Privacy Policy — MWAH
Last updated: August 7, 2026
MWAH ("the App", "we", "us") is developed and operated by an individual, independent developer (Nikolche Miceski), not a company or corporation. This policy explains what data the App collects, why, and what happens to it. It is written to be plain-language and specific to what MWAH actually does — not a generic template.
This document is provided for transparency and to comply with Apple App Store requirements and applicable data protection law. It is not a substitute for legal advice, and nothing here should be read as a warranty broader than what is stated below.
1. Who this policy covers
MWAH is built and maintained by one person, as an independent project — not a company, not a team, not a financial institution. There is no dedicated legal, compliance, or support department behind the App. Requests are handled personally, on a best-effort basis.
2. What data we collect
| Data | Why we collect it | Where it's stored |
|---|---|---|
| Email address (or Apple/Google account identifier if you sign in that way) | To create and secure your account | Firebase Authentication (Google Cloud) |
| Name | To personalize the app (e.g. greetings) | Firestore (Google Cloud), encrypted on your device |
| Financial data you enter — envelope names, budget amounts, transaction amounts and notes, income entries | This is the core purpose of the App: tracking your own budget | Firestore (Google Cloud), and locally on your device, encrypted at rest |
| Voice audio (only if you use the microphone/dictation feature) | Converted to text using Apple's on-device or cloud Speech Recognition so you can log a transaction by talking | Processed by Apple's Speech framework; MWAH does not store audio recordings — only the resulting text is used |
| Typed/spoken AI chat messages (only if you turn AI on — see §3) | Sent to an AI language model (via our server) to interpret what you typed into a budget action (e.g. "coffee $5" → a $5 expense) | Processed by DeepSeek's API through our own server, one message at a time with no memory between requests; not stored beyond what's needed to generate the response and enforce fair-use limits |
| A unique account ID (UID) | To keep your data isolated from every other user's data | Firebase Authentication / Firestore |
| Subscription status | To determine whether you have access to Pro features | Managed by RevenueCat and Apple's App Store; only a true/false "subscribed" flag is stored on our servers, no payment card details ever pass through us |
We do not collect: your bank account, card numbers, or any banking credentials — MWAH does not connect to your bank and never asks for that information. We do not collect location data, contacts, photos, or browsing history.
We do not use advertising or analytics SDKs, and we do not track you across other apps or
websites. MWAH has no ad network integration. This is reflected in the App's official Apple
Privacy Nutrition Label (PrivacyInfo.xcprivacy), which declares zero tracking.
3. AI features — explicit consent required
MWAH includes an optional AI assistant that turns a typed or spoken message (e.g. "coffee $5") into a budget action, and it's what makes chat and voice logging possible — the fastest way to use the App. Before this feature sends anything anywhere, the App shows an in-app screen explaining exactly what will be shared and asks you to explicitly agree. Nothing — no message, no envelope data — is sent to our AI provider until you tap "Agree & continue" on that screen.
Each AI request sends only: the text you typed or said, and your envelope names, emojis, budget amounts, and balances — never your name, and never your bank details, since MWAH does not connect to any bank. Each request is handled independently — the AI has no memory of your previous messages and we do not use these requests to build any kind of ongoing profile of you; every message is processed on its own, in isolation from anyone else's.
You can decline and keep using every other part of the App fully by hand — envelopes, income, trends, manual entry all work exactly the same either way. If you decline, the chat/voice entry points show clearly that AI is off and offer a one-tap way to turn it back on; you can also switch it on or off anytime from Settings → AI Assistant.
4. Third-party services we rely on
Because MWAH is built by one person rather than a company with its own servers, it relies on established third-party infrastructure to function. Each of these processes data on our behalf, under their own privacy policies:
- Google Firebase (Authentication, Firestore database, Cloud Functions, Remote Config, App Check) — hosts your account and budget data. Google Privacy Policy
- DeepSeek API — powers the AI budget assistant, only if you turn it on (§3). Only the structured data needed to answer your request (your envelope names/amounts and what you typed) is sent, one isolated request at a time; it is not linked back to your identity by us. DeepSeek's own terms permit them to use data submitted through their API to improve their models, and we are not aware of an API-level opt-out at this time. DeepSeek Privacy Policy
- RevenueCat — manages subscription state across Apple's payment system. RevenueCat Privacy Policy
- Apple — Sign in with Apple, on-device/cloud Speech Recognition, StoreKit (In-App Purchases), and Push/App Attest infrastructure. Apple's own privacy terms apply to these.
- Google Sign-In — optional alternative sign-in method.
We do not sell your data to anyone, for any purpose, ever.
5. Your choices and rights
- Export your data: Settings → Export as CSV/JSON gives you a full copy of your budget data at any time.
- Delete your account: Settings → Delete Account permanently removes your budget data, profile, and account from our servers. This is irreversible.
- Access, correction, portability, objection, and erasure: if data-protection law that applies to you (e.g. GDPR in the EU/EEA/UK, or similar laws elsewhere) grants you these rights, you can exercise them by emailing us (below) — most of them are also self-service via the Export/Delete features above.
- California residents: you have rights under the CCPA/CPRA to know what personal information is collected and to request deletion. We do not sell personal information, so there is no "opt out of sale" needed.
6. Data retention
Your data is kept for as long as your account exists. If you delete your account, associated budget data, profile data, and rate-limit/usage counters are deleted from our servers. Some minimal records (e.g. subscription transaction records) may be retained by Apple/RevenueCat independently of us, per their own retention policies, for legal/accounting reasons outside our control.
7. Children's privacy
MWAH is not directed at children under 16, and we do not knowingly collect data from children under that age. If you believe a child has provided us with personal data, contact us and we will delete it.
8. Security — and its limits
We take reasonable, industry-standard steps to protect your data: local budget data is encrypted at rest on your device, all network traffic uses HTTPS/TLS, cloud writes are authenticated per-user and validated against Firestore security rules that deny access by default, and no client can write its own subscription status.
However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security. As an independent developer without a dedicated security team, we do our best but cannot promise the same level of assurance a large company might. If you become aware of a security issue, please report it to the email below — we take these seriously and will respond promptly.
9. Service availability — no guarantees
MWAH is provided "as is" and "as available." Being a solo-developer project, the App may experience:
- Downtime, outages, or degraded performance in the App's cloud backend, AI assistant, or sync features, including for extended periods;
- Bugs, data-sync issues, or unexpected behavior;
- Interruptions due to third-party outages (Google Firebase, DeepSeek, RevenueCat, Apple) that are entirely outside our control.
We do not guarantee uninterrupted, error-free, or continuous access to the App or any feature, and we make no commitment to any specific uptime or response time. We will make reasonable efforts to fix issues when we become aware of them, but there is no service-level agreement.
10. Not financial advice; no liability for financial outcomes
MWAH is a personal budgeting and expense-tracking tool. It does not provide financial, tax, investment, or legal advice, and nothing in the App should be interpreted as such. Any calculations, categorizations, or AI-generated summaries are provided for convenience only and may contain errors — you are responsible for reviewing and confirming every entry (which is why the App always shows a confirmation step before committing an AI-suggested action). We are not a bank, a licensed financial institution, or a fiduciary, and MWAH never connects to or accesses your actual bank accounts.
11. Limitation of liability
To the maximum extent permitted by applicable law:
- MWAH and its developer are provided/act without warranties of any kind, express or implied, including but not limited to fitness for a particular purpose, merchantability, or non-infringement;
- The developer is not liable for any indirect, incidental, special, consequential, or punitive damages — including lost data, lost income, missed bills, budgeting errors, or any financial decision made using information from the App — arising from your use of or inability to use MWAH;
- The developer's total liability arising out of or relating to the App, to the extent liability cannot be excluded under applicable law, is limited to the amount you paid for the App's subscription in the twelve (12) months preceding the claim, if any.
Nothing in this section limits any liability that cannot be excluded or limited under the mandatory consumer-protection law of your country of residence.
12. International data transfers
Because our infrastructure providers (Google, Apple, RevenueCat) operate globally, your data may be processed in countries other than your own, including the United States. These providers maintain their own data-protection safeguards (e.g. Standard Contractual Clauses for EU/EEA/UK data where applicable).
If you use the AI assistant (§3), the text you type or say and your envelope names/amounts are additionally sent to DeepSeek, whose infrastructure is based in China. Only if you turn AI on does this transfer happen; every other part of the App keeps your data with the providers listed above.
13. Governing law
This policy, and any dispute relating to the App's data practices, is governed by the laws of North Macedonia, without regard to conflict-of-law principles — except where mandatory consumer-protection law in your own country grants you additional rights that cannot be contractually waived, in which case those rights still apply.
14. Changes to this policy
We may update this policy as the App evolves. Material changes will be reflected by updating the "Last updated" date above. Continued use of the App after a change constitutes acceptance of the updated policy.
15. Contact
Questions, data requests, or security reports:
miceskinikolche@gmail.com
As a solo developer, please allow reasonable time for a response — most requests are handled within a few days.