Privacy Policy

This policy explains what Swan Sprints collects when you use MoneyFlow — accounting, invoicing, multi-currency, crypto tracking, and AI insights — and how that information is handled.

Swan Sprints · Last updated 2026

01Information We Collect

Account data: name, email address, organization details, and role assignments you or your organization provide.

Financial data you enter: transactions, chart-of-accounts entries, invoices, purchase orders, customer and vendor records, catalog items, and time-tracking entries.

Documents you upload: bank statements (PDF/CSV), receipts, and files imported for parsing or reconciliation.

Crypto wallet addresses: the public wallet addresses you choose to register for balance tracking.

Usage data: login times, features accessed, and device/browser metadata used to secure and improve the service.

02What We Never Collect

MoneyFlow never asks for, stores, or custodies private keys, seed phrases, exchange API secrets, or online-banking credentials. Only public wallet addresses are recorded. Anyone requesting these on our behalf is not Swan Sprints.

03How We Use Your Information

To operate your ledger and generate reports (P&L, Balance Sheet, Cash Flow, aged receivables and payables); to issue invoices and manage subscriptions; to authenticate you; to provide support; and to improve the product.

04AI Processing (Hamsa AI)

When you use AI features — forecasting, anomaly detection, document parsing, and recommendations — the relevant financial records or uploaded documents are sent to our AI provider (Google Gemini) for processing. Do not upload documents containing secrets, credentials, or third-party data you are not authorized to share.

05Third-Party Processors

Paddle acts as merchant of record for subscriptions — payment card details are collected and processed by Paddle, never by us. CoinGecko supplies cryptocurrency price feeds; only asset symbols are queried, never your balances. Google Gemini processes AI requests as described above. We do not sell your data or share it for advertising.

06Multi-Tenant Isolation

Each organization’s data is logically isolated and access-controlled by role-based permissions. Team members see only what their assigned role permits. Organization owners control invitations and can revoke access at any time.

07The Sample Environment

The “View Sample” demo signs you in to a shared, public demonstration schema with fictitious data. Anything you enter there may be visible to other visitors and may be reset at any time — never enter real personal, financial, or client information in the sample environment.

08Data Portability and Deletion

You can export your data at any time (CSV, QuickBooks QBO, OFX, IIF, or JSON). You may request correction or deletion of your personal data by contacting us; deletion of an organization removes its records subject to legal retention requirements.

09Security

Data is encrypted in transit and at rest using industry-standard controls. Sessions use short-lived tokens with refresh rotation. No method of transmission or storage is 100% secure — notify us immediately at clientservices@swansprints.com if you suspect unauthorized access.

10Cookies and Local Storage

We use browser local storage for session tokens, theme, and preference settings. We do not use third-party tracking or advertising cookies.

11Your Rights

Depending on your jurisdiction you may have rights to access, correct, export, or delete your personal data, and to object to certain processing. Contact us to exercise any of these rights.

12Changes and Contact

We may update this policy as the product evolves; material changes will be announced in the app. Questions or requests: clientservices@swansprints.com.

© 2026 Swan Sprints. All rights reserved.