Privacy Policy
Last updated: March 2026
1. Introduction
RinggitWise ("we", "our", "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use the RinggitWise mobile application.
We comply with the Malaysian Personal Data Protection Act (PDPA) 2010 and related regulations.
2. Data We Collect
We collect the following categories of data:
- Account data: Email address and authentication credentials
- Financial data: Transactions, budgets, savings goals, and debt records you enter
- Usage data: App interactions, feature usage patterns, and crash reports
- AI conversation data: Questions you ask the AI Financial Coach
- Device data: Device type, operating system version, and app version
3. How We Use Your Data
- Provide and maintain the RinggitWise service
- Generate financial summaries, reports, and tax documents
- Power AI Financial Coach responses
- Send budget alerts and scheduled notifications
- Improve the app through anonymised analytics
4. Data Storage & Security
Your data is stored on Supabase (built on PostgreSQL) with row-level security policies. All data is encrypted at rest and in transit using TLS 1.3. Authentication tokens are stored securely using device keychain (iOS) or encrypted storage (Android).
5. Third-Party Services
We use the following third-party services:
- Supabase: Database, authentication, and file storage
- Anthropic (Claude AI): AI Financial Coach — your questions are sent to Anthropic's API for processing. Anthropic does not use customer data to train models.
- PostHog: Privacy-focused product analytics
6. Your Rights Under PDPA 2010
You have the right to:
- Access your personal data
- Correct inaccurate personal data
- Request deletion of your personal data
- Withdraw consent for data processing
- Request a copy of your data (data portability)
We process all data requests within 21 days as required by PDPA.
7. Data Retention
We retain your data for as long as your account is active. If you delete your account, all personal data is permanently removed within 21 days. Anonymised, aggregated data may be retained for service improvement.
8. Children's Privacy
RinggitWise is not intended for children under 18. We do not knowingly collect personal data from children.
9. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of any material changes through the app or via email.
10. Contact Us
If you have questions about this privacy policy or wish to exercise your data rights, please contact us at cloudsourcing2026@gmail.com.