Privacy Policy

Last updated: April 2026

LGPD Compliant
E2E Encryption
Read Only
Firebase Secure

Konta takes the privacy and security of your financial data very seriously. This policy describes how we collect, use, store, and protect your information in compliance with the General Data Protection Law (LGPD - Law No. 13.709/2018).

1Data We Collect

Identification Data

We use Firebase Authentication with Apple ID login. We only collect your unique identifier (Apple ID) and, optionally, your name and email if you choose to share them.

Financial Data

We store your transactions, categories, goals, and projections in Firebase Firestore. This data is manually entered by you or imported via Open Finance integration.

2Open Finance Integration

Konta offers integration with financial institutions like C6 Bank, Inter, and PicPay through partners regulated by the Central Bank of Brazil:

  • Pluggy and Belvo - certified Open Finance platforms

"Read-Only" Access: Konta never has access to your banking credentials. The connection is made directly between you and your bank, and our access is limited exclusively to viewing balances and statements. No financial transactions can be made.

3Purpose of Data Use

Your data is used exclusively for:

  • Displaying personalized expense charts and reports;
  • Generating financial projections based on your history;
  • Organizing and categorizing your transactions;
  • Tracking your financial goals progress;
  • Syncing data between devices linked to your account.

We do not sell, share, or monetize your financial data in any way.

4Data Security

We implement rigorous technical and organizational measures to protect your data:

End-to-End Encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256)

Firebase Infrastructure

Secure Google Cloud servers with SOC 1, SOC 2, SOC 3, and ISO 27001 certifications

Secure Authentication

Apple ID login with two-factor authentication

5Your Rights (LGPD)

In compliance with LGPD, you have the right to:

  • Access: Request a copy of all data we have about you;
  • Correction: Correct incomplete or outdated data;
  • Deletion: Delete your account and all associated data;
  • Portability: Export your data in a structured format;
  • Revocation: Revoke consent for Open Finance integration at any time.

6Data Deletion

Complete Deletion Guaranteed

You can delete your account and all data stored on our servers at any time, directly through the app at Settings → Account → Delete Account. Deletion is permanent and irreversible.

7Data Retention

We keep your data while your account is active. After account deletion, all data is permanently removed from our servers within 30 days.

8Changes to This Policy

This Privacy Policy may be updated periodically. We will notify you of significant changes through the app. We recommend reviewing this page regularly.

Data Protection Officer (DPO)

To exercise your rights or clarify questions about this policy, contact:

Email: privacidade@konta.app