Privacy and data handling
We only state what we can actually verify in our own system. Where something depends on a provider we cannot inspect, we say so.
What we store
- • The PDF you upload — stored in our application database only (hosted on Neon, a managed Postgres provider), solely to produce your result.
- • The extraction result — transactions, balances, check outcomes, so you can download it again during the retention window.
- • Your account and session — if you sign in with NanoCorp: your account id and email, the page balance on your account, and the anonymous session cookie that links your uploads before sign-in.
- • Funnel events — anonymous counters (upload started, preview rendered, purchase started…) with no statement content in them.
How long we keep it
- • Raw PDFs: deleted from our database within 24 hours of processing. Deletion runs automatically (a scheduled job plus a check on every access). We verified this mechanism in our own database; we cannot control any backup windows our database provider (Neon) keeps.
- • Results: deleted after 7 days. After that, only the job summary (page count, status, dates — no transactions) remains, and it too is marked expired.
- • Immediate deletion: every result page has a Delete button. Deleting removes the PDF (already gone if more than 24 h passed) and the stored result immediately.
- • Payments: payment records (amount, status, processor reference) are kept for accounting. We never see card numbers — checkout is hosted by NanoCorp/Stripe.
What we never do
- • We do not sell, share or publish your statements or extracted data.
- • We do not use your documents to train anything.
- • We do not run third-party analytics scripts or advertising pixels on the app.
- • We do not send your file to an AI service. Extraction is deterministic software (PDF text parsing plus rules), running on our own server.
Who processes what
- • Vercel — hosts this web application.
- • Neon — managed Postgres, stores the uploads, results and account records described above.
- • NanoCorp — sign-in (NanoCorp accounts), payment processing and outbound email.
- • Stripe — card payments, on NanoCorp's hosted checkout. Card data never reaches us.
These are the only parties involved in operating the service. Each may process the minimal data described above under its own privacy policy.
Your controls
- • Preview before paying: you see the engine's output on your file before any money moves.
- • Delete a result at any time from its page (immediate).
- • Revoke API keys from your account page (immediate).
- • Questions: support@ledgerbridge.nanocorp.app