1. Scope and who we are
This Privacy Policy applies to the StatementRadar website, user accounts, free statement analyzer, paid AI Financial Report, Premium subscription, billing pages, saved analysis history, statement comparison, support communications, and related services collectively referred to as the “Service.”
“StatementRadar,” “we,” “us,” and “our” refer to the operator of StatementRadar.com. This policy does not govern third-party websites or services that have their own privacy notices.
2. Information we collect
| Category | Examples | Purpose |
|---|---|---|
| Account information | Name if supplied, email address, password hash, verification status, plan, account status, registration and login timestamps. | Create and secure accounts, authenticate users, provide account features, prevent abuse and communicate important service messages. |
| Uploaded financial documents | PDF, CSV, XLS or XLSX bank statements and transaction data contained in them. | Perform the analysis requested by the user and provide saved reports according to the selected plan. |
| Generated analysis data | Income, spending, categories, transactions, cash flow, insights, health score, merchant analysis, recurring charges, statement-chat questions and answers. | Display, save, compare and export requested financial analytics. |
| Billing information | Purchase type, amount, currency, transaction identifiers, subscription status, billing period and masked payment-method details received from Paddle. | Process and verify purchases, activate access, manage subscriptions, display billing history and respond to payment issues. |
| Usage and technical data | IP address, browser type, device information, timestamps, page requests, security events, error logs and feature usage counters. | Operate, secure, debug and improve the Service; enforce limits; detect fraud and abuse. |
| Communications | Support messages, email correspondence and information voluntarily provided to us. | Respond to inquiries, investigate issues and provide customer support. |
We do not intentionally request bank login credentials, PINs, one-time passwords, full payment-card numbers, or security codes. Do not place those details in support messages or uploaded documents.
3. How bank statements are processed
3.1 Free Analyzer
The Free Analyzer is designed to process compatible CSV, XLS and XLSX files locally in the user’s browser. The file is not intentionally uploaded to StatementRadar for the free analysis. Browser behavior, extensions, network security software, or third-party scripts outside our control may affect this process.
3.2 Paid AI analysis
Paid AI analyses send the uploaded statement to the protected StatementRadar backend. Relevant statement content is then transmitted to the configured Google Gemini API service to perform the requested extraction and analysis. The generated result is returned to StatementRadar and stored in the user’s account according to the applicable retention period.
Third-party AI processing is governed by the provider’s applicable terms, privacy documentation, data-use policies and abuse-monitoring requirements. We do not control changes made by third-party providers.
3.3 Accuracy and sensitive content
AI extraction and categorization may be incomplete, delayed or incorrect. StatementRadar may limit the number of detailed transactions saved in a report while calculating summary information from visible statement data. Users must verify all results before relying on them.
4. How we use information
- Provide, maintain and personalize the Service.
- Create accounts and confirm email addresses.
- Analyze statements and generate requested reports.
- Save, retrieve and compare analyses according to plan access.
- Verify Paddle payments and activate purchased features.
- Track monthly usage and enforce account or plan limits.
- Answer statement-chat and support requests.
- Detect unauthorized access, fraud, abuse and security incidents.
- Debug errors, monitor performance and improve reliability.
- Comply with legal obligations and enforce our Terms of Service.
- Send essential account, security, billing and service communications.
We do not sell bank statement data or generated financial analysis data.
5. Legal bases for processing
Where data-protection law requires a legal basis, we rely on one or more of the following:
- Contract: processing necessary to create an account, perform an analysis, provide purchased features, or manage a subscription.
- Legitimate interests: securing the Service, preventing abuse, maintaining records, improving reliability and providing support.
- Consent: where consent is specifically requested, including optional communications or non-essential technologies.
- Legal obligations: compliance with tax, accounting, consumer-protection, fraud-prevention or lawful government requirements.
7. Data retention and deletion
- Free Analyzer files: not intentionally stored by StatementRadar when processed locally in the browser.
- One-time AI Financial Report: uploaded file and saved analysis are currently scheduled for retention for up to 30 days from analysis creation, unless deleted earlier or retained longer for security, dispute or legal reasons.
- Premium analyses: uploaded file and saved analysis are currently scheduled for retention for up to 365 days, unless deleted earlier or retained longer for security, dispute or legal reasons.
- Failed or incomplete analyses: may be retained temporarily for debugging, credit reconciliation, fraud prevention or support.
- Account, billing and transaction records: may be retained as needed for account administration, accounting, fraud prevention, disputes and legal obligations.
- Logs and backups: may remain for a limited period after deletion due to system backups, security logs and disaster-recovery processes.
Users should download required reports promptly. We may delete files or analyses earlier when required for security, storage management, account closure, policy enforcement or legal compliance.
8. Security
We use reasonable administrative, technical and organizational safeguards designed to protect information, including authenticated access, password hashing, prepared database queries, CSRF protection, private storage controls, server-side API credentials, webhook signature verification and HTTPS where supported.
No online service, storage system or transmission method is completely secure. We cannot guarantee absolute security, uninterrupted availability, or that unauthorized access will never occur. Users are responsible for protecting their account credentials, device and email account.
9. Privacy rights and choices
Depending on location and applicable law, users may have rights to request access, correction, deletion, restriction, objection, portability, withdrawal of consent, or information about processing.
To submit a request, email support@statementradar.com from the email address associated with the account. We may request reasonable verification before processing a request.
Some information may be retained where necessary for legal obligations, billing records, fraud prevention, dispute resolution, security or the establishment, exercise or defense of legal claims.
10. International data processing
StatementRadar and its service providers may process information in countries other than the user’s country. Those countries may have different data-protection laws. Where required, appropriate legal safeguards may be used for cross-border transfers.
11. Children’s privacy
The Service is not intended for children under 18, or the minimum legal age required to enter a binding contract in the user’s jurisdiction. We do not knowingly collect financial statements from children. Contact us if you believe a child has provided personal information.
12. Changes to this policy
We may update this Privacy Policy to reflect product, provider, legal or security changes. The effective date at the top will be revised. Material changes may also be communicated through the Service or by email where appropriate.
13. Contact us
Email: support@statementradar.com
Website: https://statementradar.com