Skip to content
Anlık Bakiyem

Privacy Policy

This policy explains how Anlık Bakiyem handles personal, device and financial information in its business financial reporting service.

Effective date: July 14, 2026

1. Scope

This policy applies to the Anlık Bakiyem mobile application, web application and related support services. The service is intended for authorized business users whose accounts are provisioned by their organization.

2. Data we process

We process identity and account data such as name, business email, organization, roles and access scope; authentication and security data such as session records, IP address, device/platform information and two-factor authentication status; financial data made available by the organization such as bank account labels, IBANs, balances and transaction records; and notification data such as push token, platform and language. Bank credentials are handled by the server and are not stored in the mobile application.

3. Why we process data

Data is used to authenticate users, enforce organization permissions, present balance and transaction reports, deliver requested notifications, protect accounts, investigate security events, provide support, maintain audit records and comply with contractual or legal obligations. We do not use personal or financial data for behavioral advertising.

4. Sharing and service providers

Data is visible only to authorized users and administrators within the relevant organization. It may be processed by infrastructure, hosting, bank connectivity and notification delivery providers only as needed to operate the service. Push delivery may involve Expo, Apple Push Notification service or Firebase Cloud Messaging. We do not sell personal or financial data and do not use advertising SDKs or cross-app tracking.

5. Security

Network traffic uses encrypted HTTPS connections. Authentication tokens are stored using the operating system's secure storage. Bank connection secrets are encrypted on the server, access is role-based, and sensitive actions and sessions are logged. No security measure eliminates every risk; suspected incidents should be reported through the support page.

6. Retention and deletion

Account and operational data is retained while the organization uses the service and as needed for security, contractual and legal obligations. After a verified deletion request is completed, the user's active profile, sessions and registered notification devices are removed or de-identified. Financial and audit records may be retained where the organization or applicable law requires it; expired backups are removed under the service's backup lifecycle.

7. Your choices and rights

Depending on applicable law, users may request access, correction, restriction, export or deletion of their personal data. Notification permission can be changed in the device settings. Organization-managed access and financial records may also require authorization from the organization's administrator. Requests can be made from the Account & Data Deletion page.

8. Children

Anlık Bakiyem is a business service and is not directed to children. We do not knowingly provision accounts for children.

9. Changes and contact

We may update this policy when the service or legal requirements change. The effective date will be revised on this page. Privacy questions can be sent to [email protected].