Legal
Privacy policy
Updated 2026-08-26 · Status: draft for owner review
This policy explains what OpenMoney ("we", operated by All Things AI, Inc.) collects, why, and what you control. It is written to be read, not skimmed. Where a practice depends on a feature you have not turned on, we say so.
1. What we collect and why
| Data | When | Why | Retention |
|---|---|---|---|
| Email address, passkey public key, session records | You create an account | Sign you in without passwords; show your device list | Until you delete your account |
| Earnings records you import (statements, receipts, screenshots, email receipts, income-API connections) | Only when you import them | Build your Earnings Passport and its analytics | Until you delete them or your account |
| Documents you upload | You upload them | Extract earnings rows; keep the original as evidence | Until you delete them or your account |
| Consent ledger entries | Every import, share, verification, export, and deletion | Show you exactly what was accessed and when | Kept with your account; exported with your data |
| Proof issuance and verification hashes | You issue or present a Proof | Let verifiers check validity and let you revoke | Hashes only; payloads are never stored server-side |
| Server logs and traces | Every request | Keep the service running and secure | 30 days |
| Product analytics | Only after you accept analytics cookies | Understand which features help | 12 months, pseudonymous |
We do not collect protected characteristics (race, religion, health, and so on) and do not infer them.
2. What we never do
- We never sell your data and never show advertising.
- We never share raw documents with a relying party. Proofs disclose only the claims you toggle on, as ranges by default.
- We never take affiliate or referral payments from platforms listed in the registry.
- We never hold your money. Payments on routed work move between payer and payee through a licensed payment processor.
3. Aggregates
If you opt in (it is off by default), your earnings records contribute to anonymized, k-anonymous aggregates (a cell is published only when at least 20 people contribute). You can see whether your data contributed, and you can opt out at any time; future aggregates exclude you within one nightly run.
4. Third parties we use
Listed on the Sub-processors page with what each one receives. Identity verification, income-data connections, and payments each show their own consent screen before anything is shared.
5. Your controls
Settings → Data lets you export everything (JSON, CSV, and your original files) and delete everything. Deletion is a hard delete completed by a job within 24 hours; a tombstone (a hash, no personal data) records that a deletion happened. Settings → Activity shows your consent ledger.
6. Security
Documents are encrypted at rest; uploads are virus-scanned and stripped of EXIF metadata; access uses scoped, expiring links. We follow the OWASP ASVS Level 2 checklist and publish our security overview.
7. Children
The service is for people 18 and older.
8. Changes and contact
We post changes here with the date. Questions: support@openmoney.ai.