Skip to main content
SECURITY

Your data is safe.
We keep it that way.

BreadStack is built on enterprise-grade infrastructure. Your financial data is encrypted, private, and never sold.

🔒

End-to-end encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Your stack balances and transaction logs are never sent unprotected.

🏦

Supabase infrastructure

BreadStack runs on Supabase, a Postgres-based platform trusted by thousands of production apps. Row-level security ensures only you can access your data.

🚫

We never sell your data

Your financial habits are yours. BreadStack does not sell, share, or monetize your personal data. Ever. Full stop.

🔑

Google OAuth only

We use Google OAuth for sign-in. No passwords stored on our servers. Your account security is backed by Google's infrastructure.

What data we collect and why.

Stack names and balances
Stored securely to show your budget. Never shared.
Spend logs
Stored per-user with row-level security. Only you can read them.
Email address
Used for your account only. Never sold or used for ads.
Device analytics
Anonymous usage data via PostHog. No personal identifiers.

✅ BreadStack never connects to your bank

There is no Plaid integration, no bank credential storage, no read access to your accounts. You log spends manually. That is the whole model, and it means there is nothing to hack.