DRAFT — this document accurately describes how Zuren works today, but it has not yet been reviewed by legal counsel.

Privacy Policy

Version 2026-09-10-draft5

What Zuren collects

Your email address (for sign-in), and the financial records you create, import or connect: institutions, accounts, balances and their history, CSV imports, watched public wallet addresses, brokerage holdings synced through a read-only connection, repayment schedules, and the analysis Zuren derives from them (“What changed” events, weekly briefs, your feedback). If you subscribe, Zuren also stores which subscription you hold and its status — never a card number.

Zuren also stores the optional answers you save in your financial profile: your birth year (not your full date of birth), primary and secondary financial goals, investment horizon, risk tolerance, how you say you would respond to a large market fall, income stability, number of dependants, and whether you expect major financial commitments.

How your financial profile is used

Zuren may use your saved answers and whether you have provided enough profile context, together with information derived from your financial records, to personalise parts of the product through deterministic rules run within Zuren. For Personalised Intelligence, those rules may highlight the relevance of an existing generic insight or add fixed context, but they do not change the underlying financial facts.

Your financial-profile answers and the personalisation frame derived from them are not sent to Anthropic for Personalised Intelligence. Anthropic receives only the limited, minimized and pseudonymous financial facts described below; Zuren applies profile-based personalisation after the generic AI result returns.

What it deliberately does not collect

No bank or brokerage credentials — brokerage sign-in happens on the provider's own pages and your password never touches Zuren. No full account numbers (you may store a masked hint like “•••• 1234”). No card details — payment happens on Stripe's pages. Brokerage access is read-only by construction: Zuren cannot place a trade or move money.

Where data lives

In a Supabase (hosted Postgres) project in the ap-northeast-1 (Tokyo) region, with row-level security isolating every user's rows. The application runs on Vercel. Sign-in emails are delivered via Resend. Brokerage data flows through SnapTrade, the read-only aggregation provider you authorize when connecting a brokerage. Payments, if you subscribe, are processed by Stripe. Exchange rates come from a public feed (Frankfurter/ECB) that receives nothing about you. Public wallet balances are looked up against public blockchain APIs using only the address you provided.

What leaves the infrastructure

Nothing is sold, and there are no advertising or analytics trackers. To generate AI-powered financial summaries or explanations, Zuren may send a limited, minimized and pseudonymous set of precomputed financial facts to Anthropic, our current external AI service provider. Depending on what changed, those facts can include relevant balances, holdings, liabilities, liquidity or cash, currencies, dates, changes, allocation or concentration metrics, and other derived financial facts needed for the summary. Selected facts therefore leave Zuren and are processed by Anthropic for this feature; they are pseudonymous, not anonymous.

When you use Financial Copilot, your Copilot question and bounded prior conversation context (up to four messages), together with the minimum evidence facts needed for the response, may be sent to Anthropic. That free text may contain personal information you type. Do not enter account credentials, API keys, passwords, or other secrets into Financial Copilot.

For server-derived records, rather than free text you submit, Zuren does not intentionally send raw transaction descriptions, merchant names, account names, raw brokerage or account identifiers, your name, email address, Zuren user ID, account credentials, API keys, or your complete financial dataset. AI output can still be inaccurate or incomplete; independently verify important facts before relying on or acting on them. These summaries are informational and are not professional financial advice.

Your controls

Download portfolio export includes accounts, balances, holdings, connection status, sync history, radar and consent records. It excludes financial profile, preferences, financial events and activities, AI records, billing records, provider credentials and operator audit records. Clear manual accounts deletes manually entered accounts and their attached balance history, imports and repayment schedules. Connected accounts and live provider connections remain active. Institution names, profile, preferences, radar, financial events and activities, AI, legal, billing and audit records remain. Contact support for account closure, provider disconnection and applicable retention.

Contact

Security or privacy questions: support@getzuren.com.

Back to Zuren