Privacy Policy

Last updated: March 1, 2026

TL;DR:We collect only what's necessary to provide NooAccountant services. We never sell your data. We never use your financial data for our own analysis. Desktop users' data never leaves their device. You can export or delete your data any time.

1. Information We Collect

We collect information you provide directly (name, email, payment details), information generated by your use of NooAccountant (transaction data, usage logs, feature interactions), and technical data (IP address, browser type, device information) for security and debugging purposes. For NooAccountant Desktop users: your financial data is stored exclusively on your device. We only collect anonymized usage telemetry (e.g., "report viewed") unless you opt out. For NooAccountant Online users: your financial data is stored on our encrypted servers in the United States. We process this data solely to provide you with the accounting services you requested.

2. How We Use Your Information

We use your information to provide, maintain, and improve NooAccountant services; process payments; send transactional emails (receipts, alerts); provide customer support; and comply with legal obligations. We do NOT: sell your data to third parties, use your financial data to train AI models without explicit consent, share your data with advertisers, or allow third-party access to your financial records without your authorization.

3. Data Security

We implement industry-leading security practices including AES-256 encryption at rest, TLS 1.3 for all data in transit, SOC 2 Type II certified infrastructure, regular third-party penetration testing, multi-factor authentication requirements, and immutable audit logging. Our security team is available at security@nooaccountant.com. We maintain a responsible disclosure program and will respond to security reports within 24 hours.

4. Data Retention

We retain your account data for as long as your account is active and for 7 years after account closure to comply with accounting regulations. You may request immediate deletion of non-legally-required data at any time. Upon account closure, we will permanently delete your financial data within 30 days, after providing you with a complete data export.

5. Your Rights (GDPR / CCPA)

Depending on your jurisdiction, you have the right to: access your personal data, correct inaccurate data, request deletion, restrict processing, data portability, and object to processing. To exercise these rights, contact privacy@nooaccountant.com. We will respond within 30 days. There is no cost for standard requests.

6. Cookies

We use essential cookies (required for authentication and security), functional cookies (to remember your preferences), and analytics cookies (to understand how NooAccountant is used — anonymized). We do not use advertising or tracking cookies. You can manage cookie preferences in your account settings.

7. Third-Party Services

NooAccountant integrates with third-party services including Stripe (payment processing), Plaid (bank connections), and AWS (infrastructure). Each of these services has their own privacy policy. We only share the minimum data necessary for these integrations to function. We do not allow third-party analytics, advertising, or social tracking on our platform.

8. International Transfers

NooAccountant is based in the United States. If you access our services from outside the US, your data may be transferred to and processed in the US. We use Standard Contractual Clauses for transfers from the EU/EEA and are Privacy Shield certified.

9. Contact Us

For privacy-related questions, contact: • Email: privacy@nooaccountant.com • Mail: NooAccountant Inc., 548 Market St Suite 12200, San Francisco, CA 94104 • Data Protection Officer: dpo@nooaccountant.com We take privacy concerns seriously and respond to all inquiries within 2 business days.