Privacy Policy
Effective date: June 5, 2026
Last updated: June 7, 2026
This Privacy Policy explains how Payoff Money, Inc. ("Payoff Money," "we," "us," or "our") collects, uses, and shares information when you use the Payoff Money website, applications, and related services (the "Service"). By using the Service, you agree to the practices described here. If you do not agree, do not use the Service.
1. Information we collect
Information you provide when you create an account. Depending on how you sign up, this includes your email address or mobile phone number, a password (stored only as a salted hash by our authentication provider), your name, and an optional profile photo.
Financial information you enter. Payoff Money is a budgeting tool, so you enter financial information yourself. This may include the names and balances of your accounts, bills, income sources, transactions, loans, categories, and related notes. We do not connect to your bank and we do not import transactions from financial institutions; this information is only what you choose to type into the Service.
Text-messaging consent records. If you sign up by phone or otherwise opt in to text messages, we record your phone number, the exact consent disclosure shown to you, the version of that disclosure, your browser's user-agent string, and the date and time, so we can demonstrate your consent as required by law.
Usage, device, and log data. When you use the Service, we and our providers automatically collect technical information such as your IP address, browser and device type, pages or screens viewed, actions taken, timestamps, and diagnostic and error data used to keep the Service secure and reliable.
Cookies and local storage. We use cookies and similar browser storage to keep you signed in and to remember preferences (for example, your active view, period, and display settings). We do not use third-party advertising cookies.
2. How we use information
We use the information we collect to:
- Provide, operate, and maintain the Service and your account;
- Authenticate you and send one-time verification codes;
- Calculate and display your budgets, balances, and projections;
- Respond to your requests and provide support;
- Monitor, debug, secure, and improve the Service, including diagnosing errors;
- Send service and account messages, and, where you have opted in, text-message alerts;
- Comply with legal obligations and enforce our Terms; and
- Detect, prevent, and address fraud, abuse, and security incidents.
3. How we share information
We do not sell your personal information, and we do not share it for cross-context behavioral advertising. We share information only as described below.
Service providers (sub-processors). We share information with vendors who process it on our behalf, under contracts that limit their use to providing services to us:
- Supabase — database, authentication, and file storage;
- Vercel — application hosting and content delivery;
- Sentry — error monitoring and diagnostics; and
- Our SMS provider — delivery of text messages and verification codes.
Legal and safety. We may disclose information if required by law, subpoena, or legal process, or if we believe in good faith that disclosure is necessary to protect our rights, your safety or the safety of others, or to investigate fraud or abuse.
Business transfers. If we are involved in a merger, acquisition, financing, or sale of assets, information may be transferred as part of that transaction, subject to this Policy.
With your consent. We may share information for other purposes with your consent.
4. How long we keep information
We keep your information for as long as your account is active and as needed to provide the Service. When you delete your account, we delete or de-identify your personal information within a reasonable period, except where we must retain it to comply with legal obligations (for example, text-messaging consent records and tax or accounting records), resolve disputes, or enforce our agreements. Residual copies may persist in routine backups for a limited time before being overwritten.
5. How we protect information
We use technical and organizational measures designed to protect your information, including encryption in transit, row-level access controls that scope each user's data to their own account, hashed passwords, and optional multi-factor authentication. No method of transmission or storage is completely secure, however, and we cannot guarantee absolute security.
6. Your choices and rights
Regardless of where you live, you can:
- Access and update your account and financial information directly in the Service;
- Delete your account, which removes your personal information as described in Section 4;
- Opt out of texts by replying STOP to any message; and
- Contact us at the address below to make a privacy request.
7. Your California privacy rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act, as amended, gives you the rights described in this section.
Categories of personal information we collect. In the past 12 months we have collected: identifiers (such as name, email address, phone number, and IP address); account login credentials; commercial/financial information you enter (such as account balances, bills, income, and transactions); and internet or other electronic network activity (such as usage and device data). We do not knowingly create inferences or profiles about you from this data. Some of this information — financial account details — may be considered sensitive personal information. We use sensitive personal information only to provide the Service you request and for purposes permitted by law, and not to infer characteristics about you.
Sources. We collect this information directly from you and automatically from your use of the Service and our service providers.
Purposes. We use it for the business purposes described in Section 2.
Disclosures. In the past 12 months we have disclosed the categories above to our service providers (Section 3) for business purposes. We have not sold or shared personal information as those terms are defined under California law, including no sale or sharing of the personal information of minors under 16.
Your rights. Subject to verification and legal limits, you have the right to:
- Know the categories and specific pieces of personal information we have collected about you;
- Delete personal information we have collected from you;
- Correct inaccurate personal information;
- Limit the use and disclosure of sensitive personal information; and
- Not be discriminated against for exercising your rights.
How to exercise your rights. Submit a request using the contact details in Section 13. We will verify your request using information associated with your account. You may use an authorized agent to submit a request on your behalf, subject to proof of authorization.
8. Children's privacy
The Service is intended for users 18 and older. We do not knowingly collect personal information from anyone under 18, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us and we will delete it.
9. Third-party links
The Service may link to third-party websites or services that we do not control. This Policy does not apply to those sites, and we encourage you to review their privacy policies.
10. Where your information is processed
Payoff Money is based in the United States and processes information in the United States. If you access the Service from outside the United States, you understand that your information will be processed in the United States, where data-protection laws may differ from those in your country.
11. Changes to this Policy
We may update this Policy from time to time. If we make material changes, we will provide notice by posting the updated Policy with a new effective date or by notifying you in the Service. Your continued use of the Service after the changes take effect constitutes acceptance of the revised Policy.
12. Text-messaging (SMS) program
This section describes the Payoff Money text-messaging program and the disclosures required for it.
What the messages are. If you provide your mobile phone number, we send account and verification text messages — for example, the one-time passcodes used to sign in or verify your phone. These are transactional, account-related messages. We do not send marketing or promotional text messages.
How you opt in. You opt in by entering your mobile phone number and checking the consent box on our sign-up screen before we send any message. The exact disclosure you agree to reads:
"I agree to the Terms and Privacy Policy and consent to receive account & verification texts from Payoff Money. Msg frequency varies, msg & data rates may apply, reply STOP to opt out."
We record the phone number, the exact disclosure text and its version, your browser's user-agent, and the date and time of your consent (see Section 1).
Message frequency. Message frequency varies and depends on your activity, such as how often you sign in or request a verification code.
Cost. Message and data rates may apply, according to the plan you have with your wireless carrier. Payoff Money does not charge for these messages.
Help and opt-out. Reply HELP for help or email support@payoffmoney.com. Reply STOP at any time to opt out, after which we will stop sending text messages to that number. Opting out of texts may prevent you from using phone-based sign-in or verification.
Carrier disclaimer. Carriers are not liable for delayed or undelivered messages.
No sharing for third-party marketing. We do not sell or share your mobile phone number or your text-messaging consent with third parties for their own marketing. We share your number only with our SMS provider for the sole purpose of delivering these messages to you (see Section 3).
13. Contact us
If you have questions about this Policy or want to exercise your privacy rights, contact us:
Payoff Money, Inc.
Email: support@payoffmoney.com
Toll-free: (844) 524-7628