Who we are
RingBinder is a personal finance organiser for UK users. We are the data controller for information collected through this service.
What data we collect
- —Account data: your name, email address, and hashed password.
- —Financial data: transactions, budgets, savings goals, and net worth snapshots that you enter manually.
- —Documents: files you upload (payslips, contracts, etc.), stored securely via Uploadthing.
- —Billing data: your subscription status, managed by Stripe. We do not store your card details.
How we use your data
- —To provide the RingBinder service and personalise your experience.
- —To send transactional emails (budget alerts, monthly digest) if you have an active account.
- —To process subscription payments via Stripe.
- —We do not sell your data to third parties. We do not use it for advertising.
Lawful basis for processing
- —Contract performance: processing your account, financial data, and documents to provide the RingBinder service you signed up for.
- —Legitimate interests: sending transactional emails (budget alerts, password resets) and maintaining service security.
- —Consent: monthly spending digest emails, which you can withdraw at any time from Settings → Notifications.
Your rights under UK GDPR
- —Access: export all your data at any time from Settings → Data & privacy.
- —Deletion: delete your account and all associated data from Settings → Danger zone.
- —Portability: your data export is in standard JSON format, covering all financial data, documents, and account preferences.
- —Rectification: update your name and email from Settings → Profile, or contact us to correct other inaccurate data.
- —Objection / restriction: contact us at privacy@ringbinder.co.uk to object to or restrict processing.
- —Complain to the ICO: you have the right to lodge a complaint with the UK Information Commissioner's Office at ico.org.uk if you believe your data has been handled unlawfully.
Data retention
We retain your data for as long as your account is active. When you delete your account, all data is permanently removed within 24 hours, including uploaded files.
Third-party services
- —Neon (database): your data is stored in a PostgreSQL database hosted by Neon in the EU.
- —Stripe: payment processing. Subject to Stripe's privacy policy.
- —Uploadthing: file storage for documents you upload. Files may be stored on AWS infrastructure outside the EU. Uploadthing are a data processor acting on our instructions.
- —Resend: transactional email delivery.
- —Anthropic Claude: AI assistant responses (Pro). Queries are not stored beyond the session.
Cookies
We use a single session cookie to keep you logged in. We do not use tracking cookies or third-party analytics.
Contact
For any privacy-related questions or requests, email us at privacy@ringbinder.co.uk.