Privacy

What Sarathy keeps, and why

←

Sarathy is a beta. It reads what you spend and works out what you can still do. This page is the whole of what it holds about you — there is nothing on a server that isn’t listed here.

What is stored
Your account

Email address, sign-in method, and the name you asked to be called.

Supabase (authentication and the profiles table).

Money facts you typed

What arrives each month, undated running costs, dated commitments, a goal, and the currency you said your money is in.

Supabase.

Charges

Amount, merchant, date, category and how each one reached Sarathy — typed, shared, a Shortcut, an Android payment alert, or an emailed receipt. Never the message or the email itself.

Supabase.

What you told and taught Sarathy

Sentences you asked it to remember, periods you said were not normal, Worth it / Fine / Regret marks, and your answers to its notices.

Supabase.

What Sarathy found but has not added

From an emailed receipt or a payment alert: the amount, the merchant, the date, the kind of transaction, the sender's domain and the short line the amount was read from (at most 60 characters) — kept while it waits for you, and after, as the record of what you decided. Never the message or the email itself.

Supabase (the capture_candidates table).

Gmail connection

If you connected an inbox: the address and the tokens Google issued so Sarathy can read receipts. Read-only. Removed the moment you disconnect.

Supabase; the grant itself is held by Google.

Capture tokens

A long-lived token for an iPhone Shortcut or the Android listener, if you set one up. Revoked when you sign out.

Supabase.

What is never stored
  • The body of any notification, email or message. What comes out of one is the amount, the merchant, the date, the sender’s domain and the short line the amount was read from (at most 60 characters) — never the message itself.
  • Bank or card credentials. Sarathy is not connected to a bank, a card, SimplyGo or Singpass, and cannot move money.
  • Your location, contacts, or anything on your phone outside the payment alerts you allowed on Android.
  • Anything about your personality. What it learns is read back to you on Memory, and only from things you said or marked.
Who processes it
SupabaseDatabase and sign-in. Everything above is stored here.
VercelHosts the app and runs its server code.
GoogleSign in with Google, and — only if you connect it — read-only access to receipts in Gmail.
GroqReads the free text you type into Tell Sarathy and Add, and the text of a shared receipt, to work out its shape. It is sent the sentence and today's date, not your account or your history, and nothing is kept there.
exchangerate-api.comAsked for a currency rate when you ask about sending money. It receives no personal data.
Removing it

Gmail — disconnect from Ledger › Sources or from your account screen. The tokens are deleted and the grant is revoked at Google; the charges already captured stay unless you remove them.

A charge — open it on Ledger and remove it. It leaves every figure.

Something you told Sarathy — Remove it on Memory.

Your whole account — during the beta, deletion is carried out by a person, not a button. Ask from your account screen and it is done, with everything above, within seven days.

Sarathy is built in Singapore. This page changes when what is stored changes, and not otherwise.