Multi Pocket Account
Open MPATerms
MPA · YOUR INFORMATION

Privacy Policy

This policy explains how OD1Studios handles information when you use Multi Pocket Account (“MPA”).

Effective September 7, 2026Last updated September 23, 2026

Local first by default

You can use MPA’s Free plan without creating an account. Your balances, pocket names, budgets, recurring-payment details, and transaction notes stay in your browser’s local storage unless you choose a feature that sends information to us, such as Premium cloud sync, connected-bank syncing, AI statement import, or support.

1. Information we handle

  • On-device planning data: Main Pockets, balances, budgets, pocket names and types, goals, recurring items, transaction history, preferences, and reminders saved locally on your device.
  • Optional account and cloud data: your email address, password in hashed form, subscription status, device timezone used to schedule local-time services, and an encrypted copy of your MPA portfolio when you create an account and use Premium cloud sync.
  • Optional connected financial account data: when you choose to connect an account, MPA may receive the financial institution name, account display name and type, last four digits, current or available balances, transaction amounts, currency, descriptions, dates, posting status, connection identifiers, synchronization status, and a Stripe-generated bank-account fingerprint used only to privately detect when two MPA members connected the same account.
  • Optional statement-import data: when you upload a ZIP or select PDF statements directly for AI analysis, the PDFs are transmitted to OpenAI to extract transactions and propose pockets. MPA does not intentionally retain the uploaded ZIP or PDFs after the request, but approved extracted history and suggestions become part of your MPA portfolio.
  • Billing data: Stripe customer and subscription references, billing interval, status, and renewal information. Stripe processes your payment-card details; MPA does not store complete card numbers or security codes.
  • Support information: the summary, details, optional contact email, app version, page, and browser information you send through Feedback.
  • Anonymous product analytics: a randomly generated installation identifier, app version, plan type, feature-event names, and aggregate counts of Main Pockets, pocket types, recurring items, and uncategorized items.
  • Technical and security data: IP address, request timestamps, server logs, and security records used to operate the service, prevent abuse, and diagnose failures.

MPA analytics do not send dollar amounts, account names, pocket names, bill names, transaction descriptions, passwords, or the contents of your financial-planning records.

2. How we use information

  • Provide local planning, optional accounts, encrypted backups, restoration, and Premium features.
  • At your direction, connect eligible financial accounts, schedule transaction refreshes approximately every six hours in your device timezone, display read-only balances, import and reconcile transactions, avoid duplicate entries, categorize activity into virtual budgeting pockets, and track savings goals.
  • At your direction, send uploaded PDF statements to OpenAI to extract historical transactions and generate optional pocket suggestions for your review.
  • Authenticate accounts, administer subscriptions, and provide customer support.
  • Deliver notifications you enable for refreshed bank activity and upcoming recurring payments.
  • Measure feature adoption, active installations, reliability, and the types of pockets people use so we can improve MPA.
  • Prevent abuse, protect the service and its users, enforce our terms, and comply with law.

3. Connected financial accounts

MPA uses Stripe Financial Connections to offer optional access to balances and transactions with your permission. Stripe provides the account-linking experience and receives information directly from your financial institution. Depending on the institution, authentication may occur through the institution’s website or app, Stripe, or one of Stripe’s service providers. MPA does not receive or store your online-banking username or password.

MPA requests Stripe’s payment-method permission only to obtain a stable bank-account fingerprint. MPA stores an irreversible keyed hash of that fingerprint—not complete account or routing numbers—and uses it only to detect when separate MPA members connected the same account. A match reveals no identity and never shares data automatically: one member must send a Shared Main Pocket invitation and the other must accept. MPA does not use this permission to initiate payments, payouts, transfers, loans, or account-ownership verification.

MPA does not request account-ownership details for connected-bank syncing. Individual institutions determine data availability and freshness, so displayed balances and transactions may be delayed, incomplete, or temporarily unavailable.

Connected financial account data is used only to provide the features you request, secure and maintain the connection, comply with law, and support the service. It is not sold, used for behavioral advertising, or disclosed to unaffiliated third parties for their own marketing purposes. Stripe’s handling of information is also governed by the Stripe Privacy Policy.

4. Local storage, notifications, and installation

MPA uses browser local storage for your Free-plan data, preferences, anonymous installation identifier, queued analytics events, and sign-in token. It may use service-worker storage to support installation and updates. If you grant notification permission, MPA stores your browser's push endpoint so Premium bank-update alerts and payment reminders can arrive while the app is closed. Notifications may display a refreshed balance, a count of new transactions, and a recurring payment's name and amount on your device's lock screen. Anyone with access to the device may be able to see this information. You can disable notifications in your browser or device settings.

Clearing browser data, removing the app, changing devices, or using private browsing can erase local-only MPA data. Export a backup or use eligible Premium cloud sync if you need another copy.

5. When information is disclosed

We may disclose information to hosting, infrastructure, security, support, notification, and analytics providers working for us; to Stripe for billing and optional Financial Connections services; to OpenAI when you request AI statement analysis; to professional advisers or authorities when required by law or needed to protect rights and safety; or to a successor involved in a merger, financing, acquisition, or sale of the service. Providers may process information only as needed to perform services for us or as otherwise permitted by law.

OD1 does not sell personal information or use MPA financial-planning data for behavioral advertising.

6. Retention and deletion

Local-only data remains under your device’s storage controls. You can export it, clear it through Settings, or remove it by clearing the site’s browser data. Premium account and encrypted cloud data are retained while needed to provide your account and as required for security, billing, disputes, accounting, or law. Anonymous device analytics are removed after 45 days without a report. Aggregated, de-identified statistics may be retained longer.

Connected financial account identifiers, balance snapshots, synchronization records, and imported transactions are retained while the connection or associated MPA account remains active and as reasonably needed to provide requested features. Disconnecting an account stops future synchronization, but previously imported records may remain in MPA so your budgeting history is preserved. You may clear those records in MPA or request deletion. Stripe may retain information according to its own policy and legal obligations.

MPA processes uploaded statement ZIPs and directly selected PDFs transiently and does not intentionally save those source files. OpenAI may retain or process API inputs according to the service configuration and its applicable policies. Extracted transactions that you approve remain in your local or cloud portfolio until you remove them or delete the portfolio.

You can permanently close your MPA account from Account & Plan in Settings. Closing the account cancels its active subscription, disconnects linked financial accounts, and deletes OD1-controlled account, cloud portfolio, and imported bank data. Stripe may retain legally required billing records under its own retention obligations. You may also contact support@onlyday1.com about other deletion requests. Canceling a subscription by itself does not delete your MPA account.

7. Security

We use safeguards designed to protect information, including HTTPS connections, hashed passwords, access controls, signed server communications, restricted server configuration, rate limiting, and encryption of Premium portfolio backups at rest. Connected-bank access uses permission-limited identifiers rather than online-banking credentials, and Stripe webhook signatures are verified before synchronization events are processed. No system can guarantee absolute security. Keep your device, email account, and MPA credentials secure.

8. Your choices and rights

You may use the local Free plan without an account, decline notifications, export or clear local data, cancel Premium through the billing portal, disconnect a linked financial account, and contact us about your account. Disconnecting prevents MPA from requesting future account updates. Depending on where you live, you may also have rights to access, correct, delete, or receive a copy of personal information, or object to or restrict certain processing, subject to legal exceptions.

9. Children

MPA is intended for people age 18 and older and is not directed to children under 13. We do not knowingly collect personal information from children under 13.

10. Changes and contact

We may update this policy as MPA changes. We will revise the “Last updated” date and provide additional notice when required. Questions and privacy requests can be sent to support@onlyday1.com.

Multi Pocket Account is developed by OD1Studios.

© 2026 Only Day 1 · Developed by OD1Studios
MPATerms