Privacy Policy

Last updated 29 July 2026

MehMoneh is a personal budgeting tool. This policy explains exactly what it records about you, who else can see it, and how to get it back or get rid of it. It describes what the service actually does today — not what it might do.

Who is responsible

The service is operated by MehMoneh. It is self-hosted: it runs on hardware the operator controls, in the Philippines, rather than on a cloud platform.

What we collect

From Google, when you sign in

Signing in is only possible through Google. Google gives us, and we store: your name, your email address, whether Google considers that address verified, the URL of your Google profile picture, and your Google account identifier. We also store the access token Google issues so your account stays linked. We never receive your Google password.

What you enter

Your transactions — amount, currency, description, date, and whether each is income or an expense — and your budget lines, being a name and either a percentage of income or a fixed monthly amount. This is the financial information the app exists to hold, and it is the most sensitive data here.

Recorded automatically

Each time you sign in we record the IP address and browser user-agent of that session. Our server also writes short-lived operational logs of requests.

What we do not collect

No analytics. No advertising. No third-party trackers or pixels of any kind. We do not connect to your bank, and we cannot see your bank accounts, card numbers or real balances — every figure in MehMoneh is one you typed in yourself.

Who else processes your data

  • Google — identity only. Google knows you signed in to this service. It does not receive your transactions or budget.
  • Cloudflare — all traffic reaches the service through Cloudflare, which terminates the HTTPS connection and can therefore see request metadata including your IP address.

Nobody else. We do not sell your data, share it with advertisers, or use it to train anything.

Cookies and on-device storage

One cookie, holding your sign-in session. It is marked httpOnly, so scripts on the page cannot read it, and it is strictly necessary for the service to work — which is why there is no cookie consent banner: there is nothing optional to consent to.

The app also stores a copy of your recent transactions on your own device so it keeps working without a connection. That copy is deleted when you sign out.

How long we keep it

Your account and its data are kept until you ask us to delete them. Deleted data may persist in encrypted-at-rest backups for up to 14 days, after which those backups are destroyed automatically. Sign-in sessions expire on their own.

Your rights

You do not have to ask us for either of these. Under Settings in the app, Download my data gives you a file containing your profile, every transaction and your whole budget; Delete account erases all of it permanently, along with the account itself.

For anything else — a correction, a question about how your data is handled, or help if deletion fails — email [email protected] and we will act within 30 days.

Deletion is immediate and irreversible in the live database. Copies may persist in encrypted backups for up to 14 days, after which those backups are destroyed automatically.

Security

Traffic is encrypted in transit. Your session cookie cannot be read by page scripts, and the short-lived token the app uses to talk to the API is held only in memory, never written to disk. Every database query is scoped to the account that made it, so one user's records cannot be reached from another's account.

No service can promise perfect security, and this one is run by a small operation. If you would be seriously harmed by this information becoming public, please weigh that before entering it.

Children

MehMoneh is not intended for anyone under 16.

Changes

If this policy changes in a way that affects you, the date above changes and we will say so in the app before the change takes effect.

Contact

[email protected]

Terms of Service