What we hold, and how you delete it.
Last updated: 9 October 2026
Consolify is an iPhone app that shows your credit cards in one place and tells you which card to pay, how much, and by when. This page says what we collect, why, who else handles it, and how you remove it.
The short version
- We do not sell your data. We do not show ads. We do not use your data to decide credit.
- We can read your card data. We can never move your money.
- We never see your bank password.
- You can delete your account, and what we hold with it, inside the app.
What we collect
When you sign in. The identity you sign in with (Google or Apple) and the email address that comes with it, if one is shared. A name you choose to be called and, if you answer, how you heard about us and what you want from the app. Your time zone.
Your cards and accounts. Card and account names, the last digits of the account number, balances, credit limits, interest rates, minimum payments, statement and due dates, and what each statement closed at. Transactions: amount, date, merchant name and category. Payments you tell us you made, and plans or budgets you set up in the app.
Statements you upload. Photos, screenshots, PDFs or CSV files that you choose to scan or pick, and the figures and transactions read from them. A statement page usually shows your full name, your address and sometimes your full account number. If it is on the page, it is in the upload.
Chats with Ani, the in-app assistant. The messages you type and the replies.
Your subscription. Which subscription you have, whether it is active, and whether it will renew. We never see your payment card. Apple handles the payment.
Your device and your use of the app. A push notification token, if you allow notifications. The days you opened the app. Product events, such as "opened the paywall" or "linked a bank", which do not include balances, account names, your email or the text of any message. Crash and error reports.
What we do not collect
- Your bank username or password
- Your contacts
- A credit report or credit score
- An advertising identifier. We do not track you across other companies' apps or websites.
Where it comes from
- You. What you type, the statements you upload, what you tell Ani.
- Your bank or card issuer, through Plaid, if you choose to connect one.
- Google or Apple, when you sign in.
- Apple and RevenueCat, for the state of your subscription.
- Your phone, for the push token, crash reports and product events.
Why we use it
- To show your cards, dates and balances and to work out what to pay and when.
- To send the reminders you turned on.
- To answer your questions in Ani.
- To know whether you have a subscription.
- To find and fix bugs and to see which parts of the app are used.
- To answer you when you write to us.
We do not use your data for advertising. We do not use it to make lending or credit decisions.
Who else handles it
We share data only with the companies that help us run the app. Each one gets only what its job needs.
| Company | What it does for us | What it receives |
|---|---|---|
| Convex | Our database, servers and file storage | Everything we store for you |
| Clerk | Sign-in | Your Google or Apple sign-in identity and email |
| Google, Apple | Sign-in, if you choose them | The sign-in itself |
| Plaid | Connects your bank or card issuer, if you choose to. Read-only. | Your bank login, which you type into Plaid's own screen. From us, an internal id for your account. |
| OpenAI | Reads statements you upload. Powers Ani. | The statement pages and what Ani needs to answer. Both are described below. |
| Apple | Payment for subscriptions. Delivers notifications. | Your purchase. Notification text. |
| RevenueCat | Tells us whether your subscription is active | An internal id for your account and your Apple purchase records. Not your name or email from us. |
| Expo | Sends push notifications | Your push token and the text of each notification |
| PostHog | Product analytics | Product events tied to an internal id. No balances, names, emails or message text. |
| Sentry | Crash reports | Technical details of an error. We have turned off the collection of personal details by default. |
| Cloudflare | Serves the website, counts visits without cookies, and checks that a sign-up comes from a person and not a script | Technical details of your browser and connection. Not your email. |
We do not sell your personal information, and we do not share it for advertising.
We may disclose information if the law requires it, or to protect the rights and safety of our users or ourselves. If the business is sold or merged, your information may pass to the new owner under this policy.
Connecting a bank
If you connect a bank or card issuer, you do it through Plaid. The connection is read-only. We ask Plaid for your transactions and your liabilities: balances, limits, rates, minimum payments and due dates. We cannot move money and we do not ask Plaid for the ability to.
You type your bank login into Plaid's screen. We never see it. Plaid gives us an access token, which we store encrypted on our servers and never send to the app. Plaid handles your data under its own privacy policy.
Statements you upload
When you scan or pick a statement, the pages are uploaded to our servers and we send them to OpenAI, which reads them and returns the cards, figures and transactions it finds. The whole page is sent, including any name, address or account number printed on it.
As soon as the read succeeds, we delete the pages from our servers, before you choose what to keep. If the read fails, we keep the pages for up to about a day so that you can try again without uploading twice, and then we delete them. We may send the pages to OpenAI more than once while retrying. If you discard the statement, we delete any pages we still hold.
What we keep after that is the result of the read, not the pages. A result you have not acted on is removed after 30 days. A record that the import happened is removed up to 90 days after that. Anything you chose to save becomes part of your card data.
OpenAI keeps what it receives under its own terms. We do not control how long that is.
Ani
When you send Ani a message, we send OpenAI your message and the recent messages in that conversation, plus the facts Ani needs to answer: your cards' names and last four digits, balances, limits, rates, due and closing dates, recent statement closes, interest charged, your payment history, your unread notifications, the goal you picked, and your plan if you have one. We also send the app's own record ids for your cards and closes, so Ani can open the right screen.
We do not add your name, email or bank login to what Ani receives. Anything you type yourself is sent as you typed it. Your conversations are stored on our servers so you can come back to them.
Notifications
A notification can name a card and an amount, for example a payment that is due. That text passes through Expo and Apple to reach your phone, and it can show on your lock screen. You can turn notifications off in the app or in iOS Settings.
How long we keep it
- Your account data: for as long as you have an account.
- Statement pages: deleted when the read succeeds, or within about a day if it fails.
- Statement results you did not act on: 30 days, then a bare record for up to 90 more days.
- Analytics events and crash reports held by PostHog and Sentry: we have not set a fixed period.
Deleting your account
In the app: Settings, then your profile, then Delete account, then hold to confirm. It starts at once, runs in the background, and cannot be undone.
We ask Plaid to disconnect every bank you linked. We delete your cards, balances, transactions, statement closes, payments, plans, monthly history, notifications, preferences, your Ani conversations, your push token and any statement pages or results we still hold. Then we delete your account record and ask the sign-in provider to delete your sign-in.
What deleting your account does not do:
- It does not cancel your subscription. Apple bills you, so you cancel with Apple.
- We keep a small record that the deletion happened (an account id and the times) for 30 days, so the deletion can finish and cannot be undone by accident. It holds no card, figure or name.
- If Plaid cannot disconnect a bank at that moment, we keep only what is needed to try again, and we keep trying.
- RevenueCat keeps a record of your purchases under an internal id. PostHog and Sentry keep the events and crash reports already sent. OpenAI may keep what was sent to it for the period in its own terms. Deleting your account in the app does not remove these copies.
Removing less than everything
- Disconnect one bank: Settings, then Banks, pick the bank, then disconnect. We revoke the connection at Plaid and remove that bank's cards and transactions.
- Remove one card: open the card and remove it.
- Joined the waitlist on our website? Email us and we will remove your address.
- Anything else: email hello@getconsolify.com.
Your choices
- You can use Consolify without connecting a bank. You can type your cards in or upload a statement.
- You can use it without uploading a statement and without using Ani.
- You can turn notifications off.
- You can turn on Face ID to lock the app.
- You can ask us for a copy of your data, or ask us to correct it, by emailing us.
Some US states, including California, give residents the right to know what is collected, to get a copy, to correct it, to delete it, and to opt out of the "sale" or "sharing" of personal information. We do not sell or share personal information as those laws define it, and we will not treat you differently for using these rights. To use them, email us.
Not for anyone under 18
Consolify is for adults who have credit cards. It is not for anyone under 18, and we do not knowingly collect data from anyone under 18. If you think a child has given us data, email us and we will delete it.
Security
No system is perfectly secure and we do not promise that ours is. What we do:
- Data is sent over encrypted connections.
- The Plaid access token is encrypted before we store it and is never sent to the app.
- We never receive your bank password or your payment card number.
- Each request to our servers is checked against your sign-in, so one account cannot read another's data.
- You can lock the app with Face ID.
If we learn of a breach that affects you, we will tell you as the law requires.
Where your data is processed
Our providers process data in the United States and may process it in other countries. Consolify is offered for US cards and US users.
Changes
If we change this policy we will update the date at the top. If the change is significant we will tell you in the app before it takes effect.