Privacy Policy

Last updated: July 2, 2026

PocketPinch (“the app,” “we,” “us”) is an iOS app made by Ntafo Studios that tells you whether you can afford a purchase right now, based on your real bank balance and upcoming bills. This policy explains what data the app touches, where it goes, and what we do (and don't do) with it.

What we collect

  • Bank connection. When you link a bank account through Plaid, your login credentials go directly to Plaid and are never seen or stored by us. The resulting Plaid access token is stored only in your device's Keychain.
  • Transactions and balances. Account balances, transaction history, and recurring-payment data are fetched from Plaid and cached locally on your device (in a store that is encrypted at rest while your device is locked) so the app can show your latest numbers the moment it opens. This data stays on your device — it is never stored on a server we operate — and is erased when you disconnect your bank or delete the app.
  • Item photos and barcodes. If you use the camera or photo library to identify an item, that image is sent to Anthropic's Claude API for one-time identification and is not stored by us afterward. Barcode numbers are sent to UPCitemdb to look up product name and price.
  • Purchase and financial context. To generate the plain-English explanation behind your affordability score, we send Anthropic's Claude API the item name, price, and a summary of your financial situation (e.g. safe-to-spend amount, upcoming bills, spending pace). The affordability score itself is calculated entirely on your device — Claude only writes the explanation text for a score we've already determined.
  • URLs you paste. If you paste a product link, we fetch that page to read its title and price (and fall back to Claude if the page doesn't have clear metadata).

What we don't do

  • We don't have user accounts or logins, and we keep no database of your financial data — our Cloudflare proxy only relays requests to Plaid and Claude and doesn't store them. Nothing you do in the app is persisted on our servers.
  • We don't sell your data, and we don't use it for advertising or ad targeting.
  • We never see your bank login credentials — that flow happens entirely with Plaid.
  • We don't save the photos you take or upload after they've been identified.

Who we share data with

To do what the app does, request data passes through these services:

  • Plaid — bank connection, balances, transactions, and recurring payments.
  • Anthropic (Claude API) — score explanations, item photo identification, and product-link fallback lookups.
  • UPCitemdb — barcode-to-product lookups.
  • Cloudflare — hosts the proxy that relays Plaid and Claude requests from the app, and hosts this website.

Each of these services processes data under its own privacy policy and only receives what's needed to complete the specific request.

Data retention

PocketPinch keeps no server-side history of your checks, balances, or transactions — our Cloudflare proxy forwards requests to Plaid and Claude but doesn't retain their contents. Your balances, transactions, and recent checks are cached on your device so the app can display them on launch. Your Plaid access token and all cached financial data stay on your device until you disconnect your bank (which erases them) or delete the app.

Your choices

You can disconnect your bank account at any time from within the app, which removes the stored access token and erases all cached financial data from your device. You can also revoke PocketPinch's access directly from your bank or from your Plaid account settings.

Children's privacy

PocketPinch is not directed at children under 13, and we don't knowingly collect data from them.

Changes to this policy

If how we handle data changes in a meaningful way, we'll update this page and change the “Last updated” date above.

Contact

Questions about this policy or your data? Email hello@pocketpinch.ntafostudios.com.