndexedDB sync) and advertising networks (e.g., Google AdSense) that process data on our behalf and under strict data-processing agreements;
  • When required by law or to respond to valid requests by public authorities;
  • If NestFi is involved in a merger, acquisition, or asset sale (users will be notified);
  • With your consent or at your direction.

5. Firebase Services

NestFi relies on Google Firebase for authentication, database (Firestore), storage, crash reporting, and analytics. Google may collect device information as described in the Firebase Privacy & Security documentation. All Firebase data is stored in the region selected during setup (currently "us-central").

6. Data Retention

We keep your personal data for as long as your account is active or as needed to provide the Service. You may delete your account at any time within the app; this triggers deletion of your personal-finance data after a short grace period (typically 30 days). Aggregated, non-identifiable analytics data may be retained indefinitely.

7. Security

We use encryption in transit (HTTPS/TLS) and at rest (Firebase-managed) as well as other organisational safeguards to protect your data. However, no method of transmission over the Internet or electronic storage is 100% secure and we cannot guarantee absolute security.

8. Your Rights

Depending on your location, you may have rights to:

  • Access, correct, or delete the personal data we hold about you;
  • Object to or restrict our processing of your data;
  • Request data portability; and
  • Withdraw consent at any time where processing is based on consent.

To exercise these rights, contact us at spquyt.quocta.freelancer@gmail.com.

9. Children's Privacy

The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us so we can delete it.

10. International Transfers

Your information may be transferred to — and maintained on — computers located outside your state or country where data-protection laws may differ. By using the Service, you consent to such transfers.

11. Links to Other Sites

The Service may contain links to external sites. We are not responsible for the content or privacy practices of those sites.

12. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of any material changes by posting the new Policy on this page and updating the "Last updated" date. Continued use of the Service after changes take effect constitutes acceptance of the updated Policy.

13. Contact Us

For questions about this Policy or our privacy practices, please email us at spquyt.quocta.freelancer@gmail.com.