Numari — Privacy Policy

Last updated: 2026-09-06

Numari is a personal finance tracker built to be private by design. This policy explains exactly what the app does and does not do with your information.

The short version

  • Numari has no account system or Numari backend. Your ledger and import contents are stored locally on your device and are not uploaded to Numari.
  • Numari’s product features make no remote requests by default. The optional “Live exchange rates” feature is off by default and sends limited request metadata described below.
  • There are no ads, no analytics SDKs and no third-party trackers.
  • Receipt scanning (OCR), PDF statement reading and text parsing all run on your device. Images, files and pasted text are not uploaded.

Optional: Live exchange rates

If — and only if — you turn on Settings → Live exchange rates, the app fetches public exchange-rate data so amounts in other currencies can be converted automatically:

  • Current fiat rates come from open.er-api.com, historical UAH rates from bank.gov.ua, other historical fiat rates from api.frankfurter.dev, and crypto prices from api.coingecko.com.
  • Requests contain currency codes (for example, “USD”, “EUR” or “BTC”) and, for a historical conversion, the calendar date being priced. They do not include amounts, merchants, notes, balances, files, images or pasted text.
  • A calendar date is sent only for historical conversions and only while this feature is on. If you prefer that not even dates leave the device, keep Live exchange rates off; a foreign-currency import then asks you to confirm its amount in your base currency before saving.
  • Like any web request, the rate provider can see your device’s IP address. That is inherent to making the request and is handled under the provider’s own policy.
  • Rates are cached locally to minimise requests. Turning the feature off stops further rate requests.

What data the app stores on your device

Numari stores the following locally so the app can work:

  • Transactions you add or import, including amount, merchant, date, category and notes.
  • Categories, budgets and merchant rules you create.
  • App settings such as base currency, language and app-lock preference.
  • CSV/PDF files and images you explicitly choose are read on-device. Numari does not retain the original file or image after parsing.
  • The review queue stores parsed fields and the relevant source row or text snippet locally. This evidence supports review and duplicate detection and can remain in local import history after a row is accepted or rejected. It is removed by Settings → Delete all data or by uninstalling Numari.

This data is kept in a local SQLite database inside the app’s private storage. It is not uploaded. If Live exchange rates are enabled, only the limited request metadata described above is sent to the named providers.

Data you explicitly export

The app creates a JSON backup or transaction CSV only when you choose that action. Your device’s standard share sheet then lets you select the destination. Numari does not send the file anywhere on its own. A file is governed by the destination you choose after sharing it.

Device permissions

  • Notifications (optional): used for reminders you enable. Reminders are scheduled locally on your device; Numari does not use a remote push-notification service. This does not give the app access to other apps’ notifications.

  • Face ID / biometrics (optional): used only to unlock the app when App Lock is enabled. The operating system performs the check; Numari never sees your biometric data.

  • Files / documents (only when importing): used to read a CSV or PDF you select. Numari cannot browse your files on its own.

  • Photos (only when importing an image): used to read the image you select. Text recognition runs on-device through Apple Vision on iOS or Google ML Kit on Android. The image is not uploaded, and Numari cannot browse your photo library on its own.

Data retention and deletion

Because the ledger and import history live on your device, you control them:

  • Delete individual transactions, categories, budgets or rules at any time.
  • Settings → Delete all data removes transactions, budgets, custom categories, merchant rules, import batches and review evidence, CSV presets, audit history and cached exchange rates. Numari recreates empty default categories so the app remains usable. Non-financial preferences such as language, app-lock choice, onboarding state and live-rate opt-in are retained.
  • Uninstalling Numari removes its local database.

There is no account to delete because Numari has no account system or remote ledger.

Children

Numari is not directed to children. It has no account profile and does not ask for age or other identity information. Optional rate providers receive only the request metadata described above.

Future optional cloud features

If a future version adds an optional cloud feature such as encrypted backup or sync, it will be strictly opt-in, will explain what leaves the device before it is enabled, and this policy will be updated first. Such a feature will never be enabled silently.

Changes to this policy

If this policy changes, the “Last updated” date above will change and the new version will ship with the app.

Contact

Questions about this policy: support@numari.app

This website and support

This website does not set cookies or include analytics, tracking pixels, external fonts or other third-party resources. The hosting server receives the IP address and ordinary request metadata needed to deliver a page. This is separate from the app’s local ledger.

When you email support, your email provider and the support mailbox process the address, message and attachments you choose to send. Please remove financial records, account numbers and other personal information before sending a screenshot or sample. The app does not automatically attach your database or import history. For a question about a support message, including a deletion request, email support@numari.app.