PRIVACY POLICY · Norviq
Norviq Privacy Policy
Last updated: 2 September 2026
Norviq is a private financial planning tool operated by Fernando Correia (FC Software Studio). This policy explains what data is processed, why, who helps us process it, and the controls you have.
Data we collect
Account information (email, username, authentication identifiers, passkeys), financial data you enter or import (portfolios, holdings, watchlists, expenses, budgets, goals, tax preferences), and usage and diagnostics data used to operate and improve the App.
When subscriptions are enabled, we process billing state from RevenueCat and App Store or web billing events (subscription status, entitlement level, product and event identifiers). Raw billing-provider payloads are operational records and are not included in standard exports.
Connected financial accounts
When you connect a brokerage or bank account, Norviq accesses that data on a read-only basis. Norviq cannot place trades, move money, or modify data at your financial institution.
Interactive Brokers (IBKR): when enabled, portfolio and statement data may be ingested through the IBKR Web Service reporting feed using credentials you provide. IBKR acts as a sub-processor for that reporting data.
Bank connections use Plaid (United States) and GoCardless (European Union) as data processors. Access tokens are stored encrypted at rest. You can revoke any connection at any time from Integrations.
AI features and MCP
The in-app assistant, insight cards, and proactive tips may send limited portfolio and spending context to our AI model providers (for example OpenAI or OpenRouter) to generate a response. Those calls are paid by Norviq, subject to usage limits, and are not used to train models.
Model Context Protocol (MCP) access is user-directed: you connect your own LLM client (such as Claude, Cursor, or ChatGPT) with a Norviq personal access token. Norviq provides tools and your account data to that client; the LLM provider is chosen and billed by you, not by Norviq.
Receipt scanning
Receipt images captured for expense entry are processed transiently to extract amount, merchant, and date, and are not retained as a long-term image archive after processing completes.
Analytics and diagnostics
We use PostHog (EU hosting) for product analytics and Sentry for crash and error reporting. Analytics events describe how features are used; they do not contain your holdings, balances, or bank data. IP addresses are anonymised where the provider supports it.
Sub-processors (summary)
Infrastructure and hosting in the EU (compute, database, Redis, object storage), email and push delivery, market-data providers, billing (RevenueCat / App Store / web payments), analytics and observability (PostHog, Sentry), the IBKR reporting feed (when connected), Plaid, GoCardless, and AI model providers for in-app features.
Contact privacy@norviq.com for the current sub-processor list or a data processing agreement request.
Retention and your controls
Your data is kept while your account exists. You can disconnect financial accounts, delete individual records, export your data, or delete your entire account and associated product data from within the App. Deleted accounts are removed from backups within 30 days.
Under the GDPR you may request access, rectification, erasure, restriction, portability, or object to processing by writing to privacy@norviq.com. You can also complain to your national data-protection authority (in Portugal, the CNPD).
Contact
Privacy, export, and deletion requests: privacy@norviq.com. General support: support@norviq.org.