MoneTell
Privacy Policy
Effective 24 August 2026
Haniel Zaiine Cortes is the data controller for MoneTell. This policy explains what we collect, why we have it, who else touches it, and how to make us delete it.
What we collect
- Your WhatsApp number. It is how we identify you. There is no separate account or password.
- The text of the messages you send us. We store the original wording alongside the expense so you can see what you actually wrote.
- The expense itself. Amount, currency, category, description and date.
- Your display name, timezone, locale and default currency. Used to reply correctly and to work out where your month starts and ends.
- Subscription status and a Paddle customer reference. So we know whether your account is active.
We never receive or store your card details. We do not connect to your bank and have no access to your accounts. We do not collect your location, contacts or any other WhatsApp conversation.
Why we are allowed to hold it
We process this data to perform the contract you entered into when you started using MoneTell — we cannot record your spending without it. We keep billing records because we have a legal obligation to. We do not rely on consent for anything, so there is no consent for you to withdraw, and we do not sell your data or use it for advertising.
Your message text goes to a language model
This is the part people most want to know, so it gets its own section. To turn “coffee 3.40” into a structured expense, we send the text of that message to OpenAI, which returns the amount, currency and category. Only the message text is sent — not your phone number, name or spending history.
OpenAI processes it in the United States. We rely on their API terms, under which submissions are not used to train their models.
Who else processes your data
Your expenses are stored in a database hosted in London. Where a processor is outside the UK, the transfer is covered by the UK International Data Transfer Addendum or Standard Contractual Clauses.
How long we keep it
- While your account exists. Your expenses stay until you ask us to delete them — the point of the product is the history.
- Login links expire after 15 minutes and can only be used once.
- After deletion, your data is removed within 30 days, except billing records, which we must keep for tax purposes.
Your rights
Under UK and EU data protection law you can ask us to give you a copy of your data, correct it, delete it, hand it over in a portable format, or restrict what we do with it.
To do any of these, message us on WhatsApp or email haniel.zaiine@gmail.com. We respond within 30 days and do not charge for it.
To delete everything: send us an email from any address and ask, or message the WhatsApp number you signed up with. We will confirm once it is gone.
Complaints
If you think we have handled your data badly, tell us first — we would rather fix it. You also have the right to complain to a supervisory authority. In the United Kingdom that is the Information Commissioner’s Office at ico.org.uk.
Security
Traffic is encrypted in transit. Login links are stored only as a hash, never in a form we could use to log in as you. Database access is restricted to the service itself. No system is perfect, and we will tell you without delay if a breach affects your data.
Children
MoneTell is not intended for anyone under 16, and we do not knowingly collect their data.
Changes
If we change this policy in a way that affects you, we will tell you over WhatsApp before it takes effect.
Contact
Haniel Zaiine Cortes
Rua 89A, Lote 03, Goiania, GO 74093-150, Brazil
haniel.zaiine@gmail.com