Monee privacy & your data

Your ledger stays with you.

Here is how the current Monee test release handles your information.

Updated 23 September 2026

Your financial records

Transactions, amounts, categories, merchant details, notes, budgets and imported messages are stored on your device. Monee does not upload this ledger to your account. Records remain until you remove them or remove the app's local storage. Your operating system and any device backup settings are separate from Monee's account service.

Optional sign-in

You can use the core app without an account. If you choose Apple or Google sign-in, the provider verifies your identity. Monee's account backend, hosted by Convex, stores a keyed hash of the provider's account identifier, rather than a profile with your name, email or photograph. This identifier still represents an account; it is not anonymous.

The app keeps a session token in secure device storage. The backend stores a hash of it, with a 30-day session expiry. Signing out revokes the current session. Sign-in does not provide cloud backup or sync for your financial records.

Messages and permissions

On iPhone, Monee processes only the messages you explicitly paste. On Android, optional SMS permissions let supported builds recognise M-Pesa financial messages locally; separate permissions control reading history and showing notifications. Raw SMS messages are not uploaded to Monee's servers. You can revoke permissions in your phone's settings.

Reports you export

Excel reports are created on your device. They leave it only when you choose a sharing or storage destination. Exported files can contain financial and personal information. The recipient or storage provider controls those copies.

Optional measurement

Measurement is disabled on the production backend for the current test release. The app has optional reporting controls, but no collection should be inferred from them while the service is disabled. We will update this information before enabling measurement. Signing in does not turn your ledger into an account-linked financial profile.

Service providers and this website

Apple or Google processes sign-in requests, Convex operates the account backend, Cloudflare serves this website and our email provider delivers support messages. These services may process network details, such as IP addresses, request times and security diagnostics, under their own policies. We do not add advertising trackers or analytics scripts to this website.

If you email us, your email address and the information you send are processed to respond to your request. Please do not include unnecessary financial details or full SMS messages.

Deleting your account

Use Settings > Account & privacy > Delete account. The app requires verification through the same provider, revokes the provider grant and removes live account and session records. Deleting an account does not erase your local ledger. Removal of live account data does not imply immediate removal from service-provider backups or security logs.

Account deletion details

Questions about your data

Contact the Monee team at hello@pesastack.co. We can help with access, correction or deletion questions. Do not send passwords, PINs or sign-in codes.