Byora (“the app”, “we”) is a personal finance manager. It exists to help you see and organise your own money — accounts, budgets, investments and trades. Your financial data belongs to you. We do not sell it, we do not show ads, and we do not run any third-party advertising or tracking analytics.
Account & identity. When you create an account we collect your email address and a password (used only to authenticate you). We do not collect your name. Mobile-number sign-in (via a one-time SMS code) may be offered in future; if enabled, your phone number would be used only to sign you in.
Financial information you enter or import. The data the app is built around — accounts and balances, transactions, budgets, recurring items, loans, goals, investments/holdings, trades, dividends, watchlists, price alerts and paper-trades. You enter this yourself, import it via CSV, or sync it from your broker.
Brokerage data (optional). If you connect a Zerodha (Kite) account, we store a Zerodha access token server-side to fetch your holdings and live/market prices. This access is read-only — the app never places, modifies or cancels orders, and never moves funds. You can disconnect at any time, which deletes the stored token.
Notifications (optional). If you enable price/reminder notifications, we store a push subscription token for your device and/or your email address to deliver them.
Technical data. Our infrastructure providers process standard request information (e.g. IP address, timestamps, error logs) to operate and secure the service. We do not use this for advertising or behavioural profiling.
We do not use your data to advertise to you, and we do not sell or rent it to anyone.
We use a small set of trusted providers (“sub-processors”) strictly to run the app. Each receives only what it needs for its function:
| Provider | Purpose | What it receives |
|---|---|---|
| Supabase | Database, authentication & backend functions | Your account and financial data (isolated per-user) |
| Vercel | App hosting & content delivery | Standard request/log data |
| Zerodha (Kite Connect) | Broker sync — holdings & market prices (only if you connect) | Your Zerodha access token; read-only requests |
| News headlines for stock research | Stock-related search terms only — no personal data | |
| Yahoo Finance | Public company fundamentals for research | Stock symbols only — no personal data |
| Resend | Sending reminder/digest emails (only if enabled) | Your email address and the reminder content |
We may also disclose information if required by law, or to protect the rights, safety and security of our users and the service.
No method of storage or transmission is 100% secure, but we work to protect your information using these safeguards.
We retain your data for as long as your account exists so the app can show your history. When you delete a record, or delete your account, the corresponding data is removed from our database.
Byora is intended for adults managing their own finances and is not directed to children under 18. We do not knowingly collect data from children.
The app’s figures — including profit/loss, tax and brokerage-charge estimates and research signals — are for your information only and are estimates, not professional, tax or investment advice. Verify important figures (for example, against your broker’s official tax statement) before acting on them.
We may update this policy from time to time. Material changes will be reflected here with a new “last updated” date. Continued use of the app after an update means you accept the revised policy.
Questions about this policy or your data? Contact us at info.kamleshverma@gmail.com.