🔒 The short version: We do not connect to your bank or CPF account. We do not sell your data. Your portfolio data is private and only accessible by you.
When you create an account, we collect:
We do not collect sensitive personal information, government identification numbers, or any banking credentials.
Your data is stored in Supabase, a hosted PostgreSQL database with Row Level Security (RLS) enabled. RLS means database-level policies ensure you can only read and write your own data — no other user or process can access your portfolio.
Authentication is handled by Supabase Auth with Cloudflare Turnstile CAPTCHA to prevent automated account creation.
We use browser localStorage to store your dashboard preferences (widget order, dark/light mode, achievements). This data never leaves your device and is not sent to our servers.
Authentication sessions use secure cookies managed by Supabase.
Your data remains in our database for as long as your account is active. You may export your data at any time using the Export feature in the app. To request account deletion and removal of all associated data, contact us at the email address on our Contact page.
WealthVault SG uses the following third-party services:
Each of these services has its own privacy policy. We do not control how they handle data at their infrastructure level.
We may update this policy as WealthVault SG evolves. Significant changes will be communicated via the in-app announcements system. Continued use of the platform after changes constitutes acceptance of the updated policy.
For any privacy-related questions or data deletion requests, please use our contact form.