Privacy Policy
Last updated: July 24, 2026 · Replaces the June 3, 2026 version.
Changes from the previous version (June 3, 2026)
- Coverage of the Android (Google Play) launch.
- New processor Google (Google Sign-In, Google Play billing and Firebase Cloud Messaging for push notifications on Android).
- New processor Expo (push notification delivery service, before APNs/FCM).
- Updated market price provider list: Marketstack, Financial Times, CoinGecko, Twelve Data and Yahoo Finance.
- Receipt scanning: available on iOS and Android. Text recognition runs entirely on your device (Apple Vision on iOS, Google ML Kit on Android) and the image never leaves your phone.
- The push notification token now covers iOS and Android.
- New section 10b: automatic expense capture with Google Pay on Android (optional feature, based on the notification access permission and limited to Google Wallet).
1. Data Controller
- Controller: Iván Sevilla Ruano
- Tax ID (NIF): 06287255K
- Trade name: Neto App
- Contact email: hello@netoapp.es
- Website: netoapp.es
- Mobile app: Neto, Finances & Wealth (iOS and Android; iOS Bundle ID: com.createinc.e3ed99440d084fe9869c816f65118368; [TODO legal review: Android applicationId / Google Play package name])
- Current version: 2.0 (published on the App Store on June 3, 2026)
2. Personal data we collect
We collect only the data strictly necessary to provide the service:
| Data | Purpose | Source |
|---|---|---|
| Email address | Registration, authentication and identification | Provided by the user |
| Alias / nickname | Personalisation and in-app greeting | Provided by the user (mandatory from v2.0; optional for legacy accounts) |
| Password (argon2 hash) | Secure authentication, never stored in plain text | Provided by the user |
| Language, currency, timezone | User experience preferences | Configured by the user |
| Daily budget (optional) | Spending control feature | Configured by the user |
| Visual theme (light/dark/auto) | Interface preference | Configured by the user |
| Anonymised IP (/24 IPv4, /48 IPv6) | Security and rate limiting, not linked to account | HTTP connection (anonymised automatically) |
| Push notification token (iOS and Android) | Service and local notifications | Apple Push Notification Service (APNs) on iOS or Firebase Cloud Messaging (FCM) on Android, delivered through the Expo service |
| Declarative financial data | Core personal finance and wealth management service | Entered manually by the user |
| Receipt metadata (amount, date, merchant) | Quick expense logging by scanning the receipt (iOS and Android) | Text recognition runs entirely on your device and offline: Apple Vision on iOS and Google ML Kit on Android. The receipt photo is never sent to Neto's servers or to any third party; only the resulting transaction you confirm (amount, date, merchant) is stored. |
| Session token | Single-session enforcement | Generated automatically on the server |
| Expense detected from Google Pay payments (amount, merchant, date) | Automatic expense logging (Android only, optional feature) | Google Wallet app notifications, only if you enable the feature and grant the permission. The notification content is NOT stored (see section 10b). |
What we do NOT collect
- We do not connect to or access real bank accounts. All data is declarative.
- We do not collect credit card or payment credentials (payments are handled by Apple or Google, depending on the platform).
- We do not collect biometric data (Face ID/Touch ID on iOS or the system biometrics on Android; the app does not access that data).
- We do not collect geolocation data.
- We do not access device contacts.
- We do not upload receipt images to any server: text recognition is 100% on-device on both platforms (Apple Vision on iOS, Google ML Kit on Android).
- We do not use Google Analytics, Sentry, or profiling tools. To measure website traffic we use Umami, cookieless analytics that stores no identifiers or personal data and cannot track you across sites. On Android we use Firebase Cloud Messaging (FCM) solely to deliver push notifications, not for analytics or profiling.
- We do not build advertising profiles.
3. Processing purposes
- Manage registration, authentication and access to the app via email and password.
- Provide the personal finance management, wealth tracking and investment analysis service.
- Manage Neto PRO subscriptions via the Apple App Store (iOS) or Google Play (Android), depending on the platform, and RevenueCat.
- Send transactional communications: email verification, password reset, security alerts, legal changes.
- Retrieve public market price data from external providers (no personal data is sent to those providers).
- Automatically log your Google Pay expenses on Android, only if you enable that feature and grant notification access (see section 10b).
- Maintain service security via IP-based rate limiting (anonymised).
4. Legal basis (GDPR)
Contract performance (art. 6.1.b GDPR)
To provide the service you agreed to when creating your account.
Legitimate interest (art. 6.1.f GDPR)
For service security and rate limiting, balanced against your rights.
Legal obligation (art. 6.1.c GDPR)
When required to comply with applicable legal requirements.
Consent (art. 6.1.a GDPR)
For non-essential communications, where applicable.
5. Data retention
- We retain your data while your account remains active.
- You may request full account and data deletion at any time from within the app or by emailing hello@netoapp.es. See the detailed steps in Delete your account and data.
- After a deletion request, we will erase your data within 30 days, unless a legal retention obligation applies.
- PRO subscription data is retained for the minimum period required by Spanish tax and commercial law (at least 5 years).
- Anonymised IPs used for rate limiting are automatically deleted after 24 hours.
6. Recipients and data processors
We do not sell, rent, or share your personal data with third parties for commercial purposes. Our data processors are:
| Provider | Role | Location / Safeguard |
|---|---|---|
| Render Services Inc. | Backend & database | Frankfurt, Germany (EEA), intra-EEA transfer |
| Hostinger International Ltd. | Web hosting & corporate email @netoapp.es | Vilnius, Lithuania (EEA), intra-EEA transfer |
| Resend Inc. | Transactional email (verification, password reset) | USA, Standard Contractual Clauses (SCC 2021/914) |
| RevenueCat Inc. | PRO subscription management | USA, Standard Contractual Clauses (SCC 2021/914) |
| Apple Distribution International Ltd. | App Store payments (iOS), Apple Push Notifications (APNs), Keychain | Ireland (EEA), intra-EEA transfer |
| Google Ireland Ltd. / Google LLC | Google Sign-In (Android), Google Play billing (Android) and Firebase Cloud Messaging (FCM, push notification delivery on Android) | Ireland (EU) and USA, Standard Contractual Clauses (SCC 2021/914) for transfers to the USA |
| Expo Inc. | Push notification delivery service (exp.host): receives the token and notification content before forwarding to APNs (iOS) or FCM (Android) | USA, Standard Contractual Clauses (SCC 2021/914) |
| Marketstack | Stock and ETF prices | [TODO legal review: Marketstack entity and location]. Only receives the asset symbol, NO personal data. |
| Financial Times | Fund net asset value (NAV) by ISIN | United Kingdom, EU adequacy decision. Only receives the fund ISIN, NO personal data. |
| Twelve Data (WSS Group Inc.) | Fallback prices for listed securities & FX | USA, SCC 2021/914. Only receives asset symbol, NO personal data. |
| CoinGecko | Cryptocurrency prices | Singapore, SCC 2021/914. Only receives asset symbol, NO personal data. |
| Yahoo Finance | Fallback public reference prices | USA, public queries; only the asset symbol, no personal data sent. |
| Competent authorities | Legal obligation or court order | n/d |
7. International data transfers
The core service (backend and database) is hosted within the European Union (Frankfurt, Germany) and does not involve any transfer outside the EEA.
For providers located outside the EEA (Resend, RevenueCat, Google, Expo and Twelve Data), transfers are covered by the Standard Contractual Clauses (SCC) approved by the European Commission via Implementing Decision 2021/914 of 4 June 2021. You may request a copy of the applicable safeguards by writing to hello@netoapp.es.
The market price providers (Marketstack, Financial Times, CoinGecko, Twelve Data and Yahoo Finance) only receive the symbol or ISIN of the asset being queried (e.g. "AAPL" or a fund ISIN), with no personal user data.
8. Your rights (GDPR)
Access
Know what data we hold about you.
Rectification
Correct inaccurate or incomplete data.
Erasure
Request deletion of your data ('right to be forgotten').
Objection
Object to processing in certain circumstances.
Restriction
Restrict processing while a complaint is resolved.
Portability
Receive your data in a structured, machine-readable format.
To exercise your rights, email us at hello@netoapp.es, including proof of identity. We will respond within one month (extendable by two further months for complex cases).
If you believe your data is being processed unlawfully, you may lodge a complaint with the Spanish Data Protection Agency (AEPD) at www.aepd.es.
9. Cookies and similar technologies
This website does not use cookies. None of ours and none from third parties: there are no session, authentication, analytics or advertising cookies, and we store nothing in your browser.
To measure traffic we use Umami, cookieless analytics that writes nothing to your device and creates no identifier that could follow you across sites. That is why we do not ask for prior consent to set cookies: there are none to set.
The one exception is the /download/ page, the link some creators use to recommend the app: it generates a random identifier and saves it to your browser's localStorage so the same click doesn't get counted twice if you reload the page before the store opens. It isn't a cookie, it doesn't identify who you are, it goes nowhere except that one click record, and it disappears if you clear your browser data.
The mobile app does store information on your phone in order to work (your transactions, your categories, your settings), but that is the app's own storage, not web cookies, and it is covered in the sections above.
10. Apple App Tracking Transparency (ATT)
Neto App does NOT track users across third-party apps or websites under Apple's App Tracking Transparency (ATT) framework. We do not request the AppTrackingTransparency permission.
Web cookies are strictly technical and limited to what is necessary for the service to function, no advertising or cross-site tracking purposes.
10b. Automatic expense capture with Google Pay (Android only)
On Android devices, Neto offers an optional feature, switched off by default, called «Add expenses automatically», which logs your Google Pay payments so you don't have to enter them manually.
Exactly how it works
- Only if you turn it on. It requires two actions from you: enabling «Add expenses automatically» in Neto's Settings and granting the Android system «Notification access» permission.
- It only reads Google Wallet notifications. Neto filters payment notifications from the Google Wallet app and does not read notifications from any other app on your device.
- What it extracts: only the payment amountmerchant and date, in order to create an expense in your account.
- What is NOT stored: the notification content is never stored. Only the resulting expense (amount, merchant, date) is kept, exactly as if you had entered it by hand.
- Where it goes: that expense travels encrypted over HTTPS/TLS to Neto's backend (Render, Frankfurt, European Union), like any other transaction of yours.
- Who it is shared with: nobody. It is not sold or disclosed to third parties, and this feature introduces no new data processor beyond those already listed in section 6.
- How to turn it off: at any time, from Neto's Settings or by revoking the notification access permission in your Android settings. Once disabled, Neto stops reading notifications immediately.
- Deletion: expenses created by this feature are erased together with the rest of your data when you delete your account, or individually from within the app.
Legal basis: your explicit consent (art. 6.1.a GDPR), given when you enable the feature and grant the permission; you can withdraw it at any time without affecting the rest of the service. This feature is not available on iOS.
11. Security measures
- Passwords are stored using argon2 hashing, never in plain text.
- All communications are encrypted via HTTPS/TLS.
- The backend and database are hosted within the European Union (Frankfurt, Germany, Render Inc.). Core service data does not leave the EEA.
- The authentication token is stored securely and bound to the device: on iOS, in Apple Keychain with the
kSecAttrAccessibleAfterFirstUnlockThisDeviceOnlyattribute, preventing it from entering iCloud backups; on Android, in the system secure storage (Android Keystore). [TODO legal review: confirm the secure storage mechanism on Android] - The app applies a neutral overlay in the app switcher so account balances are not visible in multitasking.
- IPs are anonymised before any storage (/24 for IPv4, /48 for IPv6).
- Sessions have time-based expiration and single-session enforcement.
In the event of a security incident affecting your personal data, we will notify you as required by GDPR articles 33 and 34.
12. Minors
Neto App is not intended for users under 16 years of age. We do not knowingly collect data from minors. If you are a parent or guardian and believe a minor has provided us with personal data, please contact us at hello@netoapp.es and we will promptly delete it.
13. Marketing communications
We only send transactional communications (email verification, password reset, security alerts, material legal changes). Occasionally, we may send a single communication announcing a major version release, considered essential service information and grounded in contract performance (art. 6.1.b GDPR). We do not run email marketing campaigns or newsletters without your explicit consent.
14. Changes to this policy
We may update this Privacy Policy to reflect legal, technical, or service changes. Substantial changes will be communicated through the app or by email with reasonable advance notice. The last update date is always shown at the top of this document.
15. Contact
For any privacy or data protection queries: hello@netoapp.es