We collect what it takes to keep your books, and nothing more.

This page explains what Nummio collects, why, who else touches it, and how to reach us about it.

Last updated: August 10, 2026

What we collect

When you create an account, we collect your name, email address, and the business details you enter during onboarding, such as your entity's legal name and fiscal year.

Once you're using Nummio, we collect the financial information the product exists to hold: transaction amounts, categories, vendor names, and your invoice and reimbursement records. We collect the receipt photos and forwarded receipt emails you send us, and the CSV files you upload for bank reconciliation or migration from another tool.

We do not collect anything beyond what running your books requires. We don't buy or sell data about you, and we don't collect location, browsing history, or contacts.

How we use it

We use your data to run the product: categorizing expenses, generating reports, building tax export packages, and sending the notifications you've asked for. When AI proposes a category, it looks at that transaction and your own tenant's past corrections, not anyone else's — a person on your team always makes the final call, and nothing posts to your books without that review.

We never use your financial data to train models, and we never share it with anyone outside the subprocessors listed below or across customers.

Payments

Stripe processes every payment on Nummio, both the subscription you pay us and any invoice payments your own customers send you. Card numbers are entered directly into Stripe's own checkout — they never touch Nummio's servers.

Analytics

Our marketing site and docs use cookieless, privacy-respecting analytics that collect no personal data and set no cookies, so no consent banner is needed. That analytics script never loads inside the signed-in product — what you do with your books is never measured that way.

How your data is protected

Every table that holds tenant data enforces Postgres row-level security keyed to your account, so the database itself refuses a query that crosses into another business's books. An append-only audit log records who did what, and the application has no ability to edit or delete a log row. Connections to Nummio run over TLS, and your data at rest is encrypted by our storage and database providers. Receipts you forward or upload are retained for seven years, matching standard recordkeeping requirements. See our security page for the full detail.

The subprocessors we use

A short list of the companies that process data on our behalf, and what each one does: Supabase (database, authentication, and file storage), Amazon Web Services (receipt text extraction), Anthropic (AI categorization of transactions), Inngest (background job processing), Postmark (inbound receipt email and outbound notifications), Stripe (payments, subscription billing, and — if you connect a bank — read-only bank data), Vercel (web hosting), Sentry (application error reports), and Google and Apple for the sign-in options that use them. The full, current list lives on our security page.

Your rights over your data

Your books are yours. You can export your reports as CSV or PDF, and your tax export packages, at any time your account is active. To request access to, a correction of, or deletion of your personal data, write to security@numm.io and we'll respond.

Children's privacy

Nummio is business software built for people running a company, not for children. We don't knowingly collect data from anyone under 18.

Changes to this policy

If we change this policy, we'll update the date below. We'll let account owners know before a change that meaningfully affects how your data is handled.

Contact

Questions about this policy, or about your data specifically, go to security@numm.io.