Security
How your data is protected
You are trusting this app with what you own. That deserves specifics, not a padlock icon — so every claim below names the mechanism behind it, and there is a section for what has not been done yet.
How the app is built
It never connects to your bank
There is no Plaid, no open-banking link, and no screen that asks for banking credentials. You enter figures yourself. That is slower, and it means a breach here cannot reach your accounts.
Receipts are read on your device
Scanning uses Apple’s Vision framework on the phone itself — the text is extracted locally and only the amount, date and merchant are saved. The photo is uploaded only if you tick "keep image"; leave it unticked and the picture never leaves the device.
Passkeys, not passwords
Sign-in supports passkeys, Apple and Google — credentials that cannot be phished or reused, because there is no password to steal. Email codes are single-use and expire in minutes.
A separate lock on the app itself
An app passcode with Face ID or Touch ID, held in the iOS Keychain. Someone holding an unlocked phone still cannot open your figures.
Encrypted in transit and at rest
Every request is HTTPS. Data is stored on Convex, which encrypts at rest; the app adds no unencrypted side channel of its own.
It asks for very little
An email address, and the figures you choose to enter. No phone number, no address, no contacts, no location, no advertising identifier, and no third-party analytics watching what you do.
What you control
Your data is yours, and leaving should be as easy as arriving.
Export everything
A full export of your records, from Profile, in a format you can open elsewhere.
Delete your account
Permanently, from inside the app. It removes your records rather than flagging them hidden.
See your devices
Sign out of other devices from Profile → Security whenever you want to.
Security email
You are told when a new device signs in, or when something looks wrong. These are never affected by marketing preferences.
What has not been done yet
A security page that lists only strengths is a marketing page. These are real gaps, stated plainly, and each line stays here until it stops being true.
No third-party security audit
Nobody outside the project has reviewed the code or the infrastructure. There is no SOC 2 report and no ISO 27001 certification, and this page will not claim one before it exists.
No penetration test
The app has not been tested by a professional attacker. That is planned before wider release, not done.
No bug-bounty programme
There is no paid disclosure programme yet. Reports are still very welcome — see below — and will be answered by a person.
Found something?
If you have found a vulnerability, please tell us before telling anyone else. Include what you did and what you saw; a proof of concept helps but is not required.
security@rizqtrackr.comA person reads this address and will reply within a few days. We will not take legal action against anyone reporting a genuine issue in good faith.
For what is collected and why, see the privacy policy