Privacy Policy
Last updated: March 2026
1. Overview
PdfToLedger ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights. By using our service, you agree to the practices described here.
2. Your Bank Statement Files
When you upload a bank statement PDF, it is transmitted to our server for processing. We process the file in memory and discard it immediately after extracting transactions. We do not store, log, index, or retain any portion of your uploaded files. No financial transaction data is ever written to disk or a database.
3. Information We Collect
We collect minimal information to operate the service:
- Email address: Only if you choose to create a free account. Used solely to identify your account and send a one-time sign-in code.
- Usage counts: We track how many extractions you perform per day (a simple counter). We do not store what was in those extractions.
- IP address: Used for rate limiting. Not stored beyond the current day.
- Analytics: We use Vercel Analytics for anonymous, aggregate page view statistics.
4. Accounts & Sessions
If you create an account, we store your email address and a daily extraction counter. We use a session cookie (httpOnly, secure) to keep you signed in for up to 7 days. We do not store passwords — authentication is done via a one-time code sent to your email.
5. Third-Party Services
- Vercel — Hosting and analytics.
- Upstash Redis — Rate limit counters and session tokens. No financial data stored.
6. Data Retention
Rate limit counters and IP data are automatically deleted after 24 hours. Session tokens expire after 7 days. Account data (email address) is retained until you request deletion.
7. Children's Privacy
PdfToLedger is not directed at children under the age of 13.
8. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated date.
9. Contact
Questions? Email us at support@pdftoledger.com