Privacy Policy

Effective Date: October 24, 2025

Last Updated: October 24, 2025

1. Introduction

Fin2Cents, Inc. ("Fin2Cents," "we," "us," "our") values your privacy. This Privacy Policy explains how we collect, use, and share your personal information when you use our mobile and web applications, websites, and related services (collectively, the "Services"), including any integrated third-party applications such as connected brokerage APIs.

This Policy complies with major global privacy laws including the EU General Data Protection Regulation (GDPR), the UK Data Protection Act 2018 (UK GDPR), the California Consumer Privacy Act (CCPA) as amended by the CPRA, and the Children's Online Privacy Protection Act (COPPA).

By using our Services, you agree to this Policy.

2. Information We Collect

We collect three broad categories of information:

A. Information You Provide:

Account details, learning progress, communications, payment data, feedback, and any information you provide when connecting brokerage accounts or APIs.

B. Automatically Collected Information:

Usage data, device and technical data, IP address, browser type, and cookies or tracking technologies.

C. Information from Third Parties:

Brokerage or financial data (with your explicit consent), authentication providers, and analytics services.

We do not collect biometric identifiers, genetic data, or any information revealing racial or ethnic origin, religious beliefs, sexual orientation, or political opinions.

3. How We Use Your Data

We process your information to:

  • Provide and personalize your Fin2Cents experience;
  • Securely connect to third-party APIs for portfolio insights;
  • Process payments and maintain user accounts;
  • Improve services, analytics, and educational content;
  • Communicate with you about updates, offers, or support;
  • Comply with applicable legal obligations.

Under GDPR, processing bases include performance of a contract, consent, legal compliance, and legitimate interests. We may use anonymized or aggregated data for analytics, product development, and research.

Fin2Cents does not make automated decisions that have legal or similarly significant effects on users.

4. How We Share Information

We share personal information only as necessary with service providers, analytics vendors, brokerage APIs, or legal authorities. We do not sell personal information to third parties for monetary consideration.

All service providers and integrated partners act under written Data Processing Agreements (DPAs) that limit data use to Fin2Cents' instructions and ensure compliance with privacy laws.

If Fin2Cents is involved in a merger, acquisition, or asset sale, your information may be transferred as part of that transaction with prior notice.

5. Cookies & Analytics

We use cookies and similar technologies for authentication, analytics, and personalization. These may include Google Analytics, Mixpanel, or Amplitude.

You can adjust cookie settings through your browser or device controls. We honor Global Privacy Control (GPC) signals and other opt-out mechanisms required by California and EU law.

6. California Privacy Rights (CCPA/CPRA)

Under the California Consumer Privacy Act (CCPA), as amended by the CPRA, California residents have specific rights regarding their personal information, including:

  • The right to know what personal information we collect, disclose, or share.
  • The right to request deletion of personal information, subject to legal exceptions.
  • The right to correct inaccurate information.
  • The right to opt-out of the sale or sharing of personal data for cross-context behavioral advertising.
  • The right to non-discrimination for exercising privacy rights.

Fin2Cents does not sell personal data for profit. We may process sensitive personal information (e.g., account credentials or limited financial data) only as necessary to provide services.

To exercise your rights, contact support@fin2cents.com with "CCPA Request" in the subject line. We will verify your identity before fulfilling requests and respond within 45 days (extendable by 45 more days when necessary).

You may authorize an agent to submit requests on your behalf by providing written permission.

7. Data Retention

We retain your personal data only as long as necessary to provide our Services, comply with legal obligations, resolve disputes, or enforce agreements. When data is no longer needed, it is securely deleted or anonymized.

In case of a data breach affecting your personal information, we will notify you and relevant authorities without undue delay in accordance with applicable law.

8. Data Security

We implement industry-standard measures to protect your data, including:

  • Encryption in transit and at rest;
  • Role-based access controls;
  • Regular security audits.

While we strive for robust protection, no system is completely secure. You are responsible for maintaining the confidentiality of your account credentials.

9. International Data Transfers

Your information may be transferred to and processed in the United States or other jurisdictions where we or our service providers operate. We rely on Standard Contractual Clauses and other lawful mechanisms for international data transfers.

Fin2Cents, Inc., headquartered in the United States, acts as the data controller for personal data collected under this Policy.

10. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access, correct, delete, or port your data;
  • Withdraw consent;
  • Object to or restrict certain processing;
  • Lodge a complaint with a Data Protection Authority (EU/UK users).

To exercise any of these rights, please contact support@fin2cents.com.

11. Children's Privacy

Fin2Cents is not directed to children under 13 (or under 16 in the EU/UK). We do not knowingly collect personal data from minors.

If you believe your child has provided data, contact us immediately to delete it. We verify user age through neutral self-declaration methods and do not profile minors.

12. Updates to This Policy

We may update this Privacy Policy periodically. Material changes will be communicated via email or in-app notification prior to taking effect. The 'Effective Date' at the top will indicate the latest revision.

13. Contact Us

Fin2Cents, Inc.

350 N Canal St, Chicago, IL 60654

Email: support@fin2cents.com

Website: https://www.fin2cents.com

Additional Notes for Compliance

  • Fin2Cents maintains internal Records of Processing Activities (ROPA) under GDPR Art. 30.
  • All API data access is read-only and used solely for user-facing analytics. Brokerage-linked data is encrypted and never stored beyond session requirements.
  • If Fin2Cents targets EU users, an EU representative will be designated under GDPR Art. 27.

© 2025 Fin2Cents, Inc. All rights reserved.