Effective July 30, 2026
PayDown is built local-first on purpose: the most private place for your financial data is your own device, so that's where it stays.
Everything you enter or import — account names, balances, APRs, payment schedules, payment history, notes — lives in a local database on your phone, protected by your device's built-in encryption. Deleting the app deletes this data. It is not transmitted to us.
When you paste statement text into the import screen, that text is sent to the AI provider you configure — your own Anthropic (Claude) API key, or a server you run yourself (e.g. Ollama) — solely to extract payment details. PayDown stores the extracted results on your device; the pasted text itself is not retained. If you use your own API key, it is stored in your device's secure keychain and used only to make those requests. Your provider's own privacy terms apply to the request they process.
If you choose to create an account to sync between devices or use the web dashboard, your payment data is stored encrypted at rest with row-level security so that only your account can read your rows. Sync is opt-in — local-only remains the default — and you can delete your cloud data and account at any time.
Questions or deletion requests: andrewlanecarr@gmail.com.