Privacy Policy
Last updated:
1. Summary in Plain English
The full policy below is the legally complete version. Here is what it says, in the same plain language we use everywhere else:
- We collect very little: your email if you give it to us, standard device and usage data, and — only if you accept analytics cookies — anonymized traffic measurement.
- If you arrived from another member's referral link, we keep that share code in a cookie for 30 days so they get credit if you sign up. It identifies them, not you, and it goes away once it is used or expires.
- By default, your BrickScore and reading progress stay in your own browser on your own device — not transmitted to or stored on our servers. If you create an account, you can opt in to sync them to your account so they follow you across devices.
- We never see your full card number. Payments on our website are processed by our payment processor (currently Stripe); if you subscribe in a MoneyBricks app, Apple sells and bills that subscription. We keep subscription status and reference identifiers to verify purchases and provide access, as described in Section 3.
- If you sign in with Apple, we keep the email address Apple gives us, which may be a private relay address, and a token Apple issues to us. We use that token for one thing: telling Apple to end your Apple sign-in when you delete your account.
- We never receive your bank login. If your plan includes connecting an account, your credentials go directly to our aggregation provider (currently Plaid) — we get read-only account names and balances, never a username, password, or full account number. Disconnect and the balances go with it: the accounts that came from that bank are deleted, not archived.
- You choose what we notify you about. If you use a MoneyBricks app and turn notifications on, we keep the address your device gives us, what you asked to be sent, and a record of what we sent — so we never send the same thing twice. A notification never contains a money amount, your BrickScore, or anything Brix said.
- Before sending your content to Brix’s outside AI provider (currently Anthropic), we ask for permission. We send your messages and the account context described in Section 3. We do not add your name or email as profile fields, but anything you type may contain identifying information. You can delete our copy of a conversation; the provider’s separate retention is described below.
- When you ask Brix for something we have not built yet, we note the subject — not what you wrote — and the three months it happened in, so we can see how many people want the same thing. It never comes back to you: Brix does not read it and it changes nothing about your plan or your BrickScore. You can see it and delete it in Settings.
- We ask about your situation — your state, your household, your work — only in Settings, and every question is optional. It shapes what Brix says and which deadlines your calendar shows you. It never changes your BrickScore, and you can edit or delete all of it whenever you like.
- Your Money Calendar lets you enter dates only you know — when your lease or insurance renews, when your escrow statement lands. We keep the month and day, never the year, and never an amount or an account. They are yours to change or remove one at a time. If you subscribe a calendar app to your private link, that service fetches those dates from their own servers; the link is yours to reset whenever you like.
- We do not sell your personal information for money, and we never sell financial information of any kind.
- We do not use session-replay tools that record your screen, and we do not share data with data brokers.
- You can access, correct, delete, or take your data at any time — we extend these rights to every U.S. user, not only where the law requires it.
- We honor the Global Privacy Control browser signal and the cookie choices you make in our banner and in “Your Privacy Choices” in the footer.
2. Who We Are
This Privacy Policy explains how MoneyBricks LLC (“we,” “us,” “our”) collects, uses, discloses, and protects personal information when you visit https://www.moneybricks.com, use a MoneyBricks mobile app (an “App”), or otherwise interact with us (collectively, the “Site”). Everything this Policy says about the Site applies to the Apps unless it says otherwise. MoneyBricks LLC is the business/controller responsible for your personal information. If you access the Site from outside the United States, your information is processed in the United States, where privacy laws may differ from those of your jurisdiction.
3. Information We Collect
The table below lists each category of personal information we collect, where it comes from, why we collect it, and who it may be disclosed to. Named providers are current as of the “Last updated” date and may change; any replacement performs the same role under equivalent contractual limits.
| Category | Source | Purpose | Disclosed to |
|---|---|---|---|
| Contact data — email address; name if you provide it | You (waitlist, forms, support email) | Account access, requested messages, waitlist updates and support | Email delivery provider (currently Resend) |
| Sign in with Apple — if you sign in with Apple: the email address Apple gives us, which may be a private relay address Apple creates if you choose to hide your email; your name, if Apple shares it with us; and a sign-in token Apple issues to us | Apple, when you choose Sign in with Apple | Creating your account and signing you in. We send account emails to the address Apple gives us, and Apple forwards them to you. We keep the token only so that when you delete your account we can tell Apple to end your Apple sign-in, which Apple requires | Apple, which forwards email we send to a relay address, and to which we send the token only to end your sign-in when you delete your account (and again if that request fails). Not sold. Not used for advertising. |
| Communications — messages you send us and your preferences | You | Responding to you; improving support | Email service providers used to receive and respond to your message |
| Device and usage data — IP address, browser type, device identifiers, pages viewed, referring URLs, timestamps | Automatic (server logs; analytics only with your consent) | Site operation, security, and — with consent — traffic measurement | Hosting/CDN (Vercel); website analytics (Google Analytics, consent-gated); website form protection (Cloudflare Turnstile); error monitoring (Sentry), where enabled for the relevant service |
| Optional interest data — general, non-account information you volunteer (e.g., your line of work or topics you want to learn about) | You | Tailoring educational content | Not disclosed; where entered in the BrickScore, stored on your device only (see Section 4) |
| Coaching conversations — the questions you ask Brix, the answers it gives, and anything you type into the conversation | You | Providing the AI coaching feature and keeping your history so you can return to it | AI provider that generates the answers (currently Anthropic) |
| Referral code — the share code in a “?ref=” link you followed, held in a first-party cookie for 30 days and matched to your account if you sign up | Automatic (the referral link you clicked) | Crediting the member who referred you | Not disclosed; stored under your account and the referring member's |
| Payment data — payment details you give directly to the company handling the payment; the plan you are on, its status, and the purchase reference identifiers we receive, including, for a subscription you buy in an App, the transaction identifiers Apple sends us | You (at checkout on our website, or when you buy in an App); Apple (when it tells us a subscription bought in an App has renewed, lapsed, been refunded, or been canceled) | Processing payments, confirming purchases with the company that took them, managing subscription access, and reconciling records | For purchases on our website, our payment processor (currently Stripe), which collects card details directly. For purchases in an App, Apple, which sells the subscription through its App Store under its own terms and privacy policy. We never receive or store your full card number, and Apple does not share your card details or your Apple ID password with us |
| Your situation — the U.S. state and metro area you live in; your household shape (whether you have a partner, how many people depend on you and their age ranges, whether you help support other adults); your work (employment type, line of work, how steady your income is, how often you are paid); whether you rent or own; and which benefits your employer offers | You — optional questions in your Settings, answerable or skippable at any time | Making the education you get specific to your situation, and choosing which financial deadlines we show you | The AI provider that powers Brix (currently Anthropic), as part of generating your answers. Not sold. Not used for advertising. |
| Your own calendar dates — for recurring deadlines only you can know, the month and day you tell us (for example when your lease renews, when your insurance renews, or when your mortgage escrow statement arrives). We do not store the year, and we do not ask for or store amounts, account numbers, lenders, insurers or any free text | You — entered on your Money Calendar, one date at a time, and removable one at a time | Showing you a countdown to a deadline nobody publishes, and building the calendar reminder you export or subscribe to from your own calendar app | Nobody, unless you subscribe a calendar app to your private Money Calendar link — then that service (Google, Apple, Microsoft, or whichever you choose) fetches your dates from their own servers, at your instruction. You can reset the link at any time, which stops every calendar already using it. Not sold. Not used for advertising. |
| What you've asked Brix for — the subject of a request you made to Brix for something we have not built, and the three-month period it fell in. Not your words: no part of your message is kept here, no count of how many times you raised it, and no time more precise than the quarter | Automatic (worked out on our server from the message you send Brix) | Counting how many members want the same thing, so we can decide what to build next | Nobody. It is never sent to the AI provider, never shown to Brix, and never used to change anything you see. Not sold. Not used for advertising. |
| Notifications — if you use a MoneyBricks app and turn notifications on: the address your device gives us to reach it, which kind of phone it is and which language it is set to; which kinds of notification you asked for; and a record of what we sent you and when | You (your device, when you register it; your settings, when you choose what to be sent) | Sending only the notifications you asked for, in your language, and never sending the same one twice | The notification service that carries the message to your phone (Apple for an iPhone, Google for an Android phone). The notification itself never contains a money amount, your BrickScore, or anything Brix said. Not sold. Not used for advertising. |
We do not collect bank logins, Social Security numbers, bank transaction histories, or any financial-account credentials — and we do not ask for them. There are two ways balances can reach your account, and neither one gives us your credentials. You can type account names and balances in by hand. Or, if your plan includes it, you can choose to connect a financial account: your login goes directly to our aggregation provider, currently Plaid Inc., which returns read-only account names, balances and the last few digits of the account number to us — never your username, password, or full account number. Connecting is optional and reversible. When you disconnect, we tell Plaid to revoke our access and we delete the balances that came from that bank — they are removed, not archived. Anything you typed in by hand stays until you change it. None of it is ever sold.
What we ask about your situation, and why
To make guidance useful we sometimes ask about your circumstances. Every one of these is optional. You can skip any question, answer it later, change it, or delete it. Skipping costs you nothing: the lesson you are reading does not change, and Brix simply gives more general answers.
You can review and edit everything you have shared, or delete all of it at once, in your Settings.
| What we ask | Why it changes the answer |
|---|---|
| Your state | Taxes, insurance rules, renter and homeowner protections, and state-run programs differ by state |
| Your metro area | Cost of living — the same emergency fund goes much further in some places than others |
| Whether you have a partner | Whether guidance should assume one income or two |
| How many people depend on you, and their age ranges | Childcare, education timelines, and how much protection your household needs |
| Whether you help support other adults | Caregiving costs are a real part of many budgets and change what is realistic |
| Employment type (W-2, 1099, business owner, and so on) | Payroll taxes, which retirement accounts you can use, and what benefits you can get |
| Your line of work | So examples match the work you actually do |
| How steady your income is | Seasonal or variable income needs a bigger cushion than steady income |
| How often you are paid | Budgeting advice follows your actual pay cycle |
| Whether you rent or own | Renting and owning lead to different next steps |
| Benefits your employer offers | Whether an employer match or an HSA is even an option for you |
What we deliberately do not ask. We do not ask for your street address, ZIP code, county, date of birth, the names or birthdates of your children, your employer’s name, or any account number. We ask for age ranges for dependents, never dates of birth. We do not collect precise location — your state and metro area are not precise geolocation, and we do not track where your device is.
What your answers do not do. They do not change your BrickScore. Your score comes only from the BrickScore Assessment you choose to take. Nothing you tell us about your household or your job raises or lowers it.
Information from third parties
- Analytics, advertising, and social-media partners; and email service providers may share aggregate or interaction data with us.
Brix, our AI coach
Brix, our AI coaching feature, is powered by an outside AI provider (currently Anthropic). With your explicit permission, we send your question, recent messages in that conversation, and a summary from your account — your BrickScore, weakest assessment areas and Life Goals — to that provider. We do not add your name or email as profile fields or send individual assessment answers. Anything you type is sent as part of the message and may identify you. You can decline or withdraw AI-sharing permission in Settings; this stops future Brix messages to the provider. The rest of MoneyBricks remains available.
Anthropic processes the content under its commercial terms with MoneyBricks. Those terms prohibit training its models on Customer Content. MoneyBricks does not submit Brix conversations as voluntary feedback. Anthropic’s published commercial retention policy states that standard API inputs and outputs are deleted within 30 days, with exceptions for agreed or feature-specific retention, additional safety retention for certain models, legal obligations and policy enforcement. Flagged inputs and outputs may be retained for up to two years, and related safety classification scores for up to seven years. We have no zero-data-retention arrangement. These are Anthropic’s stated practices and contractual commitments, not a promise of immediate deletion by MoneyBricks.
Your conversations with Brix are stored under your account so you can return to them, protected by the same access controls as the rest of your account data. You can delete a conversation at any time with “Clear conversation” on the Brix page, which removes it from our servers. Clearing our conversation history does not itself erase copies already processed by Anthropic; its retention rules above apply.
Brix gives financial education, not individualized financial, investment, legal, or tax advice, and nothing Brix does makes an automated decision about you. Please do not type account numbers, card numbers, Social Security numbers, or passwords into Brix — it never needs them.
What you’ve asked Brix for
When you ask Brix for something we have not built, we record the subject of what you asked for and the three-month period it happened in. We do this to find out how many people want the same thing before we decide what to build next.
We do not keep what you wrote. The match happens on our own server, the moment you send the message, against a fixed list of phrases. What is saved is a short label — for example, Spending by category — and a quarter, such as Jul–Sep 2026. There is no copy of your message, no record of how many times you raised it, and no time more exact than those three months.
It never comes back to you. This is the one thing in this section that is not there to make your coaching better. Your message itself still goes to our AI provider so Brix can answer you, exactly as described above — this is only about the count we keep afterwards. That count is never sent to the provider, never shown to Brix, and never used to change your plan, your BrickScore, or anything else you see. What you asked for flows out of your conversation into a tally, and never back.
A subject and a quarter cannot describe you. This record says that you asked for a particular thing at some point in three months. It holds nothing about who you are, what you earn, what you spend, or how you are doing.
You can see all of it, and delete all of it. Everything we hold for you is listed in your Settings under “What you’ve asked Brix for”, with a button that deletes it. It is also in the data export you can download at any time. Deleting it takes you out of the count. Closing your account removes it too.
Children
The Site is intended for adults. We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us information, contact support@moneybricks.com and we will delete it.
4. Information That Stays on Your Device
By default, parts of our website are personalized without sending your information to us. Your BrickScore score and recommendations, the bricks you have read, and in-progress assessment state are stored in your browser’s local storage on your own device. Used this way, that information is not transmitted to, or stored on, our servers, and we cannot see it. Clearing your browser’s site data removes it. If you enter your email to receive your results without creating an account, only the email address is sent to us — your answers still remain on your device.
If you create an account
If you choose to create a MoneyBricks account, you can opt in to sync this progress — your BrickScore and the bricks you’ve read — to our servers so it’s available on every device you sign in from. Once synced, that information is stored under your account with our infrastructure provider (Supabase), protected by access controls that let only you read your own data. It is still never sold. Creating an account is optional; you can keep using the free BrickScore anonymously and device-only. These browser-local options describe website use. Signed-in app features read and store the account information needed for those features; they are not anonymous browser-local use.
5. How We Use Personal Information
- To operate, maintain, and improve the Site and its content;
- To send newsletters, updates, and marketing you have requested (you can opt out at any time);
- To respond to inquiries and provide customer support;
- To measure and analyze traffic, engagement, and content performance;
- To personalize content and, where permitted, deliver and measure advertising;
- To personalize the educational coaching Brix gives you, using your BrickScore, Life Goals, and the answers about your situation you chose to share;
- To choose which financial dates and deadlines we show you — for example, showing college-related deadlines to someone who told us they have teenagers at home. You can always change what the calendar shows;
- To count how many members ask for something we have not built, so we can decide what to build next — kept as a subject and a three-month period, never as your words, and never used to change what you see;
- To detect, prevent, and address security incidents, fraud, and abuse;
- To comply with legal obligations and enforce our Terms.
We do not use your personal information to make decisions that produce legal or similarly significant effects through automated profiling. We may create and use aggregated or de-identified data that can no longer reasonably be linked to you; we maintain such data in de-identified form and do not attempt to re-identify it, except as permitted by law to test whether our de-identification is effective.
6. How We Disclose Personal Information
We disclose personal information to: service providers and processors that perform functions on our behalf (hosting, analytics, email delivery, payment processing, error monitoring, advertising measurement, and AI processing for the Brix coaching feature) under contracts limiting their use; advertising and analytics partners (which may involve “sharing” for cross-context behavioral advertising as defined below); and to authorities or others when required by law, to enforce our rights, or in connection with a merger, acquisition, or sale of assets — in which case this Policy will continue to apply to your information until you are notified otherwise. We do not sell personal information for money, we never sell financial information of any kind, and we do not disclose personal information to data brokers. Some uses of cookies for targeted advertising may be considered a “sale” or “share” under certain state laws — you can opt out as described in Section 8.
Purchases in an App. If you buy a subscription in an App, Apple sells it to you through the App Store and handles the payment under Apple’s own terms and privacy policy. Apple tells us what we need to give you access and to keep our records straight: which subscription you bought, its status, and the transaction identifiers for it. We do not control how Apple handles your payment information, and we do not receive your card details from Apple.
Connected financial accounts
Because a connected account is the most sensitive thing we touch, this is what happens to that information specifically, stated separately rather than left to be assembled from the sections above.
- What we receive: account names, types, current balances, and the last digits of the account number. Not transactions, not statements, not your full account number, and never your bank username or password.
- Who receives it from us: nobody. It is not shared with advertisers, analytics partners, data brokers, or any other member. It is not used to market anything to you and it is not used to build a profile of you for anyone else.
- Who else touches it: our aggregation provider, currently Plaid, which is the party your bank actually authenticates you with, and the infrastructure providers named above that host and secure our systems on our behalf under contract.
- How long we keep it: only while the connection is live. Disconnecting deletes it (Section 10).
- How it is held: our access token to your bank is encrypted at rest, and no browser session can read it (Section 11).
- What you can do: connect nothing at all — every balance on your account can be typed in by hand — or connect and disconnect whenever you like, as often as you like.
We do not share this information with anyone for their own marketing, so there is nothing here for you to opt out of. If that ever changes, we will say so before it does, not after.
What we do not do
- No collection of financial-account credentials — a bank login goes to our aggregation provider, currently Plaid, never to us — and no ability to move your money: access is read-only;
- No sale of personal information for money;
- No affiliate links and no commissions — we are paid by your subscription, not by anyone whose product we mention (see the Affiliate Disclosure in our Disclaimers);
- No session-replay tools that record your screen or keystrokes;
- No disclosure of personal information to data brokers;
- No use of your assessment answers for advertising — they never leave your device (Section 4).
- No person and no AI model reads your Brix conversations to tally what members want — the count described in Section 3 is made automatically as you send a message, and keeps a subject and a quarter rather than anything you wrote;
7. “Sensitive” Information and Categories
We do not intentionally collect “sensitive personal information” (such as precise geolocation, government IDs, financial-account log-in credentials, race, health, or biometric data) for the purpose of inferring characteristics. If any sensitive information is collected incidentally, we use it only as permitted by law and honor applicable limitation rights.
The answers described in Section 3 are deliberately kept above the level of detail that would make them sensitive: we collect your state and metro area rather than precise location, and age ranges for dependents rather than dates of birth. The records described under “What you’ve asked Brix for” are kept at the same deliberate distance: a subject and a three-month period, never the message itself and never a precise time.
8. Your Privacy Rights
Comprehensive state privacy laws — including in California, Colorado, Connecticut, Delaware, Florida, Indiana, Iowa, Kentucky, Maryland, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Rhode Island, Tennessee, Texas, Utah, and Virginia — give residents the rights below. We extend these rights to all U.S. users as a matter of practice, regardless of the state you live in:
- Right to know / access — the categories and specific pieces of personal information we hold about you;
- Right to delete — request deletion of personal information we collected from you;
- Right to correct — request correction of inaccurate personal information;
- Right to portability — receive a copy in a portable, machine-readable format;
- Right to opt out — of the “sale” or “sharing” of personal information and of targeted/cross-context behavioral advertising;
- Right to limit — the use of any sensitive personal information;
- Right to non-discrimination — we will not deny service, charge different prices, or provide a different quality of service because you exercised a right;
- Right to appeal — if we decline your request, you may appeal (see below).
How to exercise your rights
Submit a request by emailing support@moneybricks.com or calling 949.534.6101. To verify your identity we will ask you to confirm the email address associated with your information (and, if needed, limited additional information proportional to the sensitivity of the request); we use verification information only for that purpose. We will respond within the timeframe required by law (generally 45 days, extendable once with notice). We do not charge a fee unless a request is manifestly unfounded or excessive, in which case we will explain the fee before proceeding. An authorized agent may submit a request on your behalf with proof of written authorization.
Appeals
If we decline all or part of your request, you may appeal by replying to our response or emailing support@moneybricks.com with the subject line “Privacy Appeal — [Your State]” within 45 days of our decision. We will respond to appeals within the period your state’s law requires (generally 45–60 days). If your appeal is denied, you may contact your state Attorney General; in California, you may also contact the California Privacy Protection Agency.
Opt out of sale/share and targeted advertising
You can opt out by adjusting your choices in our cookie banner or by clicking “Your Privacy Choices” in the footer. We also honor the Global Privacy Control (GPC) browser signal as a valid opt-out request where required.
9. California “Shine the Light”
California Civil Code § 1798.83 lets California residents request information about disclosures of personal information to third parties for their direct-marketing purposes. We do not share personal information with third parties for their own direct marketing. To inquire, contact support@moneybricks.com.
10. Data Retention
We retain personal information only as long as necessary for the purposes described here, to comply with legal obligations, resolve disputes, and enforce agreements. In practice:
- Waitlist and newsletter data — until you unsubscribe or ask us to delete it, or until the list is retired;
- Support communications — for up to two years after resolution, unless a dispute or legal obligation requires longer;
- Analytics data — per our analytics provider’s configured retention window;
- Server and security logs — for a limited rolling window consistent with our hosting provider’s practices;
- Coaching conversations — kept under your account until you clear them or close your account, whichever comes first;
- The answers you share about your situation — kept until you change or delete them, or until you close your account; closing your account deletes them;
- Balances from a connected bank — kept only while the connection is live. Disconnecting deletes the account rows that came from that bank in the same action, and our access token with them; closing your account does the same;
- What you've asked Brix for — kept until you delete it in your Settings or close your account; either one removes it;
- App Store purchase records — the subscription status and transaction identifiers Apple sends us, kept while your subscription is active and afterwards for as long as we are required to keep financial records, including after you close your account where the law requires it;
- Sign in with Apple — the address Apple gives us is kept until you close your account. The sign-in token is kept until you close your account, when we use it to end your Apple sign-in and then delete it;
- Device-local data (Section 4) — held on your device, under your control, until you clear your browser’s site data.
When retention ends, we delete or de-identify the information. Account data is purged after account closure, subject to legal holds.
11. Data Security
We use reasonable administrative, technical, and physical safeguards designed to protect personal information, appropriate to the volume and sensitivity of what we hold — including encryption in transit (HTTPS/TLS across the Site), access controls limiting who can reach stored contact data, and a data-minimization design that keeps assessment answers off our servers entirely (Section 4). No method of transmission or storage is completely secure, and we cannot guarantee absolute security. Please use a strong, unique password anywhere you maintain credentials, and contact us immediately at support@moneybricks.com if you suspect unauthorized activity involving your information.
12. Cookies and Tracking
For details about the cookies and similar technologies we use and how to control them, see the Cookie Policy in Part 4.
13. Do Not Track
Some browsers send “Do Not Track” signals. There is no industry standard for responding to them. We respond to recognized opt-out preference signals such as GPC as described above; otherwise we do not currently alter our practices in response to DNT signals.
14. Third-Party Links
The Site links to third-party sites and services with their own privacy practices, which we do not control. Review their policies before providing information.
15. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the revised policy with a new “Last updated” date and provide additional notice of material changes where required, such as an in-app or website notice or an email. Where consent is required for a new use or disclosure, we will obtain it before that processing; continued use alone does not supply that consent.
16. Contact Us
MoneyBricks LLC, Attn: Privacy, 8502 E Chapman Ave. #130, Orange, CA 92869. Email: support@moneybricks.com. Phone: 949.534.6101.