legal

Privacy Policy

Last updated: June 2026

The short version

Tauko does not collect, store, or transmit your personal financial data. Everything you capture — your justifications, your photos, your goals, your decisions — lives entirely on your device. We never see it. The only personal data we hold is your email address if you joined the waitlist, and we use it for one purpose only: to notify you when Tauko launches.

What we collect

We collect the minimum necessary to operate and improve the product:

  • Email address — if you join the waitlist. Used only to notify you at launch. Our lawful basis for processing this under GDPR is legitimate interests: you asked to be contacted when we launch, and we have a legitimate interest in fulfilling that request.
  • IP address — recorded transiently when you submit the waitlist form, solely to prevent automated abuse. It is stored in memory for one hour and then automatically deleted. It is never linked to your email or retained beyond that window.
  • Anonymous usage analytics — page views and interactions, via Vercel Analytics. No personally identifiable information is attached.

What we do not collect

  • Your bank account or financial information
  • Your photos, screenshots, or links captured in-app
  • Your justification logs, goal details, or in-app decisions
  • Your name, location, or device identifiers

All in-app data is stored exclusively in your browser's local storage. It never leaves your device.

Your waitlist email

If you provide your email to join the waitlist, we store it securely and use it for one purpose: to contact you when Tauko launches. We will not send you marketing emails, sell your address, or share it with third parties.

Retention:We will delete your email within 90 days of Tauko's public launch, or immediately upon your request — whichever comes first.

Cookies and tracking

We use Vercel Analytics, which does not use cookies and does not fingerprint users. It counts page visits in aggregate. We do not use advertising trackers, retargeting pixels, or third-party analytics beyond this.

Third-party processors

We share data only with processors who help us operate the service. Each receives only the data they need:

  • Supabase — stores your waitlist email. Hosted on AWS infrastructure. Privacy policy at supabase.com/privacy.
  • Upstash — stores your IP address transiently for rate limiting (one hour, then deleted). Privacy policy at upstash.com/trust/privacy.
  • Vercel — hosts the application and provides aggregate analytics. Privacy policy at vercel.com/legal/privacy-policy.

All three processors are US-based companies. If you are located in the EU or UK, your data may be transferred to and processed in the United States. Each processor maintains appropriate safeguards for international transfers, including Standard Contractual Clauses where applicable.

Your rights

Depending on where you live, you may have the following rights regarding your personal data. To exercise any of them, contact us at taukosupport@gmail.com. We will respond within 30 days.

  • Access — request a copy of the personal data we hold about you.
  • Deletion — request that we delete your data. We will action this immediately for waitlist emails.
  • Rectification — request that we correct inaccurate data.
  • Portability — request your data in a machine-readable format.
  • Restriction — request that we limit how we use your data while a dispute is resolved.
  • Objection — object to processing based on legitimate interests. We will stop unless we have compelling grounds.

Because all in-app data lives exclusively on your device, only your waitlist email (if provided) is subject to these requests. You can clear your in-app data at any time directly from within the app.

California residents

Under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), California residents have additional rights:

  • The right to know what personal information we collect, use, and disclose.
  • The right to delete personal information we hold about you.
  • The right to correct inaccurate personal information.
  • The right to opt out of the sale or sharing of personal information.
  • The right not to be discriminated against for exercising any of these rights.

We do not sell or share your personal information with third parties for advertising or any commercial purpose. The only data we collect is your email address (if you joined the waitlist) and transient IP addresses for abuse prevention. To exercise your California rights, contact us at taukosupport@gmail.com. We will respond within 45 days.

Contact

Questions about this policy, or want to exercise your rights? Write to us at taukosupport@gmail.com. We will respond within 30 days.