Skip to main content

Privacy Policy

Last updated: July 31, 2026

Our Promise

KineXi keeps the financial records you enter in the app on your iPhone. We do not operate an account system or a server-side copy of your transactions, accounts, budgets, bills, notes, investments, or goals.

The website, TestFlight signup, optional analytics, App Store purchases, and feedback portal involve limited non-financial data. Those categories are described separately below.

What Stays on Your Device

All of your financial data is stored locally on your iPhone using Apple's Core Data framework. This includes:

  • Transactions — amounts, dates, categories, and notes
  • Accounts — names, balances, and types
  • Budgets — limits, spending progress, and rollover amounts
  • Bills & Subscriptions — due dates, amounts, and reminders
  • Notes & Journal Entries — your personal reflections
  • Investments — portfolio holdings and alternative investments
  • Categories — your custom categories and organization
  • Recurring Rules & Transfers — scheduled transaction patterns

None of this data is transmitted to us or any third party. It lives on your device, protected by your device's security (passcode, Face ID, or Touch ID).

What the App Does Not Collect

We want to be explicit. KineXi does not collect:

  • Bank credentials or account numbers
  • Transaction details or spending patterns
  • Device identifiers or advertising IDs
  • Location data
  • Contacts, calendar, or health information
  • Browsing history
  • App usage analytics sent to external servers

The app does not require a KineXi account. Your website beta signup is separate from your on-device financial records.

Website and TestFlight Beta Signup

When you join the beta at kinexi.app, we collect the email address you submit, the signup time, and the version of this Privacy Policy that applied. We use that information only to deliver TestFlight access and essential beta-access messages.

  • Amazon Web Services stores the waitlist record in DynamoDB.
  • Resend processes your email address to deliver the transactional TestFlight invitation.
  • The waitlist record expires no later than 365 days after your most recent signup.
  • You may request earlier deletion by emailing support@kinexi.app from the address you submitted.

If you accept analytics in the website consent banner, Plausible processes aggregate page-visit information. Plausible is not loaded when you decline or have not made a choice.

On-Device AI

KineXi includes supported AI-powered features — smart categorization, spending insights, voice input, mood analysis, and more. All of these run entirely on your device using Apple's Foundation Models and Natural Language frameworks.

  • No data is sent to OpenAI, Google, or any cloud AI service
  • AI processing works without an internet connection
  • Your financial data never leaves your device for AI analysis

We also take extra precautions with AI inputs. Before any text is processed by the on-device AI, our privacy guard automatically strips sensitive patterns like credit card numbers, government IDs, and email addresses — even though the data never leaves your device.

Device Permissions

KineXi requests certain device permissions to enable specific features. Each permission is optional and only activated when you use the related feature:

PermissionWhy We Need It
CameraTo scan and capture receipts or bills. Images are processed locally and never uploaded.
MicrophoneTo enable voice transaction entry. Audio is processed on-device and never stored or transmitted.
Photo LibraryTo import receipt images from your photos. Processing is 100% local.
Speech RecognitionTo convert your voice into text for hands-free entry. Recognition happens on-device.
Face ID / Touch IDTo protect the app with biometric authentication. Authentication is handled entirely by Apple's Secure Enclave on your device.
NotificationsTo send you bill reminders and budget alerts. Notifications are scheduled locally on your device.

We do not request access to your location, contacts, calendar, or health data.

Anonymous Feedback Identifier

When you use the Share Feedback feature inside the app, we generate a random anonymous identifier (a UUID) and store it on your device. This identifier is sent along with your feedback submission so that:

  • You can vote on feature requests without duplicate votes
  • Your feedback threads can be tracked across sessions

This identifier:

  • Is randomly generated — it is not derived from your device, Apple ID, or any personal information
  • Is not linked to your financial data or any other information in the app
  • Is only transmitted when you actively open the feedback page
  • Can be reset by reinstalling the app

Widgets

KineXi offers home screen widgets that display summaries like budget progress, net worth, and upcoming bills. Widget data is shared between the main app and the widgets using Apple's App Groups — a secure, on-device storage mechanism.

  • Widget data never leaves your device
  • It is encrypted when your device is locked
  • Only KineXi and its widgets can access this data

Backups

KineXi allows you to create local backups of your data. These backups are:

  • Encrypted using AES-GCM-256 encryption
  • Stored locally on your device or in your personal iCloud Drive if you explicitly export a backup there; this is not database synchronization
  • Never accessible to us — we cannot read, access, or recover your backups

You are in full control of creating, restoring, and deleting backups.

Data Security

We take security seriously at every level:

  • File Protection: Your data files use Apple's "Complete" protection class, meaning they are encrypted and inaccessible when your device is locked.
  • Secure Logging: In production builds, all error logs are redacted. No financial data, transaction IDs, amounts, or personal information is ever written to logs.
  • Input Sanitization: User inputs are sanitized before database queries to prevent injection attacks. AI prompts are sanitized to prevent prompt injection.
  • No Third-Party SDKs: We don't include any third-party analytics, advertising, or tracking SDKs. No Firebase. No Amplitude. No Mixpanel. Nothing.

App Store Purchases

Apple processes App Store purchases and subscription billing. KineXi reads verified StoreKit entitlement status on your device to unlock purchased features. We do not receive or store your payment-card details.

Third-Party Services

KineXi uses limited third-party services for specific, non-financial purposes:

  • Apple App Store and StoreKit — for distribution, purchases, and verified entitlements
  • Amazon Web Services — for the website waitlist and feedback portal
  • Resend — for the transactional TestFlight invitation
  • Plausible — only after website analytics consent

None of these paths transmits app financial records.

Children's Privacy

KineXi is not directed at children under the age of 13, and we do not knowingly collect personal information from children. The app keeps financial records on-device; a website beta-signup email address is separate from app financial records. If we learn that a child has submitted a beta-signup email address, we will delete that waitlist record.

Changes to This Policy

If we make changes to this privacy policy, we will update the "Last updated" date at the top of this page. For material changes affecting TestFlight beta access, we may use the email address submitted for the beta waitlist to communicate the update. We encourage all users to review this page periodically.

Our core commitment will not change: your data stays on your device.

Contact Us

If you have any questions about this privacy policy or KineXi's privacy practices, you can reach us at:

Email: support@kinexi.app

KineXi is designed and developed with privacy as a fundamental principle, not an afterthought. We believe financial tools should empower you — not exploit your data.