Legal

Privacy Policy

Effective date: 7 June 2026

Operated by: Fast Wireframe LLC ("we", "us", "our")
Contact: privacy@themino.app

Mino is a personal finance tracker for Bangladesh. We designed Mino to be local-first: your expense data lives on your device first, and is only sent to our servers if you sign in to enable cross-device sync. This policy explains exactly what data we collect, why, where it goes, and what choices you have.

1. What Mino is

Mino lets you log income and expenses, organise them into categories, set monthly limits, and earn loyalty points called "Mino Points." Mino is free and contains no third-party advertising and no third-party analytics SDKs at the time of this policy's effective date.

2. Data Mino stores on your device

When you use Mino, the following is stored only on your device inside a local SQLite database (Drift):

  • Transactions you log (amount in BDT, category, payment method, note, date)
  • Categories, pillars, payment methods, monthly limits you create
  • Your profile fields you choose to enter: display name, date of birth, profession, monthly income
  • Mino Points balance and point-earning event log
  • App preferences (language, theme, onboarding state)

This data stays on your device until you uninstall Mino. If you do not sign in, none of it ever leaves your device.

3. Data Mino sends to our servers (only if you sign in)

If you choose to create an account, Mino syncs the data above to our backend (Supabase, hosted in the United States) so the same data appears on your other devices. Specifically, signing in lets us collect:

  • Account identifier: the email address you use to sign in, authenticated by Supabase Auth. We never see your password — it is hashed and stored by Supabase.
  • Synced records: a copy of the transactions, categories, payment methods, limits, profile fields, points balance, and points event log described in section 2.
  • Sync metadata: timestamps and unique IDs needed to reconcile changes across devices (last-write-wins).

We do not collect device identifiers, IP-based location, contact lists, SMS, call logs, photos, or any data outside the app.

4. Why we collect each item

DataPurposeLegal basis
EmailAuthenticate sign-in, recover accountContract (you opted to sign in)
Transactions, categories, limits, profileCross-device sync of your own recordsContract
Mino Points balance and event logAnti-fraud (prevent double-awards across devices)Contract
Tip interaction state (bookmarks, likes)Sync your bookmarks across devicesContract

5. Third parties we use

  • Supabase (Supabase Inc., USA) — hosts our authentication service and database. Bound by Supabase's privacy terms: supabase.com/privacy
  • Google Play Services — required to install the app from the Google Play Store. Subject to Google's privacy policy.

We do not use Firebase Analytics, Google Analytics, Meta Pixel, Mixpanel, Amplitude, or any other tracking SDK at the time of this policy. If we add one in the future, we will update this policy and notify users before enabling it.

6. Data retention

  • Local data: kept on your device until you uninstall the app or clear app storage.
  • Server data: kept for as long as your account exists. You can ask us to delete it (section 8) and we will erase it within 30 days.

7. Sharing

We do not sell, rent, or trade your data. We do not share data with advertisers, marketers, or data brokers. We will share data only:

  • When you explicitly export it yourself (e.g. via the share button in the Tips screen, which only shares the tip content)
  • If required by valid legal process under Bangladeshi or US law

8. Your rights

You can, at any time:

  • Access your data — visible in the app
  • Export your data — contact privacy@themino.app
  • Correct your data — edit transactions, profile, etc. in the app
  • Delete your account — email privacy@themino.app from your account's email address; we will erase server-side data within 30 days. You can also delete local data by uninstalling the app.
  • Withdraw consent to sync — sign out in the app. Future changes will stay on your device only.

9. Children

Mino is not directed at children under 13. We do not knowingly collect data from children under 13. If you believe a child has signed in, contact privacy@themino.app and we will delete the account.

10. Security

  • Communication between Mino and our servers uses HTTPS/TLS.
  • Server-side data is protected by Supabase Row-Level Security: each user can only read or write their own rows.
  • Passwords are hashed by Supabase Auth; we never store plaintext passwords.
  • No security system is perfect; if you discover a vulnerability, please email security@themino.app.

11. Changes to this policy

If we materially change this policy we will update the "Effective date" above and, for signed-in users, surface a notice inside the app before changes take effect.

12. Contact

Fast Wireframe LLC
Email: privacy@themino.app
Website: https://themino.app