Our Privacy Promise

Your financial data is personal. We treat it that way.

"We don't need your sensitive data. We explicitly tell you: don't enter SSNs, account numbers, or bank passwords. Broad strokes are all the math requires. We'll never ask for more because we don't need more."

"No ad network. No analytics that phone home. No data brokers. Your Your trust is what sustains us."

"Your data is always exportable. If we ever shut down, you leave with everything."

What we store

Only what is necessary to make Enuf work for you:

  • Email address (for login and account recovery)
  • Hashed password (we never see your actual password)
  • FIRE inputs (savings, allocation, monthly contributions, etc.)
  • Chat history (your conversations with the AI advisor)
  • Realities (your saved financial scenarios)

What we DON'T store

We go out of our way to avoid collecting things we don't need:

  • Real names (optional – we never require it)
  • Financial account numbers or balances
  • Social Security numbers or government IDs
  • Bank or brokerage passwords
  • Browsing behavior or page-tracking analytics
  • Data from any external financial account

Third-party services

We use three external services. Each has a narrow, specific purpose:

SendGrid

Transactional email only

Used for account verification and password reset emails. We send only what you request – no marketing emails unless you opt in.

AI providers (Anthropic / OpenAI)

Chat intelligence only

We send only your financial parameters (savings rate, target age, allocation) to AI models – never PII like your name, email, or account numbers. Conversations are not used to train models.

Account deletion

One click. Immediate. No hoops to jump through.

When you delete your account, we permanently erase your email, FIRE inputs, chat history, Realities, and all associated data. Before deleting, you can export everything in JSON or CSV format so you leave with your data.

Legal compliance

The human promise comes first, but we also meet the legal bar:

  • GDPR – Right to access, rectify, and erase your data. Data export available anytime.
  • CCPA – We do not sell personal information. Period. California residents can request full data disclosure at any time.
  • No data brokers – We have zero relationships with data aggregators, advertisers, or information resellers.

Questions about our privacy practices? Contact us at [email protected]