Privacy Policy

Last updated: June 2026  ·  dontjustwork / WealthVault SG

🔒 The short version: We do not connect to your bank or CPF account. We do not sell your data. Your portfolio data is private and only accessible by you.

What data we collect

When you create an account, we collect:

We do not collect sensitive personal information, government identification numbers, or any banking credentials.

How we store your data

Your data is stored in Supabase, a hosted PostgreSQL database with Row Level Security (RLS) enabled. RLS means database-level policies ensure you can only read and write your own data — no other user or process can access your portfolio.

Authentication is handled by Supabase Auth with Cloudflare Turnstile CAPTCHA to prevent automated account creation.

What we do NOT do

Cookies and local storage

We use browser localStorage to store your dashboard preferences (widget order, dark/light mode, achievements). This data never leaves your device and is not sent to our servers.

Authentication sessions use secure cookies managed by Supabase.

Data retention and deletion

Your data remains in our database for as long as your account is active. You may export your data at any time using the Export feature in the app. To request account deletion and removal of all associated data, contact us at the email address on our Contact page.

Third-party services

WealthVault SG uses the following third-party services:

Each of these services has its own privacy policy. We do not control how they handle data at their infrastructure level.

Changes to this policy

We may update this policy as WealthVault SG evolves. Significant changes will be communicated via the in-app announcements system. Continued use of the platform after changes constitutes acceptance of the updated policy.

Contact

For any privacy-related questions or data deletion requests, please use our contact form.