Privacy Policy (GDPR)

version 1.2, effective from [date]

1. Data controller

The controller is SpendBuster – Zdeněk Šavlík, ID 76633519, email: info@spendbuster.com.

2. Data we process

3. Purpose & legal basis

PurposeLegal basis
Operating and managing the accountPerformance of a contract
Notifications & communicationLegitimate interest
Marketing & ad personalizationUser consent

4. Marketing & profiling

With consent, the Service may use activity data (expense categories, etc.) to personalize ads and recommendations. Consent is optional and can be withdrawn at any time.

Giving marketing consent is not required for registration or for using the Free plan.

5. Data sharing

Data is not shared with third parties except hosting providers, payment gateways, and advertising partners bound by confidentiality agreements.

6. Retention

Data is kept for the lifetime of the account and removed 30 days after deletion. Marketing data is stored until consent is revoked.

7. User rights

Users have the right to access, rectify, erase, restrict processing, transfer their data, and withdraw consent. Requests can be sent to support@spendbuster.com.

8. Security

All communication uses HTTPS encryption and data is stored in secured databases.

9. Analytics cookies

We use analytics cookies to measure visits and improve SpendBuster. Analytics runs in anonymized mode by default. After granting consent through the cookie banner we may enable more detailed measurement that can include non-anonymized data (partial IP, Google signals). The consent is stored only in the User’s browser and can be revoked by clearing cookie preferences.

10. Final provisions

Processing follows Regulation (EU) 2016/679 (GDPR). The current version of this policy is always available on this page.