Privacy Policy
We built Tablewealth because existing tools didn't respect your financial data. This policy explains exactly what we collect, what we do with it, and the commitments we make to protect it.
1. Our Privacy Commitments
Privacy isn't an afterthought at Tablewealth - it's a design constraint. Here's what that means in practice:
We never sell your data
Your financial data is never sold to or shared with advertisers, data brokers, or marketing platforms.
AI never touches your accounts
Our AI builds interfaces only. It has zero access to your financial account data, ever.
Encrypted sensitive fields
Sensitive financial fields are encrypted at rest and kept out of AI prompts by default.
You own your data
You can request access to your data and delete your account from the product when eligible.
2. Data We Collect
Account information: Name, email address, password (hashed), and billing details when you subscribe.
Financial data: Account balances, transaction history, investment holdings, and asset values retrieved from connected financial institutions via our data aggregation partners.
Usage data: How you interact with the platform, features used, session durations, and error logs - used to improve the product.
Device and technical data: IP address, browser type, operating system, and device identifiers collected automatically when you use our Services.
Communications: Emails and support messages you send us.
3. How We Use Your Data
We use the data we collect to:
- Provide, operate, and improve the Tablewealth platform
- Sync and display your financial accounts accurately
- Process payments and manage your subscription
- Send product updates, security alerts, and support communications
- Protect account security and investigate fraud, abuse, or reliability issues
- Comply with legal obligations
We do not use your financial data to train AI models, build user profiles for advertising, or infer personal attributes beyond what is required to operate the Services.
4. Financial Data Handling
Your financial data is the most sensitive information we hold. We treat it accordingly:
- Sensitive financial fields are encrypted at rest using field-level encryption
- Financial records are scoped to your organization and protected by authenticated access controls
- Financial data is accessed to provide requested product features, including dashboards, account sync, exports, webhooks, and support troubleshooting
- We limit internal access to production data to operational needs
- We use financial data aggregation partners to connect to supported institutions
5. AI & Your Privacy
Tablewealth uses AI to help you build custom dashboards and interfaces. Our AI system is strictly limited:
- AI receives the prompts and messages you submit, plus limited workspace context needed to respond
- We do not automatically attach your account balances, transactions, or holdings to AI requests
- When you ask AI to help build an interface, it works from your instructions rather than directly querying your financial records
- You should not include sensitive financial data in prompts unless you intentionally choose to provide it
This is different from tools that automatically send raw account data to an AI model for analysis. Our product is designed so interface generation can happen without attaching financial records to the prompt.
6. Data Sharing
We do not sell your personal data. We may share limited data with:
- Data aggregation partners - to connect to your financial institutions on your behalf
- Payment processors - to handle subscription billing securely (we never store full card details)
- Infrastructure providers - to host, secure, monitor, and operate the Services
- Legal authorities - only when required by valid legal process, court order, or to protect the safety of users
We share data with service providers only as needed to provide and operate the Services, subject to applicable contracts and provider terms.
7. Security
We use technical and organizational safeguards designed to protect user data, including:
- Field-level encryption for sensitive database fields such as connection tokens, account names, transaction details, and holding identifiers
- Authenticated, organization-scoped access checks around dashboard data
- Account security options such as authenticator-app MFA and passkeys where available
- Scoped API keys with account-level access controls
- Analytics masking in sensitive dashboard surfaces to reduce accidental capture of private data
No system is perfectly immune to unauthorized access. If we determine that notice is required for a security event involving your personal data, we will provide notice in accordance with applicable law.
8. Data Retention
We retain your data for as long as your account is active or as needed to provide the Services. When you delete your account:
- The account deletion flow removes your user account, sessions, connected auth accounts, and related account records when you are eligible to delete
- Connected financial provider connections are unlinked as part of the deletion flow
- Some organization data may remain if it belongs to a shared workspace or another organization owner
- Billing, security, legal, backup, and provider records may be retained where required or reasonably necessary
You can contact us to request access, deletion, or portability assistance before deleting your account.
9. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access - Request a copy of the personal data we hold about you
- Correction - Request correction of inaccurate personal data
- Deletion - Request deletion of your personal data
- Portability - Receive your data in a structured, machine-readable format
- Objection - Object to certain types of data processing
- Withdraw consent - Withdraw consent where processing is based on consent
To exercise any of these rights, contact us at privacy@tablewealth.com. We will respond within 30 days.
11. Children's Privacy
Our Services are not directed to individuals under the age of 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or applicable law. When legally required, we will provide notice of material changes.
The "Last updated" date at the top of this page reflects the most recent revision. We encourage you to review this policy periodically.
Privacy questions or requests?
Reach our dedicated privacy team. We respond to all requests within 30 days.
privacy@tablewealth.com