Fintra · Legal

Privacy Policy

Last updated: August 13, 2026

Fintra is an AI finance and back-office platform for businesses. This policy explains what information we collect, how and why we use it (including our use of AI), the third-party providers who process data on our behalf, how long we keep it, and the choices and rights you have.

A note on this document. This policy is a good-faith, plain-English template intended to reflect how Fintra operates. It is not legal advice. Please have qualified counsel review and tailor it to your jurisdiction and final data practices before you rely on it.

1. Who we are

This policy applies to the Fintra website at fintrahub.com and to the Fintra application and APIs (together, the “Service”). In this policy, “Fintra,” “we,” “us,” and “our” refer to the company that operates Fintra. If you use Fintra on behalf of an organization, that organization is the controller of the business data it puts into the Service, and we process that data as its processor under our customer agreement.

2. Information we collect

We collect the following categories of information:

  • Account & contact information you give us — such as your name, work email, company name, role, and phone number — when you sign up, request a demo, or contact us.
  • Business & financial data you provide or import to use the Service — for example general-ledger entries, invoices, bills, transactions, payroll and employee records, expenses, uploaded documents and receipts, and data connected from systems you link (such as accounting software or a bank connection).
  • Payment information when you subscribe. Card and bank details are collected and processed by our payment providers; we do not store full card numbers on our own systems.
  • Usage, device & log data — such as IP address, browser type, pages viewed, actions taken, and timestamps — collected automatically through cookies and similar technologies to operate, secure, and improve the Service.
  • Communications — the content of messages you send us for support, sales, or feedback.

We do not seek to collect sensitive personal information from visitors to the marketing site. Business data you place in the Service may include personal information about your own employees, customers, or vendors; you are responsible for having a lawful basis to provide it to us for processing.

3. How we use your information

  • To provide, operate, secure, maintain, and improve the Service;
  • To process transactions, subscriptions, and payments;
  • To authenticate users, prevent fraud and abuse, and enforce our terms and access controls;
  • To respond to your requests and provide support;
  • To send service, security, and (where permitted) marketing communications, which you can opt out of;
  • To comply with legal, tax, accounting, and regulatory obligations.

4. How we use artificial intelligence (AI)

Fintra includes AI-assisted features — such as the finance copilot, AI agents, and document/scribe tools. When you use these features, the relevant inputs (which may include your business data) are processed to generate an output. Some AI features are powered by third-party AI model providers that process data on our behalf under contract. What you should know:

  • Human-in-the-loop. AI outputs are draft-first and governed. Money-moving or high-impact actions are surfaced for review and require a person to approve them — the AI proposes, it does not silently execute.
  • No training on your data by default. We use AI providers on terms under which your business data submitted through their APIs is not used to train their foundation models. We do not sell your data, and we do not use your business data to train models for other customers.
  • AI is not professional advice. AI outputs may be incomplete or incorrect and are not a substitute for professional accounting, tax, legal, or financial advice.

5. Third-party providers (subprocessors)

We share data with vendors who process it on our behalf to run the Service, under contracts that require them to protect it and use it only to provide their service to us. These fall into the following categories:

PurposeType of provider
Cloud hosting, database & authenticationApplication and database hosting providers
Payments & billingPayment processors
Bank connectivity & money movementFinancial-data aggregation and payment-rail providers
AI featuresAI model providers
Email, support & analyticsCommunication and product-analytics providers

We maintain a current list of the specific subprocessors we use and will make it available on request at hello@fintrahub.com. We may also disclose information if required by law, to protect rights and safety, or in connection with a corporate transaction (with notice where required). We do not sell your personal information.

6. Cookies & tracking

We use strictly necessary cookies to run the site and keep you signed in, and — where permitted — analytics cookies to understand usage and improve the Service. You can control cookies through your browser settings; disabling some cookies may affect functionality.

7. How long we keep data, and deleting it

We keep personal and business data for as long as your account is active and as needed to provide the Service, then retain it only as required to meet legal, tax, accounting, and audit obligations, resolve disputes, and enforce our agreements.

You can make a privacy request. Submit a request — access, correction, export, deletion, restriction, or objection — from the Privacy & Data page inside your Fintra account, or by emailing hello@fintrahub.com. We verify the request, then handle each category of record according to what the law allows: personal data that can be removed is deleted or anonymized, while records we are required to keep — for example accounting, tax, payroll, and audit records — are retained for the period the law requires, with the reason recorded. A deletion request therefore does not erase records we must keep by law; we will tell you which records those are and why. We aim to complete verified requests within a reasonable period (typically within 30 days).

8. Your rights

Depending on where you live (for example under the GDPR or the CCPA/CPRA), you may have the right to access, correct, delete, or port your personal information, to object to or restrict certain processing, and to opt out of the “sale” or “sharing” of personal information. We do not sell personal information. To exercise a right, contact hello@fintrahub.com; we will not discriminate against you for doing so.

9. Security

We protect data with encryption in transit and at rest, role-based access controls, tenant isolation, and audit logging, and we govern automated and AI-driven actions through our own controls layer. We map our controls to recognized frameworks such as SOC 2; where a certification or attestation is in progress rather than complete, we say so and do not overstate our status. No method of transmission or storage is perfectly secure.

10. International transfers, children, and changes

We may process and store information in the United States and other countries; where required we use appropriate safeguards for cross-border transfers. The Service is intended for businesses and is not directed to children under 16, and we do not knowingly collect their personal information. We may update this policy from time to time; we will post the new version here and update the “Last updated” date, and for material changes we will provide additional notice where required.

11. Contact

Questions or requests: hello@fintrahub.com. See also our Terms of Service and Trust Center.

Questions about this policy? Email hello@fintrahub.com or see our Trust Center.