OmerraBack to Omerra ↗
YOUR FINANCIAL LIFE IS PERSONAL

Privacy & data.

A clear explanation of what Omerra handles and the controls available in the current early-access product.

Updated October 9, 2026

The public website

The interactive product preview uses illustrative sample data. It does not connect to a bank, request financial credentials, or display a member’s financial records. You do not need an account to explore it.

The website is hosted on Vercel. Hosting providers process technical request information to deliver and protect the service. The page also requests typography from Google Fonts. No advertising pixels or marketing analytics have been added to this website.

Your workspace

Omerra stores the financial records you add to your household: accounts and balances, transactions and notes, categories, budgets, recurring bills, debt plans, savings and investment goals, and workspace preferences. Your signed-in identity includes your name, email address, and an account identifier used to associate you with a household.

This information is used to display your finances, calculate budget and cash estimates, recognize transaction patterns, provide historical suggestions, and support the features you choose. The application does not include a data-selling or advertising integration.

Sharing and access

Financial records require authenticated workspace access. Members of the same household can view and edit its records. Personal and business workspaces organize finances within that household; they are not separate access-permission boundaries between household members.

Web access outside the original workspace and the iPhone companion use a one-time connection code. Codes expire after ten minutes and can be redeemed once. Device sessions expire after thirty days and can be revoked from Settings. The web session uses an HTTP-only cookie, and the native app stores its session in iOS Keychain.

Receipt photos and purchase details

When you choose a receipt image, text recognition runs in your browser. Scanner code and English language data download from jsDelivr using version-pinned Tesseract packages; the receipt image is not sent to that service. Only after you review and save do the compressed receipt photo and item details upload to your authenticated household.

Receipt photos and item breakdowns are encrypted on the backend and can be viewed by household members. Remove a receipt from its transaction to delete the active saved copy, or remove the transaction to remove its receipt. Receipt photos and details are stored separately and are not included in transaction CSV or household JSON exports. Recovery copies follow the infrastructure retention window described below.

Bank connections

Live bank linking is not enabled in this early-access release. Omerra’s Plaid integration is designed to obtain account information, balances, and available transaction history from accounts you authorize. It can use supported liability information to help track credit commitments. Omerra does not initiate payments or investment trades.

When live linking is enabled, the authorization flow is provided through Plaid. Bank access tokens are stored encrypted on the backend, rather than included in browser or iPhone application code. Plaid’s own handling of information is explained in its End User Privacy Policy.

Protecting your information

Public connections use HTTPS. Financial workspace records and bank access tokens use authenticated AES-256-GCM encryption with a dedicated backend secret. Cloudflare also encrypts the underlying D1 database and its stored recovery data at rest. Identity, membership, authentication, and session records are protected by database encryption and access controls. Business access can be granted separately from shared personal finances.

Sign-in, verification, password recovery, and connection-code attempts are rate limited. Direct accounts use verified email addresses, hashed passwords, and optional authenticator-based two-factor authentication. Session credentials are stored as hashes on the backend, and signing out of the web workspace revokes that session. Server secrets are kept out of the browser and application source.

Downloaded JSON and CSV exports are readable files, not encrypted backups. Store them on an encrypted device and delete copies you no longer need. Infrastructure recovery copies may remain within the hosting provider’s retention window after active records are replaced or removed.

Your controls

  • Review and edit your transactions, categories, goals, and plans.
  • Download a household backup or export transactions from the web app.
  • Review and revoke connected devices in Settings.
  • Remove household members if you are the household owner.
  • When banking is enabled, disconnect a bank connection you created.

Disconnecting a bank stops the connection; it does not automatically erase previously imported records. Imported history remains in your household until removed. Resetting a budget replaces its financial records but does not delete the sign-in identity or household membership.

Service infrastructure

Omerra uses Vercel to host the public website and web interface, and OpenAI Sites with Cloudflare infrastructure for authenticated application services and storage. These services process information as needed to operate the app. When direct registration opens, Resend will deliver account verification and password-reset emails using your email address and single-use links. Email reminders are not currently enabled; phone-calendar exports are downloaded only when you request them.

Access controls reduce the risk of unauthorized access, but no system can promise absolute security. Keep connection codes private and only enter them into Omerra.

Current availability

The public preview is available to everyone. The financial workspace is currently limited to approved early-access members, and open enrollment is not available yet. Privacy information will be updated as the service and its account-management options expand.

Return to the product →