GuardMyBucks LogoGuardMyBucks Back to sign in

Security

Here's a plain, honest rundown of how GuardMyBucks actually protects your data — no certifications we don't hold, just what's really in place today.

Passwords are hashed, never stored in plain text

We use bcrypt to hash passwords before they touch the database — even we can’t read your password.

Sensitive fields are encrypted at rest

AI provider API keys and two-factor secrets are encrypted with AES-256-GCM before being saved.

Encrypted in transit

Connections to GuardMyBucks are served over HTTPS/TLS.

Access-controlled document storage

Uploaded statements and credit reports live in object storage scoped to your account, not a shared public bucket.

You can export everything

Download a copy of your data any time from Profile settings.

You can delete everything

Permanently delete your account and its data from Profile settings, whenever you want.

For details on what data we collect and how AI features process it, see our Privacy Policy.

Found a security issue? Please report it to support@finsage.dev — we take reports seriously and will follow up directly.