Privacy Policy
1. Overview
DebtVest is an educational financial scenario-modelling app. This Privacy Policy explains how DebtVest handles information when you use the DebtVest mobile app, website, and related services.
DebtVest is not a financial adviser, investment adviser, tax adviser, credit provider, mortgage broker, or legal adviser. The app is a modelling tool only.
In this Privacy Policy, “DebtVest”, “we”, “us”, and “our” refer to [Your Legal Name / Business Name], the operator of the DebtVest app and website.
2. Information you enter into the app
DebtVest allows you to enter financial scenario assumptions including:
- debt balances;
- interest rates;
- loan terms;
- minimum repayments and surplus cash flow;
- lump sums, offset, or redraw assumptions;
- investment return assumptions;
- capital growth and income yield assumptions;
- tax jurisdiction and tax-rate settings;
- volatility assumptions;
- comparison horizon settings;
- saved scenario labels;
- check-in records; and
- optional investment portfolio values.
DebtVest is designed so your detailed financial scenario information is stored locally on your device.
DebtVest does not intentionally transmit your detailed scenario inputs, saved scenarios, loan balances, portfolio values, check-in values, or detailed financial assumptions to DebtVest-controlled external servers.
If you delete the app, clear app storage, change device, restore your device, reset your device, or lose access to your device, locally stored scenarios and check-in history may be permanently lost unless preserved by your device-level backup settings, such as iCloud backup, Google backup, or another device backup service.
3. Information collected automatically
DebtVest may automatically collect limited technical, diagnostic, usage, and product information needed to operate, secure, improve, and support the app.
This may include:
- app version;
- device type;
- operating system and version;
- anonymous or pseudonymous app identifiers;
- crash reports, performance data, and diagnostic information;
- screen views and navigation flow;
- button taps and feature usage;
- onboarding progress and completion;
- selected general financial goal category;
- broad debt type selection;
- selected jurisdiction setting;
- subscription status and product entitlement status;
- notification permission status;
- push notification tokens or device notification identifiers;
- reminder status or reminder preferences;
- notification delivery, open, or interaction events; and
- general product analytics information.
DebtVest should not be configured to send detailed financial inputs, saved scenario values, loan balances, portfolio values, income figures, or sensitive financial details to analytics services.
If our analytics, diagnostics, notification, or data collection practices change materially in the future, we will update this Privacy Policy and any applicable app store privacy disclosures.
4. Analytics and diagnostics
DebtVest may use analytics and diagnostic tools, including PostHog or similar services, to understand how the app is used, improve product quality, diagnose technical issues, measure conversion performance, and assess whether features are working as intended.
Analytics events may include information such as:
- screen views;
- button taps;
- onboarding step completion;
- selected general goal;
- broad debt type;
- selected jurisdiction;
- subscription status;
- app version;
- device type;
- operating system;
- crash or diagnostic information; and
- general feature engagement.
We use this information to improve the app, troubleshoot errors, understand feature engagement, improve the user experience, and maintain service quality.
We do not intentionally send specific dollar amounts, loan balances, portfolio values, income figures, saved scenario values, or detailed financial check-in records to analytics providers.
5. Purchases and subscriptions
DebtVest may offer paid features through Apple App Store and Google Play in-app purchases.
Purchase processing, payment handling, billing, renewals, cancellations, and refund processing are managed by Apple, Google, RevenueCat, and their related service providers.
DebtVest does not receive or store your full credit card number, bank account details, complete payment credentials, or app store account password.
DebtVest may receive or process limited purchase and entitlement information, including:
- product identifiers;
- purchase status;
- subscription status;
- renewal status;
- entitlement status;
- store environment information;
- anonymous or pseudonymous app user identifiers; and
- information needed to unlock paid features.
Your subscription is managed through your Apple App Store or Google Play account.
To cancel, manage billing, or request a refund, you must do so through your Apple App Store or Google Play account settings. DebtVest cannot directly process app store refunds, cancellations, or billing changes.
6. Notifications and reminders
If you enable notifications or check-in reminders, DebtVest may use your device’s notification system and third-party notification infrastructure to send reminders, updates, or app-related messages.
DebtVest may request notification permission from your device so it can send check-in prompts, scenario reminders, subscription-related messages, product updates, or other app-related notifications.
Depending on your device, operating system, and app configuration, notification delivery may involve Apple Push Notification service, Firebase Cloud Messaging, Expo notification services, Google Play services, RevenueCat, or other related infrastructure providers.
DebtVest may process limited technical information required to deliver, manage, and improve notifications, such as:
- notification permission status;
- device notification tokens or push tokens;
- anonymous or pseudonymous app user identifiers;
- app version;
- device type and operating system;
- reminder preferences;
- notification delivery status;
- notification open events; and
- notification interaction events.
DebtVest does not intentionally include detailed financial scenario inputs, loan balances, portfolio values, saved scenario values, check-in values, or sensitive financial information in notification payloads.
You can disable notifications at any time through your device settings.
7. Website and support contact
If you contact DebtVest by email, through a support form, through an app feedback feature, or through another support channel, we may collect the information you choose to provide.
This may include:
- your name;
- email address;
- message content;
- support request details;
- app version;
- device type;
- operating system;
- screenshots or attachments you choose to send; and
- other information you voluntarily provide.
Please do not send sensitive financial information, identity documents, bank details, full card details, tax file numbers, social security numbers, passwords, private account credentials, or other highly sensitive information by email or support message.
We use support information to:
- respond to your request;
- troubleshoot issues;
- improve the app;
- manage disputes;
- investigate bugs;
- maintain business records; and
- comply with legal obligations.
8. Device permissions
DebtVest may request the following device permissions:
| Permission | Purpose |
|---|---|
| Notifications | To send check-in reminders, scenario reminders, product updates, or app-related messages |
| Local storage | To save scenarios, assumptions, and check-in history on your device |
DebtVest does not currently require access to your camera, microphone, contacts, precise location, photos, health data, or biometric identity data.
If this changes in the future, we will update this Privacy Policy and relevant app store disclosures.
9. Data sharing and disclosure
DebtVest does not sell your personal information.
DebtVest may share limited information with service providers used to operate, distribute, secure, support, and improve the app, including providers for:
- app distribution;
- in-app purchase and subscription management;
- entitlement management;
- analytics and diagnostics;
- crash reporting;
- push notifications and notification delivery;
- customer support;
- email hosting;
- website hosting;
- cloud infrastructure;
- app build and update infrastructure;
- legal, compliance, accounting, or professional services.
These providers may include Apple, Google, RevenueCat, PostHog, Expo, Firebase or related notification infrastructure providers, website hosting providers, email providers, and similar service providers.
DebtVest may also disclose information:
- where required by applicable law, regulation, legal process, court order, government request, or regulatory authority;
- to protect the rights, property, safety, security, or integrity of DebtVest, our users, or the public;
- to investigate fraud, abuse, security incidents, or technical issues;
- to enforce our terms or protect our legal interests; or
- in connection with a merger, acquisition, restructuring, financing, sale of business assets, or similar transaction, where the receiving party agrees to handle information consistently with this Privacy Policy or applicable law.
10. Third-party services
DebtVest may use third-party services including Apple, Google, RevenueCat, PostHog, Expo, Firebase or related notification infrastructure providers, app infrastructure providers, website hosting providers, and email service providers.
These third-party providers may process information under their own terms, privacy policies, and data processing arrangements.
You should review the privacy practices of Apple, Google, RevenueCat, PostHog, Expo, Firebase, and any other third-party services made available through the app stores, app infrastructure, or the DebtVest website.
DebtVest is not responsible for the privacy practices of third-party platforms, app stores, payment processors, analytics providers, notification providers, or external websites that we do not control.
11. Data retention
Detailed scenario inputs, saved scenarios, and check-in records are designed to remain locally on your device unless you delete them, delete the app, clear app storage, or your operating system removes local data.
Because this information is stored locally, DebtVest does not directly control how long it remains on your device.
Support emails and related records may be retained for as long as reasonably necessary to:
- respond to your request;
- provide support;
- maintain business records;
- resolve disputes;
- comply with legal obligations;
- investigate bugs or misuse; and
- improve the app.
Analytics, diagnostic, notification, and purchase-entitlement data may be retained by DebtVest and its service providers for periods determined by operational, security, legal, and service-provider requirements.
12. Data security
DebtVest uses reasonable technical and organisational measures appropriate to the nature of the app and the information processed.
Scenario data stored on your device benefits from the security protections of your device operating system and storage encryption where enabled.
However, no method of electronic storage or transmission is completely secure. DebtVest cannot guarantee absolute security.
You are responsible for:
- securing your device with a passcode, Face ID, fingerprint lock, or similar protection;
- maintaining the security of your Apple ID, Google account, email account, and app store account;
- enabling device-level encryption and backups where appropriate;
- keeping your app store credentials confidential;
- avoiding insecure networks or compromised devices;
- not sharing screenshots or exported information containing sensitive details; and
- protecting any cloud backups connected to your device.
DebtVest is not responsible for unauthorised access caused by compromised devices, shared accounts, weak passwords, malware, phishing, insecure backups, or other security practices outside our control.
13. Your choices and rights
You can:
- stop using DebtVest at any time;
- delete locally stored app data by deleting the app or clearing app storage, subject to your device and operating system settings;
- disable notifications through your device settings;
- manage or cancel subscriptions through Apple App Store or Google Play;
- contact us about privacy questions;
- request access to personal information we hold about you;
- request correction of personal information we hold about you; and
- request deletion of support information we hold about you, subject to identity verification and applicable legal requirements.
If you are located in Australia, you may have rights under the Privacy Act 1988 (Cth) and the Australian Privacy Principles to request access to or correction of personal information we hold about you.
If you are located in the United Kingdom, European Economic Area, or another jurisdiction with applicable privacy rights, additional rights may apply to you under local law.
To make a privacy request, contact:
support@debtvest.app
We may need to verify your identity before responding to a request.
14. Children
DebtVest is intended for adults and is not designed for children.
DebtVest should not be used by anyone under 18 years of age.
We do not knowingly collect personal information from children. If you believe a child has provided personal information to DebtVest, contact us at support@debtvest.app and we will take reasonable steps to delete it where required.
15. International users
DebtVest may be available in multiple countries.
Your information may be processed in countries other than the country where you live. Data protection laws may differ between jurisdictions.
Service providers such as Apple, Google, RevenueCat, PostHog, Expo, Firebase, website hosting providers, email providers, analytics providers, and notification infrastructure providers may process data in jurisdictions where they operate.
By using DebtVest, you acknowledge that information may be processed by service providers in jurisdictions outside your country of residence, subject to applicable laws and service-provider terms.
16. UK and EEA users
If you are located in the United Kingdom or European Economic Area, the following additional information may apply to personal data subject to the UK GDPR or EU GDPR.
Legal bases for processing
To the extent DebtVest processes personal data subject to the UK GDPR or EU GDPR, we may rely on the following legal bases:
- Contract performance — to provide app functionality, subscription entitlement management, support, and related services;
- Legitimate interests — to improve the app, understand usage, diagnose issues, maintain security, prevent misuse, and operate our business;
- Consent — where required for notifications, optional permissions, or certain analytics settings;
- Legal obligation — where processing is required to comply with applicable laws.
Your rights
You may have rights to:
- access your personal data;
- correct inaccurate personal data;
- request deletion of personal data;
- restrict processing;
- object to processing;
- request data portability;
- withdraw consent where processing is based on consent; and
- lodge a complaint with a data protection supervisory authority.
To exercise your rights, contact support@debtvest.app.
International transfers
Some service providers may process information outside the UK or EEA. Where required, we rely on appropriate safeguards, contractual protections, adequacy decisions, or other lawful transfer mechanisms.
17. Changes to this Privacy Policy
DebtVest may update this Privacy Policy from time to time to reflect changes in the app, our practices, legal requirements, service providers, or app store requirements.
The updated version will be posted at the Privacy Policy URL provided in the app and app store listings.
The “Last updated” date will show when this Privacy Policy was last changed.
Continued use of DebtVest after an updated Privacy Policy is posted means you acknowledge the updated Privacy Policy.
18. Contact us
For privacy questions, support requests, or data requests, contact:
We aim to respond to privacy enquiries within a reasonable period and, where applicable, within timeframes required by law.