Enabling two-factor authentication
TOTP apps, backup codes, and recovery if you lose your device.
Two-factor auth, encryption, what we store, what we don't, and responsible disclosure.
TOTP apps, backup codes, and recovery if you lose your device.
At rest, in transit, and key management.
Read-only Plaid scopes, hashed credentials, no transaction-level data sold.
Bank-level OAuth — your bank credentials never touch our servers.
Sign out everywhere if a device is lost or stolen.
Responsible disclosure, scope, and our response timeline.
Where we are in the audit process and what's available.
How EU users request, export, or delete data.
What's enabled out of the box and what's optional.
We answer every message — usually within four hours. No tier-gating, no AI-only triage.