Privacy

What we collect, where it lives, who can see it.

Who runs QuikSnap

QuikSnap is operated by Evan Briggs as a personal project. There is no company, no team, no investors. If you have a question about your data, email evan.briggs91@gmail.com.

What we collect

What we don't collect

Where the data lives

Everything is on a single Google Compute Engine virtual machine in us-central1-a. Bank tokens, accounts, and transactions live in /var/lib/quiksnap/quiksnap.db (a SQLite file). Disk-level encryption at rest is provided by Google Cloud by default. No data is mirrored to other servers, third-party analytics, or backup services.

Who can see your data

That's the entire list. We do not share data with anyone else.

How long we keep it

Your rights

Children

QuikSnap is not intended for anyone under 13. If you are under 13, please don't use it.

Security

The site is HTTPS-only with a Let's Encrypt certificate. Sign-in is gated by Google OAuth against an explicit allowlist — accounts that aren't on the list are turned away after Google authentication. The QuikSnap API runs only on the loopback interface; it cannot be reached from the internet without first passing through the auth gate. Bank access tokens are stored on disk and never sent to the browser.

No system is perfectly secure. If you find a vulnerability, please email evan.briggs91@gmail.com directly rather than posting it publicly.

Changes to this policy

If this policy changes, the date at the top of the page will change too. Material changes (new third parties, new data categories) will be flagged on the dashboard the next time you sign in.

Contact

Questions, requests, complaints, or just hello — evan.briggs91@gmail.com.