Last updated: September 2, 2026
This Privacy Policy explains how SubVault ("we," "us," or "our") handles information when you use the SubVault iOS application ("App").
SubVault is a personal finance utility that helps you track subscriptions, credit card bill due dates, and money you lend or borrow.
By using the App, you agree to this Privacy Policy. If you do not agree, please do not use the App.
No extra SubVault account — you can use SubVault without creating an account or signing in with us.
Your data stays with you — subscription, card, and ledger information is stored on your device and, when you are signed into iCloud, synced through your private iCloud database. We do not host this data on SubVault servers.
We do not sell your personal data.
Optional Premium subscriptions are processed by Apple. We use RevenueCat only to verify subscription status.
Ask AI is optional. Core tracking works without AI. Advanced AI using your own provider key is entirely your choice.
When using SubVault, you may store the following information on your device:
Subscription details (service name, amount, billing frequency, renewal date, category, currency, notes)
Credit card bill details (issuer, card name, amount due, due date, reminder preferences, currency)
Money ledger entries (contact names, loan amounts, repayments, due dates, notes)
App preferences (default currency, sorting, haptics, onboarding completion)
Optional third-party AI provider API key (stored securely in the iOS Keychain if you choose to add one)
This information is stored on your device and, if iCloud is available, in your Apple ID’s private CloudKit database. SubVault cannot read that iCloud copy. You may also use a feature that sends data off-device (see Section 4).
For normal use of the App, we do not require or collect:
Your name
Email address
Phone number
Payment card numbers
SubVault does not operate user accounts or a backend database of your tracked items. Device-to-device sync uses Apple iCloud under your Apple ID.
If you purchase SubVault Premium, payments are processed by Apple through your Apple ID.
We never receive your payment card information.
We use RevenueCat solely to verify your subscription status. RevenueCat may receive:
Anonymous App User ID
Purchase status
Product ID
Subscription expiration
Trial status
Basic device and app metadata required for subscription validation
RevenueCat does not receive:
Subscription lists
Credit card bills
Money ledger entries
Your optional AI API key
RevenueCat Privacy Policy
https://www.revenuecat.com/privacy/
Apple Privacy Policy
https://www.apple.com/legal/privacy/
The App may store the following information locally:
First launch date
App launch count
Notification permission status
We do not use advertising SDKs or third-party analytics trackers.
We use information only to:
Provide tracking and reminder functionality
Display summaries and exports
Schedule local credit card reminders
Verify Premium subscription status
Generate optional AI insights
Improve app stability
Comply with legal obligations
We never sell your tracked financial information or use it for advertising.
Ask AI generates insights from the subscriptions you already track using on-device processing only. Depending on your device, this may include Apple Intelligence on supported devices or built-in logic built into the App.
When you use Ask AI:
• What data is used: a summary of your tracked subscriptions (service names, amounts, billing frequency, renewal dates, categories, and totals)
• Where it is processed: on your iPhone or iPad
• Who receives it: no one outside your device — we do not receive this data, and SubVault does not integrate with or send data to third-party AI services such as OpenAI
Before your first Ask AI chat, the App shows an in-app privacy notice explaining this processing. Subscription tracking works fully without using Ask AI.
The App includes 5 free Ask AI chats for all users. These chats are not a purchasable currency and are not sold in the App. You can restore them to the limit in Settings.
If you enable notifications, SubVault schedules local reminders on your device for:
Credit card bill due dates
Subscription renewals
Notifications are processed entirely by iOS.
We do not operate a push notification server for your financial information.
You can disable notifications at any time in iOS Settings.
We never sell, rent, or trade your personal information.
Limited information may only be shared:
With Apple for subscription purchases and billing
With RevenueCat for anonymous subscription validation
With your chosen AI provider if you voluntarily add your own API key and request an AI response
When legally required
Your subscriptions, credit cards, and money ledger remain stored on your device.
Your data remains on your device until you remove it.
You can:
Delete individual subscriptions
Delete credit cards
Delete money ledger entries
Delete all subscriptions in Settings
Export a plain-text summary
Remove your optional AI API key
Uninstall the App (subject to iCloud or device backups)
You can delete all app data (subscriptions, cards, and money entries) from Settings.
We do not keep a cloud copy of your financial data.
SubVault is not intended for children under 13 years of age (or the minimum age required by your country).
We do not knowingly collect children's personal information.
If you believe a child has used the App, please contact us.
SubVault stores your tracking information locally on your device.
Because we do not operate user accounts or host your subscription, credit card, or money ledger information on our servers, your financial data is generally not transferred internationally.
If you voluntarily use a third-party AI provider, any data transfer is initiated by you and governed by that provider's Privacy Policy.
Users in the UK or European Economic Area may have rights under applicable data protection laws, including rights of access, correction, deletion, restriction, and objection.
Because your information remains on your device, most of these rights can be exercised directly within the App.
We do not sell or share personal information for cross-context behavioral advertising.
California residents may contact us regarding our privacy practices.
Because your data is stored locally on your device, you maintain direct control over most of your information.
We use reasonable safeguards appropriate for a local-first application, including:
Apple's platform security
SwiftData local storage
iOS Keychain storage for optional API keys
No storage method is completely secure.
You are responsible for protecting your device with a passcode, Face ID, or other security features.
Service names, logos, and trademarks displayed in the App belong to their respective owners.
They are shown solely for identification purposes and do not imply endorsement or affiliation.
We may update this Privacy Policy from time to time.
The Last Updated date at the top of this page will always reflect the latest version.
Continued use of the App after changes constitutes acceptance of the updated Privacy Policy.
If you have any questions about this Privacy Policy or SubVault's data practices, please contact us.
Developer
Md Golam Saroar Shuvo
Email
golamsaroarshuvo31@gmail.com