Privacy Policy
Last updated: July 3, 2026
1. Introduction
RunwayFI LLC ("we," "our," or "us") respects your privacy. This policy explains how we collect, use, and protect your data when you use our application at runwayfi.app.
2. Information We Collect
- Account Information: Email, name (if provided), encrypted password via Supabase Auth or Google OAuth.
- Financial Data: Portfolio balances, income, expenses, contributions, and retirement targets you manually enter. We do NOT connect to bank or brokerage accounts.
- Subscription Data: Handled by Stripe. We do not store credit card numbers.
- Usage Data: Page views and interactions for UX improvement. We never send dollar amounts to analytics providers.
We practice data minimisation. We never collect your Social Security Number, government ID, or brokerage credentials.
3. How We Use Your Information
- To provide retirement projections, tax calculations, and planning tools.
- To process subscriptions and send transactional emails.
- To improve the application based on aggregated usage trends.
We do not display advertisements. We do not sell data to advertisers, data brokers, or marketing platforms. Our sole revenue source is subscription fees.
4. Security
Financial data is protected by Row Level Security (RLS) in Supabase — your data is isolated and accessible only by your authenticated session. All traffic is encrypted in transit (TLS) and routed through Cloudflare for DDoS mitigation.
5. AI Features — PlanPulse
What gets sent to OpenAI
When you use PlanPulse, your current financial planning context is sent to the OpenAI API. This includes:
- Your income, tax breakdown, and effective/marginal tax rates
- Your portfolio account balances (Traditional, Roth, Taxable, HSA)
- Your FIRE projection data (target age, savings rate, portfolio trajectory)
- Your bracket headroom and contribution progress
- The text of your PlanPulse conversation in the current session
We do NOT send:
- Your name or email address
- Your payment information
- Data from other sessions or conversations
- Your Social Security number or government ID (we never collect these)
Per OpenAI's API usage policy, data submitted via the API is not used to train models. OpenAI may retain API inputs for a limited period (up to 30 days) for abuse monitoring, after which they are deleted. See openai.com/privacy.
RunwayFI does not use your financial data or PlanPulse conversations to train any machine learning models. You can avoid PlanPulse entirely by not opening the panel — when inactive, no data is sent to OpenAI.
6. Your Data Rights
- Right to Access — Request a copy of your personal data.
- Right to Deletion — Delete your account and all data yourself, immediately, from Settings → Data & Export (or email us).
- Right to Rectification — Request correction of inaccurate data.
- Right to Data Portability — Receive your data in machine-readable format.
- Right to Opt-Out — We do not sell or share personal data with advertisers or data brokers, so there is no sale to opt out of. Analytics are pseudonymous (no name or email attached).
To exercise these rights, email support@runwayfi.app. We respond within 30 days.
7. Data Retention
Financial data is retained for the duration of your active account. When you delete your account, your data is removed from our production systems immediately. Encrypted database backups (kept for disaster recovery and legal compliance) expire on a rolling basis and are never used to restore deleted accounts.
8. Contact
All inquiries — general, privacy & data rights, and security: support@runwayfi.app