Version 1.1 — last updated 2026-08-21.

Who runs BudgetHQ

BudgetHQ is operated by ArkStack (sole proprietorship registered in Poland). Owner: Arkadiusz Przychocki. We are the data controller for everything described below. Reach us via privacy@budgethq.app.

What we collect

During the stealth-mode preview, BudgetHQ collects three narrow data flows. Nothing else:

  • Email address — if you subscribe to the waitlist. Stored in ListMonk on our own infrastructure (EU residency) and used only to notify you when relevant features ship.
  • Demo session token — stored in your browser local storage when you try the `?demo=1` flow. Never transmitted to us; expires when you close the tab.
  • Aggregate page-view and click events — via Umami (self-hosted on our infrastructure). Cookieless, no PII, daily-rotating hashed visitor IDs. We see counts and funnel ratios, not individuals.

Why we collect it

Waitlist email: to send you the launch announcement and meaningful release updates — not marketing newsletters. Analytics: to learn which landing-page sections people actually read, so we improve them. Demo session: to make the demo flow work without forcing you to sign up.

Legal basis (RODO / GDPR Art. 6)

Email: consent (Art. 6(1)(a)) — you actively opt in by submitting the form and confirming via the email we send. Analytics: legitimate interest (Art. 6(1)(f)) — privacy-respecting aggregate metrics with no PII, no cookies, no cross-site tracking. Demo session: contract preparation (Art. 6(1)(b)) — necessary for the demo flow you requested.

How long we keep it

Email: until you unsubscribe (one-click link in every email). Analytics: 6 months for the raw events, then we keep only aggregate counts indefinitely. Demo session: cleared when you close the tab.

Sub-processors

These third parties process some of your data on our behalf. A data-processing agreement is in place with each. We no longer describe the list as uniformly EU-only, because that is not true of all of it: Brevo, Better Stack and Sentry process within the EU/EEA, while Mistral AI is a French company whose agreement permits transfers outside the EEA under Standard Contractual Clauses. Each entry says what it receives:

  • Brevo (France) — SMTP delivery for waitlist and confirmation emails. Sees the recipient email address only.
  • Better Stack (Czechia) — public-endpoint uptime monitoring. Sees only HTTP response codes, never request bodies or your data.
  • Sentry (EU region, Frankfurt) — application error monitoring. Receives stack traces and error context; personal fields are scrubbed before the report is sent.
  • Mistral AI (France) — receipt scanning. Receives the receipt image itself, transmitted over HTTPS and not stored by us. Available on PRO plans only and used only when you scan a receipt.
  • Mistral AI (France) — spending insights. Receives category labels, monthly totals, currency and language. It does not receive merchant names, transaction descriptions or account identifiers. PRO plans only.

Your rights

Under RODO (Art. 15-22), you can exercise the following rights by emailing privacy@budgethq.app. We acknowledge within 72 hours and respond within 30 days.

  • Access (Art. 15) — request a copy of the data we hold about you.
  • Rectification (Art. 16) — correct inaccurate data.
  • Erasure (Art. 17) — request deletion of your data.
  • Restriction (Art. 18) — pause processing while a dispute is resolved.
  • Portability (Art. 20) — receive your data in a machine-readable format.
  • Object (Art. 21) — object to legitimate-interest processing (analytics).
  • Complaint — lodge a complaint with the Polish supervisory authority (UODO, uodo.gov.pl) or your local EU equivalent.

Cookies

BudgetHQ does not set any tracking cookies. Umami, which we run ourselves on our own server rather than buying from a vendor, uses a daily-rotating session-ID hash with no persistent identifier — cookieless by design. We do not use third-party trackers, advertising networks, or session replay tools. No consent banner is shown because there is nothing to consent to.

Changes to this policy

If we change this policy in a way that affects how your data is handled (new sub-processor, new data flow, change of legal basis), we will email everyone on the waitlist and bump the version number at the top of this page. We will not retroactively apply new processing without a fresh consent request when consent is the legal basis.

Contact us

For any privacy question or to exercise your rights, email us at:

privacy@budgethq.app