Last updated:
Privacy Policy
This Privacy Policy explains how Atlas handles personal information, including Google user data accessed through Gmail.
1. Introduction
Atlas is a personal finance visibility application that helps users understand transaction activity imported from connected email accounts. This policy describes what information we collect, how we use it, and the choices available to you.
2. Information Atlas collects
Depending on how you use Atlas, we may collect:
- Google account profile information, such as name, email address, and profile image
- Gmail OAuth authorisation information needed to maintain connected access
- Transaction-alert email metadata and content required to identify financial transactions
- Transactions you enter manually
- Categories, settings, preferences, and account activity
- Technical information needed for security and service operation
3. Google user data
Atlas requests the Gmail read-only scope. Atlas accesses Gmail only to:
- Search for likely financial transaction-alert emails
- Read relevant messages
- Extract transaction information such as amount, currency, institution, description, and transaction date
- Prevent duplicate imports
- Show import status and processing errors
Atlas does not:
- Send emails
- Delete emails
- Modify emails
- Create drafts
- Read emails for advertising
- Sell Google user data
- Use Google user data to train general-purpose machine-learning or artificial-intelligence models
Any categorisation model trained from a user’s transaction history is used only to improve that user’s transaction categorisation and is not shared across unrelated users unless this policy is updated and appropriate consent is obtained.
4. How information is used
We use information to:
- Provide Atlas functionality
- Import and categorise transactions
- Calculate financial summaries
- Improve categorisation based on user corrections
- Maintain account security
- Diagnose errors
- Communicate important service information
5. Storage of email data
Atlas may store:
- Relevant email metadata needed for import and deduplication
- Extracted plain-text transaction-alert content used for parsing
- Parsed transaction information shown in your dashboard
Atlas aims to avoid retaining unrelated email content that is not needed for transaction import or service operation.
Imported data is retained only as necessary to provide the service, support reprocessing, prevent duplicates, and comply with applicable obligations.
6. Machine learning and automated categorisation
Atlas may use:
- Rule-based categorisation
- Similarity matching
- Small classification models trained from a user’s confirmed transaction history
Automated suggestions may be incorrect. Users can review and correct categories. Corrections improve future suggestions for that user. Atlas does not use this functionality to make lending, employment, insurance, credit, or investment decisions.
8. Google API Services User Data Policy
Atlas’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
9. Data security
We apply reasonable safeguards intended to protect information, including encryption in transit, protection of OAuth credentials, restricted service access, database access controls, and audit and monitoring measures. No method of transmission or storage is completely secure, and we cannot guarantee that data will never be accessed, disclosed, altered, or destroyed improperly.
10. Data retention and deletion
Users can disconnect Gmail. Disconnecting stops future imports from that account. Users can request deletion of imported emails, transactions, categorisation history, and account information.
Some records may be retained temporarily for security, backup, fraud prevention, or legal requirements. Deletion requests will be completed within 30 days of verification, except where a longer period is required by law.
11. User rights and choices
Depending on applicable law and product features, you may be able to:
- Access information we hold about you
- Correct information
- Export data
- Disconnect integrations
- Revoke Google access through Atlas or Google Account settings
- Delete an account
- Request data deletion
In-product privacy controls are available in Settings → Privacy when you are signed in.
12. Children’s privacy
Atlas is not intended for children under the applicable minimum age in your jurisdiction. We do not knowingly collect personal information from children for whom the service is not intended.
13. Changes to the Privacy Policy
We may update this Privacy Policy from time to time. Material changes will be indicated by updating the “Last updated” date on this page and, where appropriate, by additional notice such as an in-app message or email.
14. Contact
Questions about this Privacy Policy or data requests can be sent to:
- Privacy email: oluwaferanmiadetunji+atlasprivacy@gmail.com
- Support email: oluwaferanmiadetunji+atlassupport@gmail.com
- Operator: Adetunji Oluwaferanmi
- Country of operation: Nigeria