Paraco AI

Privacy Policy

AI-Powered Personal Finance Coach

Last updated: May 3, 2026

1. Overview

This Privacy Policy explains how Paraco AI ("Application"), developed and published by Kılınç Labs, collects, processes, stores, and protects your personal data.

By continuing to use the Application, you confirm that you have read and accepted this policy. If you do not accept this policy, please discontinue use of the Application.

Paraco AI is an AI-powered personal finance coaching application designed for users aged 18 and above. The Application offers natural language expense logging, automatic AI categorization, and personalized financial coaching.

2. Data Controller

3. Personal Data Collected

3.1 Data Collected During Registration

3.2 Automatically Collected Data

3.3 User-Entered Financial Data

3.4 AI Coach Interaction Data

4. Purposes of Processing

Collected data is processed solely for the following purposes:

Your data is never used for advertising and is not shared with third-party ad networks.

5. Legal Basis for Processing

6. Third-Party Service Providers

The following third-party providers are used to deliver the Application's services. These providers may access data only to the extent necessary for service delivery and are subject to their own privacy policies.

All third-party providers listed below — particularly AI service providers (Google, OpenAI) — are contractually obligated to provide protection of user data equal to or greater than that set forth in this Privacy Policy. Kılınç Labs engages only with providers that meet these security standards.

6.1 Supabase

Infrastructure and data storage provider. All user data is stored within Supabase infrastructure.

6.2 Google (Gemini API)

AI service provider used to generate personalized financial advice. The following data is transmitted to the Gemini AI service operated by Google LLC:

Your email address, payment information, and account credentials are never transmitted to Google. Transmitted data is used solely to process your request; Google's own privacy policy and Gemini API commercial terms govern how this data is retained and processed.

6.3 OpenAI

Voice synthesis service provider. Only AI-generated text content is transmitted; raw user data is not sent.

6.4 RevenueCat

Subscription and purchase management provider. User ID and App Store / Google Play purchase information are processed.

6.5 Apple and Google (Authentication)

Optional OAuth sign-in providers. Each provider's own privacy standards apply.

6.6 Expo / EAS

Application distribution infrastructure provider.

7. International Data Transfers

Supabase, Google, OpenAI, and RevenueCat servers are located in the United States. Your data is therefore transferred internationally. Necessary technical and administrative measures are taken for such transfers.

8. Data Security

9. Data Retention and Deletion

Your data is retained for as long as your account is active. Account deletion is permanent and cannot be reversed.

When "Delete Account" is activated, the following data is permanently deleted:

9.1 Revoking AI Consent

On first launch of the Application, you are asked to provide explicit consent for sharing your data with the Google Gemini AI service. The Application's core features (categorization, coach chat, insights, and weekly summary) depend on AI; therefore revoking AI consent means deleting your account. You can revoke consent using either of the following:

Once the account is deleted, data previously transmitted to Google is deleted per Google's own retention policy.

10. Notifications and Permissions

10.1 Push Notifications

If notification permission is granted, the following four independent notification types become active; each can be toggled on or off individually:

Unless permission is granted, no push token is stored and no notifications are sent.

10.2 Microphone and Speech Recognition

Microphone and speech recognition permissions are requested separately for voice expense input. Even if denied, all text-based features remain fully available.

11. Users Under 18

Paraco AI is intended for users aged 18 and above. We do not knowingly collect personal data from individuals under 18. If you believe a minor has registered, please contact paraco.ai@proton.me and the account will be deleted immediately.

12. Your Rights

You have the right to:

Submit requests to paraco.ai@proton.me. Requests will be resolved within 30 days of submission.

13. Account Security

You are responsible for providing accurate and up-to-date registration information, and for maintaining the confidentiality of your account credentials. Please notify paraco.ai@proton.me immediately if you detect unauthorized access to your account.

14. Data Accuracy

The accuracy and currency of financial data entered into the Application is your responsibility. Kılınç Labs is not liable for the outcomes of financial decisions based on AI advice generated from inaccurate or incomplete data.

15. Changes to This Policy

Kılınç Labs reserves the right to update this Privacy Policy without prior notice. Material changes will be communicated via in-app notification or registered email. Continued use of the Application after changes constitutes acceptance of the updated policy.