This translation is provided for information only. In the event of any discrepancy, only the French version is binding.
Privacy policy
Last updated: 25 September 2026
Personal data collected
In the course of its operation, MaCompta collects and processes the following data:
- username and password (stored in hashed form, never in plain text);
- the account's email address, where one has been provided — when signing up by email, logging in with Google, or linking one from Settings. It is used to reset the password and to send a warning before deletion for inactivity;
- account information: role, associated person, date of creation and of last login;
- financial data entered voluntarily by the user: accounts, transactions, transfers, categories, budgets, savings goals, recurring expenses;
- calendar notes attached to a date, entered by the user;
- data from the business space, when it is enabled: activities, categories, accounts, transactions, due dates, forecast budgets and reserves, and invited collaborators;
- if notifications are enabled on a device: the technical subscription address provided by the browser and the associated encryption keys, needed to send them. They do not identify the device and are deleted as soon as notifications are turned off;
- if two-factor authentication is enabled: the secret shared with the authenticator app and the backup codes, stored encrypted;
- business billing information (company name, VAT number, registered office address), only when the buyer requests an invoice in the name of their company;
- technical session data (login token, timestamp). When logging in by email address or with Google, the authentication system also records, with the session, the browser declared by the device (User-Agent), which is used to spot an unusual login. The IP address of that login, however, is not recorded: it is read only for the duration of the request, to limit repeated login attempts, and then forgotten;
- when a subscription is purchased: the email address passed to Stripe for payment, and the Stripe customer and subscription identifiers, kept to link the payment to a subscription;
- website audience measurement data: page viewed, origin of the visit (referring site and campaign parameters present in the address), device, browser and operating system family — never the version number, which would precisely serve to recognise a device —, a technical visit identifier drawn by our server, and a technical fingerprint derived from your IP address and the declared browser, recalculated every day from a secret that changes every 24 hours. The IP address itself is not kept. For actions taken inside the application, the record also carries the identifier of the household concerned — the fact, never its content; a page of the public website never carries it, even if you are logged in while reading it. Details of this measurement, how long it is kept and how to object to it are given on the Cookies page, which can be consulted from this same information page.
- if you sign up for the newsletter: your email address and the newsletters you chose (MaCompta, MaFamilly or both). Your IP address is read at the time of sign-up to limit abuse; it is never stored in the database, only held in memory for as long as that limit applies (one hour at most).
Purposes of processing
This data is processed for the following purposes:
- enabling authentication and secure access to the account;
- ensuring that the budget tracking features work;
- guaranteeing the security and integrity of the service;
- measuring the audience of the public website and the sign-up journey — how many people come, which pages they read, where they arrive from, at which step they stop — to know what works and what puts people off;
- improving the application on the basis of these measurements and the messages received;
- sending you, if you asked for it, the newsletter shared by MaCompta and MaFamilly, which announces what is new in both.
Legal bases
This processing is subject to Regulation (EU) 2016/679 (GDPR) and to the Belgian Act of 30 July 2018 on the protection of natural persons with regard to the processing of personal data. It is based on:
- the performance of the contract (access to and use of the service, including the processing of a paid subscription);
- the publisher's legitimate interest (Article 6(1)(f) GDPR), for three things and no more: the security of the service, the prevention of fraud and abuse, and the measurement of the website's audience. The latter neither reads nor writes anything on your device, is used neither for advertising nor for profiling, and relies on technical fingerprints whose key changes every 24 hours. The publisher needs to know how many people visit its website and where they give up; that knowledge requires neither knowing who you are nor following you from one week to the next. You can object to it at any time, without an account: see the Cookies page, which can be consulted from this same information page;
- the user's consent, where it is required — in particular for the newsletter: it is sent only after a sign-up confirmed by a click in the email received, and every newsletter carries an unsubscribe link that withdraws this consent in one click, without logging in.
Processors and recipients of the data
MaCompta uses the following providers, who process data on the publisher's behalf:
- OVH SAS (France/European Union): hosting of the application and the database.
- Stripe (a company established in the United States): processing of subscription payments. Stripe receives the customer's email address and payment data. When the address through which you arrived carries campaign parameters (utm_source, utm_medium, utm_campaign, utm_content, utm_term), those values are attached to the order and copied onto the subscription at Stripe, where they remain for as long as the subscription does: this is what makes it possible to know, months later, which campaign led to which subscription. They describe a campaign, not a person, and nothing else about your browsing is sent to Stripe. This transfer outside the European Union is covered by Stripe's own safeguards (standard contractual clauses of the European Commission / participation in the EU-U.S. Data Privacy Framework). MaCompta itself stores no bank card data.
- Google Ireland Limited / Google LLC (United States): only when the user chooses to log in with their Google account. Google then receives the information needed for authentication and sends us back the email address and name associated with the account. This transfer outside the European Union is covered by the European Commission's standard contractual clauses and Google's participation in the EU-U.S. Data Privacy Framework. This login method is optional: the username and password, or the email address, give access to the service without it.
- Cloudflare (Turnstile service): anti-bot check on public forms — contact, account creation and opening a demo — when it is enabled. This service sets no cookie and is not used to identify the user. To validate the check, your IP address is sent to Cloudflare together with the challenge token: this is what makes it possible to verify that the person submitting the form is the one who solved the check. This transmission takes place only when one of these three forms is submitted; it never takes place during ordinary browsing. Cloudflare, Inc. is established in the United States.
- Email provider (Zimbra): sending the confirmation email after a purchase, to the address provided at payment. Provider: OVH SAS, the same company as the hosting provider above.
- Cloudflare R2 (file storage): storage of daily backups, in case the main server is lost. The archives are encrypted before being sent (AES‑256) and the decryption key is never transmitted: Cloudflare only holds a file it cannot read, and has no access to any data in plain text. These copies are kept for 90 days and then deleted automatically.
The newsletter is run by MaFamilly, the publisher's other software, on its own server hosted by OVH. The list is shared by both products: a sign-up made on this website is passed to it directly from server to server, without going over the internet — the email address, the newsletters chosen and, for the anti-abuse limit, the IP address of the sign-up. That is why the confirmation email and the newsletters come from mafamilly.app. No other data from your MaCompta account is passed on, and no address is subscribed on the basis of an account or a purchase.
Retention period
Data is kept for as long as the account is in active use.
A newsletter subscription is kept for as long as you do not unsubscribe. After unsubscribing, the address remains recorded as unsubscribed — nothing more is sent to it — and is deleted on simple request.
An account without an ongoing subscription that has remained inactive for 65 consecutive days — that is, without any login during that period — will be deleted, along with all the data it contains (accounts, transactions, budgets, goals and associated documents).
On that date, access is closed and the account can no longer be consulted. The data is kept for a further 30 days, so that you can write to us if the deletion was a mistake, and is then permanently erased. After that period it can no longer be recovered, including by us.
Two warning emails are sent before any deletion: a first on the 55th day, a second on the 60th. They state the deletion date, and that date is the one that applies. Logging in is enough to make the account active again and restart the count from zero.
An ongoing subscription prevents any deletion for inactivity, however long you are away. As long as you are paying, your data stays.
When the user requests deletion, the data is deleted without delay. The only exception is documents linked to a purchase (invoice, proof of payment), which are kept for seven years, the period required by Belgian accounting and tax law. Deletion can be requested at any time at support@macompta.app.
Audience measurement data follows its own retention periods. Raw events — page viewed, origin, device family, the day's technical fingerprint — are deleted after 30 days by a daily automated task, and no later than the 37th day: this task refuses to erase a day whose total has not yet been calculated, and this grace period lasts seven days, after which the day is erased regardless. The record summarising a visit is kept for thirteen months, and for as long as the subscription it may have led to exists. After that, only daily totals remain, which no longer carry any fingerprint or identifier, and which are kept with no time limit. Details are given on the Cookies page, which can be consulted from this same information page.
Security measures
MaCompta implements technical measures designed to protect users' data, including:
- password hashing (PBKDF2-HMAC-SHA256, 260,000 iterations, unique salt per user);
- token-based authentication sessions, expiring automatically after 30 days without use and renewed on each visit; the token in the application's session cookie is stored only as a fingerprint, never in plain text;
- two-factor authentication (authenticator app) available for accounts that have an email address;
- a strong password requirement (at least 8 characters, with letters and numbers);
- separation of access according to each user's role (owner, editor, read-only);
- isolation of private accounts: they remain invisible to the other members of the household, except for the household owner, who administers the space.
Data encryption
Passwords are never stored in plain text: they are always hashed before being saved. Exchanges between the user's browser and the server are encrypted using HTTPS (Let's Encrypt certificate).
However, the keys that protect these copies live on the server, because backups must be made and restored without human intervention at three in the morning. This means that the publisher retains the technical ability to access the data it hosts. It does not do so in the course of normal operation, and the administration panel opens no one's accounts: it shows only the storage used and the number of records. We would rather say so than imply otherwise.
Users' rights
In accordance with the applicable personal data protection rules (in particular the GDPR), every user has the following rights over their data:
- right of access;
- right to rectification;
- right to erasure (“right to be forgotten”);
- right to restriction of processing;
- right to data portability;
- right to object;
- right to lodge a complaint with the competent supervisory authority, the Data Protection Authority (Autorité de protection des données / Gegevensbeschermingsautoriteit): Rue de la Presse 35, 1000 Brussels — dataprotectionauthority.be.
How to request access, rectification or deletion
To exercise any of these rights, the user can:
- change some information directly from the application's Settings tab (password, username);
- use the data reset function in Settings to delete all their budget data;
- send a written request to support@macompta.app for any other request (full access, account deletion, portability);
- object to the website's audience measurement without an account and without writing to us, by enabling a do-not-track signal in your browser (Do Not Track or Global Privacy Control): the server reads it and then records nothing of your browsing. Details are given on the Cookies page.
A reply will be given within one month at most of receipt of the request.
Contact details of the data controller
GL Digital (Lusty Goset) — Rue Ivienne 29, 6511 Strée, Belgium — company number 1041.371.313 — support@macompta.app
