Legal

Privacy Policy

How NeoSpend collects, uses, and protects your personal information.

This Privacy Policy describes how personal information is collected, used, and shared when you visit and use neospend.de ("NeoSpend", "the Service"). By using NeoSpend, you consent to the data practices described in this policy.

1. Responsible Party

Nils Plützer
Email: contact@nils-pzr.eu
Website: neospend.de

2. Data Collection

We collect the following types of data when you use NeoSpend:

  • Account Data – name, email address, and profile information provided during registration.
  • Financial Data – transactions, budgets, categories, and other financial records you enter into the Service.
  • Usage Analytics – IP address, browser type, device information, pages visited, and interaction patterns to improve the Service.

3. Data Storage & Security

Your data is processed and stored securely using industry-standard encryption and security practices. Technical and organizational measures are in place to protect against unauthorized access, alteration, disclosure, or destruction of your personal data.

4. Third-Party Services

NeoSpend relies on the following third-party services to operate:

  • Vercel Inc. – hosting and deployment (San Francisco, USA)
  • Supabase – database and data storage
  • Better Auth – authentication and session management
  • Resend – transactional email delivery

These services may process data outside the EU. They comply with appropriate data protection standards such as Standard Contractual Clauses (SCCs).

5. Cookies & Sessions

NeoSpend uses essential cookies and session tokens to keep you signed in and to maintain your preferences. These are strictly necessary for the Service to function and cannot be disabled. We do not use third-party tracking cookies or advertising cookies.

6. Data Retention

We retain your personal data for as long as your account is active or as needed to provide the Service. If you delete your account, your personal data and financial records will be permanently removed within 30 days. Anonymized usage analytics may be retained for statistical purposes.

7. Your Rights (GDPR)

Under the General Data Protection Regulation (GDPR), you have the following rights:

  • Right of Access – request a copy of your personal data.
  • Right to Rectification – request correction of inaccurate or incomplete data.
  • Right to Erasure – request deletion of your personal data.
  • Right to Data Portability – request your data in a structured, machine-readable format.
  • Right to Object – object to the processing of your personal data.

To exercise any of these rights, contact us at contact@nils-pzr.eu.

8. Updates

This policy may be updated from time to time. We will notify you of significant changes via email or a notice within the Service.

Last updated: March 2026