Privacy Policy
Last updated: May 2026
1. Information We Collect
Account Information
When you create an account, we collect your email address and authentication credentials via Supabase Auth. You may optionally provide profile information including your date of birth and retirement goals.
Financial Data
To provide the Service, we store financial data you enter, including account balances, investment holdings, income and expense items, and FIRE targets. This data is stored in a Supabase database and is accessible only to you through Row-Level Security (RLS) policies.
AI Assistant Conversations
When you interact with the FIRE AI Assistant, your messages and financial context are sent to Google's Gemini API for processing. Google may process this data according to their own privacy policy. We do not use your conversation data to train models.
Usage Data
We may collect anonymous usage data (pages visited, features used) to improve the Service. This data is not linked to your personal identity.
2. Cookies
TheFIREPlan uses essential cookies for authentication (Supabase session tokens) and to remember your region preference (US or Canada). We do not use tracking or advertising cookies.
3. How We Use Your Data
- To provide and personalize the dashboard experience
- To power the AI assistant with your financial context
- To calculate projections, net worth, and FIRE timelines
- To process subscription payments via Lemon Squeezy
- To communicate service updates or respond to support requests
We do NOT sell, rent, or share your personal or financial data with third parties for marketing purposes.
4. Third-Party Services
The Service relies on the following third-party providers. We encourage you to review their privacy policies:
- Supabase β Database, authentication, and API hosting. Privacy Policy
- Google Gemini API β AI assistant responses. Privacy Policy
- Lemon Squeezy β Payment processing for Pro subscriptions. Privacy Policy
- Yahoo Finance β Live market price data for portfolio holdings. Privacy Policy
5. Data Retention
We retain your account data for as long as your account is active. If you delete your account, your data will be removed from our systems within 30 days. AI conversation history may be retained for debugging and service improvement in anonymized form.
6. Data Security
We implement reasonable security measures including encryption in transit (HTTPS), database Row-Level Security (RLS), and secure authentication via Supabase. However, no method of electronic storage or transmission is 100% secure.
7. Your Rights
You may access, update, or delete your data at any time through the dashboard. You may also request a copy of your data or full account deletion by contacting us. Depending on your jurisdiction, you may have additional rights under laws such as GDPR or CCPA.
8. Children's Privacy
The Service is not intended for individuals under the age of 18. We do not knowingly collect data from children.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated date. Continued use of the Service after changes constitutes acceptance.
10. Contact
For privacy-related inquiries, contact us at support@espritlab.com.