legal · privacy

Privacy Policy

sidekick is built on the premise that your money is yours and your data is yours. this policy explains exactly what we collect, how we use it, and what rights you have. no legalese traps. just the truth.

effective dateApril 18, 2026
last updatedApril 18, 2026
operatorSidekick Labs Inc.
contacthello@sidekick.money
scopeericjordan.design/sidekick and all Sidekick SMS services

1. who we are

Sidekick is a financial intelligence service operated by Sidekick Labs Inc. We provide daily spending summaries, AI-generated financial insights, and SMS-based money coaching through our Daily Dollar Dispatch.

Sidekick is not a bank, financial advisor, broker-dealer, or licensed financial planner. We provide informational tools only and do not constitute financial, investment, tax, or legal advice.

2. information we collect

We collect only what we need to provide the service.

phone numberRequired for SMS delivery. Used solely to send your Daily Dollar Dispatch and account alerts.
email addressOptional. Used to send weekly summaries if opted in. Never shared with third parties.
financial account dataRead-only transaction data via Plaid Technologies, Inc. We see merchant names, amounts, dates, and categories. We do not see or store account numbers, routing numbers, or banking credentials.
usage dataHow you interact with our SMS service. Used to improve message quality.
device & technical dataIP address, browser type. Standard server logs retained for 90 days.

We do not collect Social Security numbers, government IDs, passwords, or any data unnecessary to provide the service.

3. how we use your information

Deliver your Daily Dollar Dispatch and any SMS alerts you've opted into

Generate AI-powered spending insights personalized to your transaction history

Respond to questions you send via SMS to the Sidekick agent

Detect and prevent fraud, abuse, or unauthorized access

Comply with legal obligations

Improve and develop our service using aggregated, anonymized data

We do not use your personal financial data for advertising targeting, sell it to data brokers, or share it with any third party except as described in Section 4.

4. how we share your information

We share your data with the following service providers, solely to operate the service:

Plaid Technologies, Inc.Financial data aggregation. Read-only transaction data only.
Twilio (SMS provider)Message delivery. Your phone number is transmitted to Twilio to route your dispatch. Twilio does not receive your financial data.
Anthropic (Claude AI)AI insight generation. Transaction summaries sent to Anthropic's API. No PII beyond transaction context is included.
SupabaseEncrypted data storage. AES-256 encryption at rest.

We may disclose information if required by law. We do not sell your personal information. Ever.

5. data retention

Phone number and email: retained while active. Deleted within 30 days of account deletion or STOP request.

Transaction data: cached up to 90 days. Purged on account deletion.

Plaid access tokens: deleted immediately upon account disconnection.

SMS logs: retained for 12 months for legal compliance, then deleted.

Server logs: 90-day rolling retention.

6. SMS terms and opt-out

By providing your phone number and submitting the opt-in form, you consent to receive recurring automated marketing and informational text messages from Sidekick.

Opting out via STOP immediately halts SMS delivery. Account data is retained per Section 5 unless you also request deletion.

required SMS disclosures

Message frequency varies (typically 1 message per day)

Message and data rates may apply depending on your carrier plan

Reply STOP at any time to unsubscribe immediately

Reply HELP for help or contact hello@sidekick.money

Consent to receive SMS is not a condition of purchase

Supported on all major US carriers including AT&T, T-Mobile, and Verizon

7. your rights (all users)

Access: request a copy of the personal data we hold about you

Correction: request correction of inaccurate personal data

Deletion: request deletion of your account and all associated data

Portability: request your data in a machine-readable format

Objection: object to processing of your data for certain purposes

To exercise any right, email hello@sidekick.money with subject 'Data Request.' We respond within 30 days.

8. California residents — CCPA notice

If you are a California resident, the California Consumer Privacy Act (CCPA) grants you additional rights regarding your personal information.

right to knowRequest disclosure of categories and specific pieces of personal information collected in the past 12 months.
right to deleteRequest deletion of personal information we've collected, subject to certain exceptions.
right to opt out of saleWe do not sell personal information. No opt-out required, but you may confirm via request.
right to non-discriminationWe will not discriminate against you for exercising any CCPA right.
right to correctRequest correction of inaccurate personal information we hold.

To submit a CCPA request, email hello@sidekick.money with subject 'CCPA Request.' We respond within 45 days.

Categories collected: identifiers (phone, email), financial data (transaction records via Plaid), internet activity (usage logs). All used for service delivery only.

9. data security

All data encrypted in transit via TLS 1.2+

Data encrypted at rest using AES-256

Plaid access tokens stored encrypted, never logged in plaintext

Access to production systems restricted to authorized personnel only

No banking credentials are ever stored by Sidekick

In the event of a data breach affecting your information, we will notify you as required by applicable law, and no later than 72 hours after discovery.

10. children's privacy

Sidekick is not directed to children under 18. We do not knowingly collect personal information from anyone under 18. If we become aware we have collected data from a minor, we will delete it promptly. Contact hello@sidekick.money if you believe we have inadvertently collected data from a minor.

11. changes to this policy

We may update this Privacy Policy from time to time. The 'last updated' date at the top will reflect any changes. For material changes, we will notify you via SMS or email at least 7 days before they take effect. Continued use of the service after that date constitutes acceptance.

12. contact us

Questions, requests, or concerns about this Privacy Policy:

emailhello@sidekick.money
subject line'Privacy Request' or 'CCPA Request' as applicable
response time30 days general · 45 days CCPA
operatorSidekick Labs Inc.
sidekick.
© 2026 Sidekick Labs Inc.

Sidekick is not a bank, financial advisor, or broker-dealer. Financial account data accessed read-only via Plaid Technologies, Inc. AI insights for informational purposes only — not financial advice. SMS sent by automated technology. Reply STOP to cancel, HELP for help. Msg & data rates may apply. We do not sell personal information. CCPA Notice · hello@sidekick.money