About

Data Protection

Last updated: 2026-04-06

1. Introduction

OÜ Digitechnology operates OÜ Digitechnology as a privacy-conscious personal finance service. This page summarizes the data protection principles we follow when building, deploying, and supporting the application.

2. Core Principles
  • Data minimization:
  • Purpose limitation:
  • Integrity and confidentiality:
  • Transparency:
3. Data Protection by Design
  • Financial data is encrypted in the browser before server-side storage.
  • The application uses a small cookie surface and limited browser storage.
  • Operational secrets remain on the server and are not exposed to the browser.
  • Documentation and deployment scripts are updated together so the legal pages stay aligned with the shipped behavior.
4. Processing Overview
ActivityLegal BasisRetention
Account managementAccount lifetime + deletion window
Encrypted finance storageAccount lifetime + deletion window
Security monitoringUp to 90 days in normal cases
Support and complianceAs required for the request or law
5. Processors and Transfers

We use infrastructure and service providers for hosting, security, backups, and email delivery where needed.

We prefer EU/EEA hosting for primary production systems. If a provider processes limited technical data outside the EU/EEA, we rely on appropriate safeguards such as Standard Contractual Clauses and keep this documentation up to date.

6. Data Subject Rights

You can request access, correction, deletion, portability, restriction, or objection by contacting [email protected].

You can also use in-app self-service features where available, including data export and account deletion.

7. Breach Handling

We maintain operational procedures for identifying, containing, investigating, and documenting security incidents. Where the law requires, affected users and supervisory authorities are notified without undue delay.

8. Contact Information

Controller:

OÜ Digitechnology, Address: Seebi tn 1-703, Tallinn, Harjumaa, Email: [email protected], Website: OÜ Digitechnology

9. Supervisory Authority

If you believe your rights have been infringed, you may also contact the Estonian supervisory authority:

Authority: Andmekaitse Inspektsioon (AKI), Address: Tatari 39, 10134 Tallinn, Email: [email protected], Website: https://www.aki.ee