Privacy Policy
Last updated: September 2, 2026 (r1)
Sheetful ("we," "our," or "us"), operated by Vault and Compass, LLC ("Vault & Compass"), explains here how we collect, use, and protect information when you use sheetful.io, including bank connections, Google Sheets sync, and Microsoft Excel sync.
- We collect only what we need to run Sheetful and sync your spreadsheet.
- We never sell or share your bank transaction data for advertising.
- Plaid provides read-only bank access. We never see your bank login password.
- You can export or delete your data from Settings.
1. Information we collect
Account information
When you sign up with Google OAuth, we receive:
- Email address
- Name
- Google account ID
Google user data (Sheets sync)
When you connect Google Sheets, we request drive.file access only, not your entire Drive. That means Sheetful can create spreadsheets for templates and read or update spreadsheets you explicitly choose in Google's file picker (or that we create for you). We use this access solely to write your bank transactions and related budgeting data into the spreadsheet you selected.
We do not use Google user data for advertising, and we do not sell it. Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
You can revoke Sheetful's Google access anytime in your Google Account permissions or by disconnecting Google Sheets in Sheetful Settings.
Microsoft user data (Excel sync)
When you connect Microsoft Excel, we request Files.ReadWrite, User.Read, and offline_access. Microsoft's consent screen describes Files.ReadWrite as access to your files, broader than Google's drive.file per-file Sheets permission. Graph does not offer an equivalent "only files this app created" scope that works for personal OneDrive workbooks today. We use this access to create Excel workbooks in your OneDrive and to read and update the workbooks you connect to Sheetful. We do not use it to search, read, or modify unrelated files as a product feature.
You can revoke Sheetful's Microsoft access anytime in your Microsoft account permissions or by disconnecting Excel in Sheetful Settings.
Financial information
When you connect banks through Plaid, we receive:
- Transaction history (date, merchant, amount, category)
- Account balances
- Account names, types, and institution names
We do not receive or store your bank login credentials. You authenticate with your institution through Plaid.
Disconnecting a bank in Sheetful Settings removes Sheetful's connection: our access through Plaid ends and your bank stops sending data to Sheetful. Rows already written to your spreadsheet stay there. Your bank may still list the authorization under its own connected-apps settings (for example, Citi Online > Profile > Connected Apps); that listing may not appear under the Sheetful name. Changing your bank password does not remove that listing.
Payment information
Stripe processes Premium subscriptions. We receive:
- Last four digits of your card (for display)
- Billing address and subscription status
We do not store your full card number.
Usage information
We automatically collect:
- Device type, browser, and IP address
- Pages visited and features used
- Error and diagnostic logs
2. How we use your information
| Purpose | Data used |
|---|---|
| Provide the service | Account and financial data |
| Sync to your spreadsheet | Financial data; Google or Microsoft OAuth tokens for spreadsheet access |
| Process payments | Billing details via Stripe |
| Send service emails | Email address |
| Improve the product | Usage data (aggregated where possible) |
| Prevent fraud and abuse | IP address and usage patterns |
3. How we share information
Service providers
We share the minimum necessary with subprocessors that help us operate Sheetful. They may not use your data for their own marketing:
- Plaid - bank connections (Plaid policies)
- Google - sign-in and Sheets API (Google Privacy Policy)
- Microsoft - Excel / Graph (Excel users only) (Microsoft Privacy Statement)
- Stripe - payments (Stripe Privacy Policy)
- Vercel - hosting (Vercel Privacy Policy)
- Neon - database hosting (transaction data and encrypted connection tokens) (Neon Privacy Policy)
- Resend - transactional email (Resend Privacy Policy)
- Sentry - error monitoring (Sentry Privacy Policy). Error monitoring runs from the moment a page loads, before you make a cookie choice, because it is how we keep the service working. It does not record your IP address: we strip that field from every error report before it is sent. If you consent to analytics, session replay is also enabled, and it records only when an error occurs rather than sampling ordinary sessions. All on-screen text is masked and media is blocked before capture.
- PostHog - product analytics, served from our own domain; cookieless until you accept (PostHog Privacy Policy)
- Upstash - rate limiting (Upstash Privacy Policy)
Legal requirements
We may disclose information when required by law or in response to valid legal process.
Selling and sharing your data
We do not sell your personal or financial information for money, and we never sell or share your bank transaction data. Consent-gated analytics cookies (described in Section 7) may be considered 'sharing' for cross-context behavioral advertising, or a 'sale,' under some U.S. state privacy laws. Declining the cookie banner, or turning analytics off later under Cookie preferences, opts you out of that sharing.
4. Data security
- Encryption: HTTPS in transit; sensitive tokens encrypted at rest (AES-256-GCM).
- Access control: read-only bank connections through Plaid.
- Monitoring: error and security monitoring via Sentry and infrastructure logging.
5. Data retention
We retain data while your account is active. When you delete your account:
- Financial and account data is removed from active systems within 30 days
- Security and audit logs are retained up to 90 days, then deleted
- Encrypted disaster-recovery backups are overwritten within a further 7 days and are not used for other purposes
Deleting your account does not touch the spreadsheets in your Google Drive or OneDrive; the data already written there is yours and remains until you delete those files yourself.
6. Your rights
- Access: export your data from Settings
- Delete: delete your account and associated data
- Revoke: disconnect banks or spreadsheets at any time
- Opt out: unsubscribe from marketing email (service email remains while your account is active)
7. Cookies and analytics
Essential cookies
- Session cookie (NextAuth sign-in)
- CSRF protection
- Cookie preference (
sf_cookie_consent)
Analytics
We use a single analytics tool, PostHog, served from our own domain. Until you make a cookie choice, and whenever you decline (or your browser sends a Global Privacy Control signal, which we honor), PostHog runs in cookieless mode: it counts page visits in memory only, stores nothing on your device, sets no cookies, and identifies no one. Only after you click Accept do we enable full product analytics. Google Analytics is not enabled on sheetful.io.
Global Privacy Control is honored as an opt-out: when your browser sends the signal we record your choice as declined and confirm on screen that we saw it. If you then deliberately turn analytics on using the control below, that later choice stands, and the on-screen note says so.
Declining analytics does not block use of Sheetful. Separately from cookies, we record a small number of service events on our servers (for example, that a first sync completed) tied to your account; these involve no advertising, no cookies, and none of your transaction contents.
What is stored in your browser before you choose
Three things are written to your browser before you answer the cookie banner. The campaign parameters from the link you arrived on (utm values and Google click ids) are kept in session storage so we can tell which link brought you here if you later sign up; session storage is cleared when you close the tab. A short key records that you have already been shown a particular upgrade notice, so you are not shown it twice. Your cookie choice itself is kept in local storage and in a cookie, so the choice is remembered on your next visit. None of these identify you to us: the campaign parameters and the notice key die with the tab, and the cookie choice persists only so that we do not ask you again. None of them are sent anywhere. Before you accept, the only things that leave your browser are the cookieless page count described above, the analytics tool's own configuration request, and the error and performance reports our error monitoring sends (see Sentry in Section 3).
Manage your choice
You can turn optional analytics on or off for this browser at any time using the control below, the cookie banner (Accept or Decline), or Cookie preferences in the site footer.
Checking your cookie preference…
8. Children
Sheetful is not intended for users under 18. We do not knowingly collect information from children. Contact us if you believe a minor created an account.
9. Regional rights
California (CCPA)
California residents may request access, deletion, and information about our data practices. We do not sell personal information for money; for consent-gated analytics cookies that some state laws treat as sharing or a sale, see Sections 3 and 7 - declining or disabling them is the opt-out.
Other U.S. states
Residents of Colorado, Connecticut, Texas, Utah, Virginia, and other states with comprehensive privacy laws may have similar rights to access, correct, delete, and opt out of targeted advertising. Exercise them from Settings or by emailing support@sheetful.io; we respond to verified requests as those laws require. If we decline a request, you may appeal by replying to our response, and we will answer the appeal as your state's law requires.
European Economic Area (GDPR)
Where GDPR applies, you may have rights to access, portability, erasure, restriction, and objection. Contact support@sheetful.io to exercise these rights.
10. Changes
We may update this Privacy Policy by posting a revised version on this page with a new "Last updated" date. Continued use after changes constitutes acceptance.
Vault and Compass, LLC
Sheetful is published by Vault and Compass, LLC, an independent software studio. This Privacy Policy applies to Sheetful at sheetful.io (including bank sync and Google Sheets & Excel features).
Vault & Compass builds more than one product. Each has its own site and policies; links are for convenience only:
- Sheetful (this site): spreadsheet-based budgeting with bank sync to Google Sheets or Microsoft Excel.
- Prismfolio (prismfolio.io): portfolio analysis for self-directed investors.
For corporate-level privacy, security, and legal notices that apply across all Vault & Compass products, visit:
- Vault and Compass, LLC: Privacy Policy →
- Vault and Compass, LLC: Terms of Service →
- Vault and Compass, LLC: Security & Privacy →
Questions specific to Sheetful (exports, Plaid, spreadsheets, billing)? Email support@sheetful.io or use sheetful.io/contact.