Privacy Policy

Last updated: October 12, 2025

1. Introduction

Welcome to Plounix's Privacy Policy. We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.

Plounix complies with the Philippine Data Privacy Act of 2012 (Republic Act No. 10173) and follows best practices in data protection. By using Plounix, you consent to the data practices described in this policy.

2. Information We Collect

2.1 Information You Provide

When you create an account or use Plounix, we collect:

  • Account Information: Name, email address, password (encrypted)
  • Profile Information: Age preferences, onboarding responses, user preferences (theme, language)
  • Financial Data: Income, expenses, savings goals, transaction details with categories, monthly bills, scheduled payments
  • AI Conversations: Messages exchanged with Fili (your AI financial coach), including web search queries and results
  • Learning Progress: Completed modules, reflection answers, action items, quiz responses
  • Goal Data: Financial goals, target amounts, deadlines, progress updates, savings contributions
  • Challenge Participation: Active challenges, check-ins, completion status, points earned

2.2 Automatically Collected Information

When you access Plounix, we automatically collect:

  • Usage Data: Pages visited, features used, time spent on platform, click patterns, navigation flow
  • Device Information: Browser type, operating system, device model, screen resolution, IP address
  • Log Data: Access times, error logs, performance data, API calls
  • Cookies & Local Storage: Session tokens, authentication cookies, preference cookies, onboarding status, tour completion
  • Interaction Data: Button clicks, form submissions, modal interactions, feature usage patterns

2.3 Third-Party Information

We may receive information from third-party services:

  • Web Search Results: Real-time financial information, prices, and news from web searches conducted through our AI assistant
  • Social Login: Information from social media login providers (if you choose to use them in the future)

3. How We Use Your Information

We use your personal information for the following purposes:

  • Provide Services: Deliver Fili AI financial coach with web search, expense tracking, learning modules, goal tracking, and money missions
  • Personalization: Tailor content, recommendations, and AI responses based on your financial profile and goals
  • Account Management: Create and manage your account, authenticate users, handle onboarding
  • Communication: Send updates, learning content, challenge reminders, goal progress notifications, and support responses
  • Analytics: Understand usage patterns, improve features, fix bugs, optimize user experience
  • Security: Detect fraud, prevent abuse, ensure platform security and data integrity
  • Legal Compliance: Comply with legal obligations and protect our rights
  • AI Training: Improve AI models and responses (anonymized and aggregated data only)
  • Gamification: Track challenge progress, award points, and provide achievement notifications

4. AI and Machine Learning

Plounix uses advanced AI technology (powered by OpenRouter and other providers) to deliver personalized financial guidance:

  • Your conversations with Fili (AI assistant) are processed to generate contextually relevant responses
  • We store conversation history to provide context-aware and personalized assistance
  • Your data may be sent to third-party AI providers (OpenRouter, OpenAI) for processing
  • Fili has real-time web search capabilities to provide current financial information, prices, and bank rates
  • Web search queries and results are processed to enhance AI responses
  • We implement measures to anonymize sensitive data before AI processing where possible
  • AI-generated advice is for educational purposes only, not professional financial advice

Note: Third-party AI providers have their own privacy policies. We select vendors with strong data protection practices and compliance standards.

5. Data Sharing and Disclosure

We do NOT sell your personal information. We may share your data in the following limited circumstances:

5.1 Service Providers

We work with trusted third-party service providers who assist in operating Plounix:

  • Supabase: Database, authentication, and backend services
  • OpenRouter: AI routing and language models for chatbot functionality
  • OpenAI: AI language models and processing
  • Vercel: Cloud hosting and deployment infrastructure
  • Web Search APIs: Real-time financial information and news retrieval
  • Analytics: Usage analytics and performance monitoring tools

These providers are contractually obligated to protect your data and only use it for specified purposes.

5.2 Legal Requirements

We may disclose your information if required by law, court order, or government request.

5.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the new entity.

6. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: Data is encrypted in transit (TLS/SSL) and at rest
  • Authentication: Secure password hashing (bcrypt) and JWT tokens
  • Access Controls: Role-based access, principle of least privilege
  • Monitoring: Continuous security monitoring and logging
  • Regular Updates: Security patches and vulnerability assessments
  • Data Backups: Regular backups with encryption

While we take reasonable precautions, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

7. Your Privacy Rights

Under the Philippine Data Privacy Act, you have the following rights:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Object: Object to certain types of data processing
  • Right to Data Portability: Receive your data in a structured format
  • Right to Withdraw Consent: Withdraw consent for data processing
  • Right to Lodge Complaint: File a complaint with the National Privacy Commission

To exercise these rights, contact us at privacy@plounix.com. We will respond within 30 days.

8. Data Retention

We retain your personal information for as long as necessary to:

  • Provide you with Plounix services
  • Comply with legal obligations (tax, accounting, etc.)
  • Resolve disputes and enforce agreements

When you delete your account, we will delete or anonymize your personal data within 90 days, except where retention is required by law.

9. Cookies and Tracking Technologies

Plounix uses cookies and similar technologies to:

  • Essential Cookies: Required for authentication and platform functionality
  • Analytics Cookies: Track usage patterns and improve user experience
  • Preference Cookies: Remember your settings and preferences

You can control cookies through your browser settings. Note that disabling essential cookies may affect platform functionality.

10. Children's Privacy

Plounix is designed for users aged 13 and above. If you are under 18, we recommend using Plounix with parental guidance.

We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, please contact us immediately at privacy@plounix.com.

11. International Users

Plounix is based in the Philippines. If you access our platform from outside the Philippines, your information may be transferred to, stored, and processed in the Philippines or other countries where our service providers operate. By using Plounix, you consent to such transfers.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through a prominent notice on the platform. Your continued use of Plounix after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions about this Privacy Policy or wish to exercise your privacy rights, contact us:

Data Protection Officer: privacy@plounix.com

General Support: support@plounix.com

Website: www.plounix.com

National Privacy Commission:
For complaints or concerns about data privacy, you may contact the Philippine National Privacy Commission at www.privacy.gov.ph

We are committed to protecting your privacy and handling your data responsibly.