GlidePath Money

Privacy

Privacy Policy

Plain-English version: by default, your financial data lives on your computer and we don’t keep a copy of it. A few optional features you can switch on — AI categorization and the “help improve bank support” diagnostic — send limited data off your machine; we spell out exactly what, below. We also collect the minimum needed to bill you and license the app. Separately, this marketing site uses analytics and ad-conversion tags described below; those site tags do not receive your financial file, transactions, balances, or imported files from the desktop app. This page is the precise version of that promise.

Last updated: July 22, 2026

What we deliberately don't collect

Your bank account balances, transactions, credit card numbers, retirement account values, net worth, cash flow, debt amounts, real estate values, business income — by default none of this is sent to us. It all lives in plain files on your computer, and we keep no copy of your financial file. (The optional AI categorization feature below sends limited transaction details only when you switch it on.) This is the whole point of GlidePath Money.

We also don't collect:

  • Bank credentials (passwords, MFA secrets, security questions) — we never ask
  • Plaid, Yodlee, or any other aggregator-style integration data — we don't use those services
  • Browsing history, clipboard contents, screen recordings, or any telemetry from the installed app
  • Crash dumps with your data attached — the optional crash report excludes anything from your DataFolder
  • Financial app data in marketing analytics — website tags measure site visits and ad conversions only, not your desktop data file, transactions, balances, or imports

What we do collect

The minimum needed to operate the service:

  • Your email address — used as your license identifier
  • A license key we generate and email you — used to authenticate the installer
  • Device records for your license — at activation (and on the app’s weekly re-verify) we store a device identifier, the device’s name, and its operating system, so the per-license device cap works and the in-app /License page can show you each device and let you remove one
  • Payment information — processed by Stripe (stripe.com). Stripe handles your card details directly; we never see your card number. Sales tax + Canadian GST are calculated and filed automatically by Stripe Tax. QuickTech LLC (dba GlidePath Money) is the seller of record. From Stripe we receive only the minimum needed to deliver and support your license: your email, billing country, and order status.
  • Optional feedback you submit via the in-app Feedback button — content you choose to send us, and your email if you want a reply
  • Optional crash reports if you click "send report" on an error page — stack trace, app version, page URL. Excludes data folder contents.
  • IP address at legal acceptance — when you accept the legal documents on the in-app /Accept screen, we record the IP address you connected from alongside the timestamp. One row per (document, version) you accept. This is the audit trail that proves which version of each document was in effect when you agreed.

What gets emailed (and where it goes)

We use Resend (resend.com) as our outbound email provider for sending welcome notes, license keys, and operational replies. Resend sees the email body in transit but does not retain it. Our domain SPF/DKIM records are configured per Resend's standard setup.

Inbound mail to hi@glidepathmoney.com or privacy@glidepathmoney.com is delivered to our support mailbox, hosted by Zoho Mail (zoho.com/mail) on US-region servers. Those messages stay in the mailbox until we delete them; we use Zoho only as our email host for this correspondence, and Zoho handles it under its privacy policy. Zoho is listed on /subprocessors.

AI categorization (optional, opt-in)

The in-app Categorize with AI page can suggest categories for uncategorized transactions. When you click it — and only then — the app sends, for each transaction in the batch you chose: the payee text, the amount, the date, and a high-level account type (like “Liquid” or “Business” — never the account’s name, its balance, or whose it is), plus your category names so the suggestions speak your vocabulary. That goes through our Cloudflare Worker to Anthropic’s Claude API, which processes it under their commercial API privacy commitments — they do not train on this traffic.

We don’t store the transactions: the Worker forwards the batch, returns the suggestions, and keeps only a monthly usage count (so the included cap works). Every result comes back as a suggestion — nothing is written to your file until you confirm it in the app. The feature requires active maintenance. Don’t click it and nothing is sent.

Browser extension — help improve bank support (optional, opt-in)

The GlidePath browser extension captures your bank exports straight to your local app; it never sends your financial data to us. The one exception is fully optional and off by default: a setting called “Help improve bank support.” If you turn it on, then whenever the extension downloads a file it can’t automatically recognize, it sends us a small, redacted diagnostic so we can add support for that bank:

  • the column names from the file’s header row (e.g. “Trans. Date, Description, Amount, Category”) — never any data rows;
  • the download URL with every value stripped to <redacted>, so we see the endpoint shape, not your account number or tokens;
  • the file type, the outcome, and your extension version + browser.

It never sends your transactions, amounts, balances, account numbers, the filename, the page title, cookies, or anything identifying you — and our server re-strips the data a second time before storing it, as a backstop. Leave the setting off (the default) and the extension sends us nothing, ever. There’s also a “Copy diagnostic” button in the extension that shows you the exact redacted text so you can send it to us by hand instead.

Live market prices (optional)

If you track holdings and tap Refresh, the ticker symbols (e.g. AAPL, VTI) are sent through our Cloudflare Worker to a market-data provider (Yahoo Finance) to fetch current prices. Only the symbols leave your machine — never quantities, cost basis, or account info — we don’t log them, and results are cached about 15 minutes at the edge. Don’t tap Refresh and nothing is sent; you can also enter prices by hand. The provider is listed on /subprocessors.

Where things are stored

DataWhere it livesRetention
Your financial dataYour computer's data folderUntil you delete it
License key + emailCloudflare D1 (our database)For as long as your license exists — it’s perpetual, and the app’s weekly license check reads it. Deleted within 30 days of a refund or termination, or on request via privacy@ (note: the license check needs this record, so deleting it deactivates the app)
Payment recordsStripe (our payment processor)Per Stripe's retention policy + our 7-year US tax-records requirement
Feedback submissionsCloudflare D1Until you ask us to delete
Support email correspondence (hi@ / privacy@)Zoho Mail (US region)Kept in our support mailbox until we delete it
Crash reports (opt-in)Cloudflare D190 days then auto-deleted
AI-categorization batches (opt-in)Anthropic API via our WorkerNot stored by us — forwarded for suggestions and dropped; we keep only a monthly usage count
Device records (identifier, name, OS per activated device)Cloudflare D1Until you remove the device on /License, or with your customer record
Holdings ticker symbols (opt-in refresh)Market-data provider via our WorkerNot stored; cached ≈ 15 min at the edge, never logged
Legal-acceptance audit log (timestamp + IP per accepted doc version)Cloudflare D1Retained for the audit trail; you can request deletion via privacy@
Conversion events (buy-click / download / checkout-success)Cloudflare Analytics EngineAggregate, cookieless, no PII; per Cloudflare’s Analytics Engine retention
Ad conversion (installer download or completed purchase, if you arrived from a Google ad)Google Ads gtag (not loaded for EU/EEA/UK/CH visitors)Sets Google’s first-party cookies to attribute page-load, download, and completed-purchase events; no financial app data, license key, transactions, balances, or imported files. We also keep an internal record of the ad click ID + purchase amount (no cookie, nothing that identifies you)

One consequence worth stating plainly: the app’s weekly license check reads your customer record. If that record is deleted — after a refund or termination, or because you ask us to delete it — the check can no longer succeed, and the installed app will stop opening. Your data files on your disk stay exactly where they are either way.

Children’s privacy

GlidePath Money is intended for adults 18 years or older. We do not knowingly collect personal information from individuals under 18. If we discover we have inadvertently collected such information, we will delete it. If you believe a minor has provided us information, please contact privacy@glidepathmoney.com and we will remove it promptly.

Automated decision-making and Glide AI

We do not make automated decisions about you that produce legal or similarly significant effects. We do not profile you. The optional Glide AI helper (powered by Claude Haiku via Anthropic) generates conversational responses to conceptual questions you ask — for example, “what is a Roth conversion?” or “why is this Monte Carlo range so wide?”. It does not make decisions about your account, your license, or your access to the service. It never sees your transactions, balances, or holdings. You can disable Glide AI at any time in app settings. See the subprocessors page and security page for the technical details.

Your rights

Regardless of where you live, you have the rights below. Where applicable state, provincial, or federal law gives you additional rights, those are listed in the region-specific sections that follow.

  • Request deletion. Email privacy@glidepathmoney.com. We delete your customer record + Cloudflare resources typically within 7 days, and no later than 30 days from a verified request. Payment records that we’re legally required to retain for tax purposes (7 years under US tax law) are held by Stripe as our payment processor — see Stripe’s privacy policy for their retention and deletion process.
  • Request a data export. Same email. We send back the exact contents of your customer row + any feedback you submitted. (Your financial data is on your computer; we have nothing to export.)
  • Disable optional collection. The in-app Feedback button and crash-reporter are off unless you click them. You can use the entire product without ever sending us a single byte beyond the license check.
  • Correct inaccurate information. If your email or other record data is wrong, email us and we’ll fix it.
  • Withdraw consent for any optional collection (feedback, crash reports) at any time, with no effect on your license.

Where we offer GlidePath Money

At this time, GlidePath Money is offered to customers with a billing address in the United States or Canada. Stripe Tax gates checkout to jurisdictions where we hold tax registration; non-US/non-Canadian billing addresses can’t complete a purchase. We do not currently serve customers in the European Union, United Kingdom, or other regions because the app’s tax-modeling and retirement-planning features assume U.S. tax rules; we’d rather not sell you a tool whose core calculations don’t fit your situation. Canadian users: please see the “For Canadian customers” note at the bottom of the tax disclaimer.

Your privacy rights — U.S.

If your U.S. state privacy law gives you rights to access, correct, delete, export, appeal, or opt out of certain processing, we honor those rights where they apply to us. State privacy laws are expanding quickly, so we apply the same practical request process below instead of making you wait for a formal policy update.

What those rights mean, in plain English:

  • Ask what we have. “What personal info do you hold about me?” Email us; we’ll tell you. (Formally: right to know / access.)
  • Ask us to delete it. “Get rid of my customer record.” We do, within 30 days. Some payment records we’re legally required to keep for tax purposes (7 years under US tax law); those stay with Stripe only as long as the law requires. (Right to delete.)
  • Ask us to fix something. “My email is wrong.” We fix it. (Right to correct.)
  • Ask for a copy in a portable format. We send it. (Right to data portability.)
  • No discrimination. Asking us to do any of the above doesn’t affect your license, your price, or anything else. (Right to non-discrimination.)
  • Opt out of selling, sharing, targeted advertising, profiling. We don’t do these — see the section below — but the right exists in case anything ever changes.

Do Not Sell or Share My Personal Information

We don’t sell your personal information for money. We also don’t use your financial app data for ad targeting. The marketing site can load a Google Ads conversion tag for non-EU visitors, solely to measure ad-referred purchases as described in Cookies + analytics below. That tag is separate from the installed app and does not receive your financial file, transactions, balances, imported files, license key, or anything from your DataFolder. The customer record we do hold is used to operate, bill, secure, and support the service. If an applicable privacy law treats our marketing-site conversion tag as sale, sharing, targeted advertising, or profiling, we will honor the opt-out rights and browser signals required by that law.

How to actually exercise your rights

Email privacy@glidepathmoney.com and tell us what you want. We respond within 30 days. If we need more time (the law lets us extend by 30 more for genuinely complex cases), we’ll tell you in advance, not after. We verify your identity by matching the email against your license; if we can’t verify, we’ll ask for what we need — we won’t quietly deny.

If you think we mishandled a request, you can complain to your state’s attorney general or to the Federal Trade Commission. We’d rather you tell us first so we can fix it.

Your privacy rights — Canada

If you’re a Canadian customer, you have rights under PIPEDA (the federal privacy law) and, if you live in Quebec, the stronger Law 25 (think GDPR-ish). British Columbia, Alberta, and other provinces have their own laws that apply where relevant.

What those rights mean, in plain English:

  • Ask what we have. Email us; we’ll tell you.
  • Ask us to fix it. We fix wrong information.
  • Withdraw your consent for anything optional (feedback, crash reports) at any time. Doesn’t affect your license.
  • Quebec residents under Law 25 also have the right to receive your data in a normal portable format, and the right to know if we make automated decisions about you. We don’t make those; if that ever changes, we’ll tell you.
  • Complain to the Office of the Privacy Commissioner of Canada (priv.gc.ca) or your provincial commissioner. We’d rather you tell us first.

Email privacy@glidepathmoney.com. We respond within 30 days, as PIPEDA requires. Requests in French are welcome from Quebec residents.

Where your data physically lives

Practical reality: our infrastructure runs on Cloudflare’s global edge network, and Anthropic (for the Glide AI helper) and Resend (for outbound email) are based in the United States; our support mailboxes are hosted on Zoho Mail’s US-region servers. If you’re a Canadian customer, your customer record + any feedback or crash report you submit will be processed on servers that may sit in the U.S. By using the service you’re consenting to that. We rely on the standard vendor safeguards for the transfer. The full vendor map is at /subprocessors.

Cookies + analytics

The marketing site (glidepathmoney.com) uses Cloudflare Web Analytics — a privacy-first, cookieless measurement tool that counts page views and referrers without cookies, fingerprinting, cross-site tracking, or any personally identifying data (visitors in the EU are excluded entirely). For non-EU visitors, the marketing site also loads a third-party ad-conversion tag — Google Ads — solely to measure ad-driven purchases; it’s described below. This website tag is not part of the installed desktop app, and it does not receive your financial file, transactions, balances, account history, license key, imported files, or anything from your app data folder.

We also count a few high-intent actions on the marketing site — clicking a buy button, starting a download, or reaching the post-checkout thank-you page — by sending a small cookieless event to our own server (not a third-party). Each event records only the action, the page path, a coarse label (which plan, or a purchase vs. an upgrade), the referring site’s domain, campaign tags from the link you followed, and a country code. To keep those campaign tags attached when you move from a landing page to Download or Pricing, the site may keep the campaign labels in this browser tab’s temporary session storage; it is not a visitor ID and it clears when the tab session ends. No cookies, no device or visitor ID, no IP stored, nothing that identifies you — just aggregate counts so we can see how many people who look end up buying. It runs on our own infrastructure (Cloudflare Analytics Engine), not a marketing vendor.

If you reach the site from a Google ad, we use Google Ads’ gtag on the marketing site so Google can attribute page-load, download, and completed-purchase conversion events. When you start an installer download, and again on the post-checkout thank-you page for a normal license purchase, the site sends Google a conversion event (the download or the license purchase). It does not send your financial file, transactions, balances, account history, imported files, license key, or anything from the desktop app. Unlike the rest of the site, it sets first-party cookies in your browser to connect an ad-referred visit to a later purchase — so we don’t load it at all for visitors in the EU, EEA, UK, or Switzerland, the same line we hold by excluding the EU from our cookieless analytics. We also keep an internal record in our own database of which purchases came from an ad click (the click identifier and purchase amount only, no cookie and nothing that identifies you).

Changes to this policy

If we change anything material, we'll email everyone with an active license at least 30 days before the change. The current version is dated at the top.

Contact

Privacy or data requests (deletion, export, questions about this policy): privacy@glidepathmoney.com. General product questions: hi@glidepathmoney.com.