Privacy & Trust

How Pennifly handles your data and your money

This page is maintained by Emvigrest AS, which operates Pennifly, to answer common security, privacy, and money-handling questions about Pennifly. It describes current, app-visible practices, not an independent audit or certification. It covers the Pennifly website, the Pennifly iOS app and the Pennifly Safari extension.

Last updated: 12 September 2026 · Data controller: Emvigrest AS · Contact: privacy@pennifly.com

What Pennifly does with money

Pennifly is a savings coach. We do not hold, custody, or move customer funds on our own books. The public app shows simulated balances so you can see how the habit works before any bank integration is in place.

A separate, invite-only test module ("Pennifly Transfer") lets a small number of authorised testers link their own bank accounts and move a chosen percentage of a skipped purchase between accounts they already own. Pennifly never touches the money, the bank does. Access requires a private code and a server-side feature flag; without both, the module is disabled.

Data we collect

  • Account details you enter: email, display name, language.
  • App activity you generate: skipped purchases, savings goals, garden progress, forum posts, feedback you choose to send.
  • Anonymous session identifiers used to keep Pennifly working when you are not signed in.
  • Basic technical logs (timestamps, error traces) needed to keep the service reliable.

We do not sell personal data and we do not run third-party ad tracking.

Where data is stored

Application data is stored in our managed backend inside the EU. Access is protected by row-level security policies so signed-in users only see their own records, and privileged operations run server-side.

Subprocessors

  • Managed backend and authentication provider (EU region).
  • Hosting and edge delivery for the web app.
  • Paddle, our Merchant of Record, for subscriptions, payment, tax compliance and invoices.
  • Optional price-comparison lookups when you ask Pennifly to find a cheaper alternative.

We add new subprocessors only when needed to run the service and keep this list current.

Payments

Paddle is the Merchant of Record for Pennifly subscriptions. Paddle processes payment details, billing, tax, invoices, cancellations and refunds under its own privacy terms. Emvigrest AS receives subscription status and transaction references, but does not store complete card details.

The Pennifly Safari extension

The extension only becomes active on shopping pages you visit, it reads the cart or checkout area of that page to see the item names, prices, sizes and colours so it can ask whether you really want the purchase and look for cheaper or second-hand options.

  • It does not read banking sites, email, passwords, form fields or payment card details, and it never records keystrokes.
  • Page content is processed to produce the suggestion you see. A short summary (item category, price, whether you skipped) is stored with your account or an anonymous session id so your garden can grow.
  • Browsing history is not collected, sold, or shared, and no third-party advertising or cross-site tracking runs inside the extension.
  • Position and “hide Pennifly here” choices are stored locally on your own device only.

Tracking and advertising

Pennifly does not track you across apps or websites owned by other companies, and we do not use Apple’s advertising identifier (IDFA), so no App Tracking Transparency prompt is shown. When you open a shop from Pennifly, the link may include an affiliate reference so the shop can pay us a commission; this passes no personal data about you.

How long we keep data

Account and savings data is kept while your account is open. Anonymous session data is kept for up to 12 months. Technical logs are kept for up to 90 days. When you delete your account, your personal data is deleted from the live database within 30 days, apart from records we must keep for accounting or legal reasons.

Children

Pennifly is intended for people aged 16 and over and is not directed at children. We do not knowingly collect data from children. If you believe a child has created an account, email us and we will remove it.

Your rights and deleting your account

You can delete your account and all associated data directly in the app under Settings → Delete my account. You can also request a copy of your data, correct it, restrict or object to processing, or ask us to delete it by contacting privacy@pennifly.com. We respond within 30 days in line with applicable data-protection law (including the GDPR where it applies), and you may complain to your national data-protection authority.

Legal basis for processing

We process your account and savings data to perform the service you asked for (contract), technical logs and security data on the basis of our legitimate interest in keeping Pennifly safe and reliable, and anything optional, such as feedback or newsletters, on the basis of your consent, which you can withdraw at any time.

Changes to this policy

If we make a material change we will update the date at the top of this page and, where the change affects how your data is used, tell you inside the app before it takes effect.

Security contact

Found a vulnerability? Please email security@pennifly.com. Do not test against other users' accounts.

What this page is not

Pennifly is not a bank and does not provide investment advice. Names like "Pennifly fund" describe a savings destination inside your own bank , not a fund operated by Pennifly. We do not claim SOC 2, ISO, or PSD2 licensing. Any future licensed activity will be delivered via a regulated partner and disclosed here first.

← Back to home