Last updated: March 12, 2026
Privacy Policy
RewardRoute (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use the RewardRoute mobile application (the “App”).
1. Information We Collect
Account Information: When you create an account, we collect your email address and authentication credentials through Firebase Authentication. We use this solely to manage your account and enable features like data deletion.
Financial Data via Plaid: When you connect your bank accounts or credit cards, we use Plaid, Inc. (“Plaid”) to securely retrieve your transaction history, account balances, and card details. RewardRoute never receives or stores your bank login credentials — these are handled exclusively by Plaid.
Usage Data: We may collect anonymous, aggregated usage analytics (such as feature usage counts) to improve the App. This data cannot be used to identify you.
2. How Your Data Is Stored
On-device only. Your financial data — including transactions, card details, spending analysis, and reward calculations — is stored exclusively on your device. We do not upload, transmit, or store your financial data on our servers.
All on-device data is encrypted using industry-standard AES-256 encryption, with encryption keys protected by your device’s secure hardware (Android Keystore or iOS Secure Enclave).
3. How We Use Your Information
We use the information we collect to:
- Provide credit card reward optimization and spending insights
- Analyze your transactions to recommend the best card for each purchase category
- Identify missed rewards and potential savings
- Manage your account and authentication
4. Information We Do NOT Collect or Share
- We never upload your financial data to our servers
- We never sell your personal or financial information to third parties
- We never share your data with advertisers or data brokers
- We never access your bank login credentials
5. Third-Party Services
Plaid: We use Plaid to connect to your financial institutions. When you connect an account, you are subject to Plaid’s Privacy Policy. Plaid collects and processes your financial data according to their own privacy practices. We encourage you to review Plaid’s policy.
Firebase: We use Google Firebase for authentication and basic account management. Firebase processes your email address and authentication tokens in accordance with Google’s Privacy Policy.
6. Data Retention and Deletion
Your financial data exists only on your device. Uninstalling the App will remove all local data.
You can also delete your account from within the App (Settings → Delete My Account). This will:
- Revoke all Plaid access tokens, disconnecting your linked bank accounts
- Delete your account data from Firebase
- Erase all locally stored data on your device
7. Security
We take the security of your data seriously. Financial data stored on your device is encrypted with AES-256 and keys are managed by your device’s secure hardware. Communication with Plaid and Firebase uses TLS encryption. We regularly review our security practices to ensure your data remains protected.
8. Children’s Privacy
RewardRoute is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can take appropriate action.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy in the App and updating the “Last updated” date above. Your continued use of the App after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or your data, please contact us at: privacy@rewardroute.app