Privacy Policy
Effective: August 11, 2025 | Last updated: September 28, 2025
This Privacy Policy describes how SeaBird Solutions, LLC (“SeaBird,” “we,” “us,” or “our”) collects, uses, discloses, and retains personal information when you use SeaBird Budgeting, a standalone manual budgeting app not connected to any bank or financial institution.
For California residents, this Policy includes the disclosures required by the California Consumer Privacy Act (CCPA), as amended by the CPRA.
Summary of categories of personal information we collect, purposes, whether we “sell” or “share,” and retention. See the California Privacy Supplement below for details.
Category |
Examples |
Purpose |
Sold/Shared? |
Retention |
Identifiers |
Name, email, IP address, session IDs |
Account, security/fraud prevention, support At paid signup, we automatically disclose identifiers necessary to our payment processor (Stripe) to create/manage your customer profile. |
No sell / No share |
Life of account and as required by law |
Internet / Electronic Activity |
Pages viewed, time on page, scroll/dwell, device/browser |
Site performance, security/fraud prevention, analytics on public pages only |
No sell / No share |
Up to 24 months (aggregate/de-identify sooner where feasible) |
Commercial Information |
Subscription plan/status, renewal/cancel dates |
Billing and account administration At paid signup, we automatically disclose commercial info necessary to Stripe to provision your subscription. |
No sell / No share |
Life of account and as required by law |
Customer Records / User Content |
Budgeting data you enter/import, support requests |
Provide the Service; support/troubleshooting (per your requests) |
No sell / No share |
While account is active; imports deleted post-processing (see Section 10) |
Inferences |
None |
— |
No sell / No share |
— |
We honor the Global Privacy Control (GPC) signal. We do not sell or “share” personal information.
Our hosting and payment providers operate under their own online terms; we do not authorize advertising uses and configure available
settings to limit processing to hosting, security, reliability, and payment processing. If we ever engaged in “sale” or “sharing,” we would
treat GPC as a binding opt-out and update this page. See our
Do Not Sell or Share My Personal Information page.
SeaBird Solutions, LLC is a remote-first company with no public office; we provide a mailing address for correspondence only (see Section 16). By using the Service, you agree to this Privacy Policy and our Terms of Service.
If we make material changes, we’ll present an in-product notice and request your acknowledgment at next log-in (see Section 15).
We market and provide our Service primarily to users in the United States; data is processed in the U.S.
- Account & Contact: First and last name and email address only. We do not ask for or store your personal mailing address or phone number to create or use an account. If you choose to include a mailing address or phone number in a contact form or support ticket, we will use that information solely to respond or fulfill the specific request (e.g., a call-back); we do not add it to your account profile or use it for marketing.
- Budgeting Data You Enter: Ledger entries you manually enter, paste, or import (date, category, credit/debit, vendor, total, notes), optional starting balance figures for a month, vendor names, and calculator inputs/outputs. For credit cards we store the issuer/company name only. We do not collect or require card numbers, bank account numbers, credit card limits, statement balances, CVV/CVC, expiration dates, or online banking credentials, and we do not connect to your bank.
- Imported or pasted transactions: You may paste or upload (e.g., CSV/XLSX) a transaction list exported from your bank to speed up data entry. We store only the fields you map for your ledger (typically date, description/payee, amount, category, and memo). If an export includes fields such as account numbers or other bank identifiers, we ignore/strip those fields and do not store them.
- Consent & Audit Trail: Your acceptance of Terms/Privacy, timestamps, IP address, and the exact versions presented at acceptance.
- Usage & Device: IP address, browser/OS, device type, time on pages, and diagnostics.
- Hosting operations: Our hosting provider may process IP addresses and technical logs under its standard online terms to keep the service secure and reliable. We do not authorize advertising uses of this data.
- SeaBird Taylon (security & fraud): Our collector records IP, user agent, referrer host only, page path/query, scroll/dwell %, session ID and navigation ID. Cookies are used only when GPC is not present. Data is used solely for security/fraud detection and aggregate site metrics.
- Support: Messages you send us (including cancellations) and related metadata. If you attach a statement export or screenshot for troubleshooting, we use it only to assist with your request and delete it after resolution unless we are required to retain it by law.
- Email Subscriptions (optional): If you choose to receive the template by email or opt in to occasional tips, we collect your email address and your consent choice (timestamp, version) to send those communications. This opt-in is not required to access the free template.
We will never ask for or store any of the following:
- Bank or card login credentials (usernames/passwords)
- Full or partial bank account numbers, routing numbers, or card numbers
- CVV/CVC codes or expiration dates
- Account PINs or one-time passcodes (OTPs)
- Social Security numbers or other government ID numbers
- Credit card limits, statement balances, or online-banking tokens
- Any payment or transaction information associated with your subscription (payments are handled directly by Stripe; we do not collect or store payment-instrument data on our servers)
If anyone claiming to be SeaBird asks for these, do not share—report it to
support@seabird.biz.
We use essential cookies to operate the Service (e.g., authentication, security) and optional analytics cookies to understand feature usage. By default, non-essential cookies are off. We honor the Global Privacy Control (GPC) signal in California; when GPC is enabled, analytics remain off.
- Essential & security (always on): session/authentication cookies and protections like reCAPTCHA Enterprise on public forms.
- Analytics (optional): Google Analytics 4 (GA4) to measure aggregate usage on public/marketing pages. Analytics does not run inside the authenticated budgeting interface.
You can manage analytics at any time via the in-app Cookie Preferences link (also in the footer) or through your browser settings.
We use Google Analytics 4 (“GA4”) on public/marketing pages (e.g., home, pricing, register/login) to understand aggregate usage. We implement Consent Mode v2 with a default of analytics “denied.” Until you allow analytics in Cookie Preferences, GA4 may receive limited, cookieless pings.
We configure GA4 with anonymize_ip: true
and allow_google_signals: false
. Ads features and remarketing are off by default (ad_storage
, ad_user_data
, and ad_personalization
are “denied”).
When allowed, GA4 operates only with first-party cookies on seabirdbudgeting.com
. We disable Google Signals, Ads features, and remarketing, which prevents Google from using our analytics data to build cross-site or cross-app advertising profiles.
Where analytics runs: Analytics tags run on our public/marketing pages. We do not load analytics scripts inside the authenticated budgeting interface where you manage your ledger.
What we don’t send to analytics: We do not send your budgeting entries or calculator inputs/outputs to analytics tools, and we do not use budgeting data for advertising.
This supplement applies to California residents and includes the disclosures required by the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA).
CCPA/CPRA Category |
Collected? |
Sold / “Shared”? |
Disclosed for a Business Purpose? |
Categories of Recipients |
Identifiers (e.g., name, email, IP) |
Yes |
No |
Yes |
Hosting/security providers; email delivery provider (transactional & optional tips); payment provider (subscription metadata only; automatic disclosure at paid signup) |
Internet or other electronic network activity (pages viewed, diagnostics) |
Yes |
No |
Yes |
Hosting/security (logs); analytics processor on public pages only if you enable analytics |
Commercial information (plan/status, renewal/cancel dates) |
Yes |
No |
Yes |
Payment provider (Stripe) for billing/subscription administration; automatic disclosure at paid signup |
Sensitive personal information |
No |
No |
No |
— |
Other statutory categories (e.g., protected classes, biometric, precise geolocation, employment, education, inferences) |
No |
No |
No |
— |
We do not sell personal information and we do not “share” personal information for cross-context behavioral advertising. Our hosting and payment providers operate under their own standard online terms that we accept. We configure available settings to limit processing to hosting, security, reliability, and payment processing. Analytics (when enabled by you) runs only on public pages without Ads features or Google Signals, and never inside the authenticated app.
We honor the GPC signal. If your browser sends GPC, we keep non-essential analytics off; if we ever engaged in sale/share, we would treat GPC as a binding opt-out for those activities. Most browsers also offer Do Not Track (DNT); we do not respond to DNT. GPC is separate and honored as described.
We use third-party vendors for hosting, payment processing (e.g., Stripe), email delivery, abuse prevention, and analytics on public pages. These vendors process personal information under their own standard online terms and privacy policies that we accept. We configure available controls to limit processing to hosting, security, reliability, product operations, and payment processing, and we do not authorize vendors to use our users’ data for their own advertising.
- Provide, maintain, and improve the Service (including calculators, dashboards, and insights).
- Authenticate you; prevent fraud, abuse, and security incidents.
- Create and maintain consent/audit records.
- Respond to support requests and process cancellations.
- Comply with law; enforce our Terms; protect our rights and users.
- Analyze usage in aggregate to improve performance and reliability.
- Compute running balances based on the starting balance you provide; we do not verify this with any financial institution.
- Marketing communications (optional): If you opt in, we send the template link and occasional budgeting tips, product updates, and similar content. You can unsubscribe at any time via the link in each email or by emailing support@seabird.biz. Opting out of marketing does not affect transactional or service emails (e.g., password resets, receipts).
- Vendors: Hosting, analytics on public pages, customer support, email delivery (ESP), and payment processing (e.g., Stripe). At paid signup, we automatically disclose necessary identifiers and commercial information to Stripe to create and manage your customer profile and subscription. Our vendors process personal information under their own terms to provide services to us. We configure available controls to limit processing to hosting, security, reliability, product operations, and payment processing, and we do not authorize vendors to use our users’ data for their own advertising.
- Legal/Compliance: As required by law or to protect rights, safety, and property.
- Business Transactions: In a merger, acquisition, or sale of assets, subject to confidentiality and continued protection consistent with this Policy.
- With Your Direction: If you ask us to share or export your data.
- No selling or “sharing.” We do not sell personal information, and we do not “share” it for cross-context behavioral advertising (as defined under California law).
- No cross-site tracking. We do not track your activity across unaffiliated websites and we do not permit third-party advertising cookies or pixels via our pages. When analytics are enabled, they are limited to first-party GA4 with Google Signals, Ads features, and remarketing turned off.
- No ads from budgeting data. We do not use your budgeting entries or calculator outputs for advertising.
- No requirement to provide address or phone. You can use the Service without giving us a personal mailing address or phone number; if you voluntarily include them in support communications, we use them only to respond.
- No bank scraping or aggregators. We do not connect to your financial institutions or use third-party data aggregators. Any transaction data comes only from what you manually enter, paste, or import.
We use Stripe to process payments. All payment entry and processing occur on Stripe-hosted checkout pages (e.g., checkout.stripe.com
); card data never touches our servers, passes through our code, or appears in our logs.
We do not collect, store, or log card numbers, CVV/CVC codes, expiration dates, bank account numbers, online-banking credentials, or other payment-instrument data. When you sign up for a paid plan, we automatically disclose certain information to Stripe (e.g., name, email, billing postal code, and minimal subscription metadata) to create and manage your customer profile and subscription. Stripe processes payments under its own privacy policy and standard online terms, which we accept.
We retain subscription metadata only needed to operate your account (e.g., plan, status, renewal/cancel dates, and minimal Stripe reference IDs such as customer/subscription IDs). We do not store payment-instrument details or transaction-level card data on our servers.
We use administrative, technical, and physical safeguards (e.g., encryption in transit, access controls, logging, tiered environments). No system is perfectly secure. You are responsible for safeguarding your credentials and any files you export. If you import a bank export file, it is transmitted over encrypted connections and processed only to create your ledger entries; non-needed fields (e.g., account numbers) are ignored/stripped.
- Account Data: For the life of your account and as needed for legal, tax, and audit obligations.
- Budgeting Data: While your account is active; you can export/delete subject to legal retention.
- Import files (CSV/XLSX), if used: Import files are processed for the purpose of creating ledger entries and then deleted immediately after import. The resulting normalized ledger entries remain per the “Budgeting Data” retention above.
- Consent Records: Retained to evidence acceptance of Terms/Privacy and the versions presented.
- Inactivity: Accounts without an active paid subscription and without login activity for 365 consecutive days may be terminated and data deleted to the extent permitted by law (see Terms).
- Marketing Contacts (optional): Kept until you unsubscribe or for up to 24 months of inactivity, whichever is sooner. We delete or de-identify records sooner when required by law or upon verified request.
- Cookie Preferences: Turn analytics on/off anytime via the in-app Cookie Preferences control (also linked in the footer). Non-essential cookies are off by default.
- Global Privacy Control (GPC): If your browser sends a GPC signal, we keep non-essential analytics off. If we ever sold/shared PI (we do not), we would treat GPC as a binding opt-out for those activities.
- Access / Portability / Correction / Deletion: Request a copy of your data, corrections, or deletion (subject to legal retention).
- Opt-Out of Sale/Share: We do not sell or “share” personal information for cross-context behavioral advertising. You may still visit
Do Not Sell or Share My Personal Information for details.
- Verification & Authorized Agents (California): We may ask you to verify your identity (e.g., via your signed-in account or by confirming a code sent to your account email). Authorized agents must provide proof of authorization, and we may still ask the consumer to verify the request.
- Timelines: We acknowledge requests within ~10 days and respond within ~45 days. If reasonably necessary, we may extend once by up to 45 days and will notify you of the reason.
- Unsubscribe from marketing: Use the link in any marketing email or email support@seabird.biz. You will still receive essential transactional emails about your account.
- Non-discrimination: We will not discriminate against you for exercising your privacy rights.
To exercise rights or choices, email support@seabird.biz. If we deny your request, you may appeal by replying to our decision email; we will explain how to escalate to your regulator when required by law.
We will never ask you to send passwords, bank or card logins, account or card numbers, card limits, PINs, one-time codes, or Social Security numbers by email, chat, or phone. We may ask you to enter a starting balance figure inside the app to help calculate your running totals—this is a number you choose and is not linked to any bank connection. Official communications come from @seabird.biz
addresses or in-app messages. If you receive a message requesting sensitive credentials, do not respond—forward it to support@seabird.biz.
Our marketing emails include our business name, mailing address, and an unsubscribe link (CAN-SPAM compliant). We do not request sensitive credentials by email. Template emails are sent only if you opted in; the template remains available without email.
Our “Share” buttons (X, Facebook, LinkedIn, Reddit, WhatsApp, Email) are simple links that open those services in a new tab.
We do not load social media widgets, pixels, or third-party scripts on our pages just to display these buttons.
- Before you click: no third-party cookies or social requests are made by these buttons.
- When you click: the destination site may process your IP address, user agent, and the page URL you chose to share, under its own privacy policy.
- No budgeting data is shared: we do not send your ledger entries or calculator inputs to social sites.
- Outbound links: links to non-SeaBird sites are provided for convenience; we do not control their content or practices.
Tip: You can manage optional analytics cookies anytime via
Cookie Preferences.
Our downloadable budgeting spreadsheet runs on your device. We do not receive its contents unless you choose to import the file into the app or send it to us for support. Imported data is handled as described in Sections 2 and 10; support attachments are handled as described in Section 2 (“Support”).
Spreadsheet disclaimer: Our downloadable spreadsheet template is provided “as is” for your convenience. While we take reasonable steps before publishing files, we cannot guarantee they are error-free or free of harmful code. Only download templates from seabirdbudgeting.com
, and use industry-standard anti-malware protections. For allocation of risk and our limitation of liability, see our Terms of Service.
The Service is not intended for children under 13, and we do not knowingly collect personal information from children. If we learn we have, we will delete it.
We process data in the United States and may use processors in other countries. Where required, we implement appropriate safeguards (e.g., Standard Contractual Clauses) for cross-border transfers.
For material updates, we will present a notice at next log-in with links to this Policy and request your acknowledgment.
When you accept, we store a timestamped record (including the exact version presented) for audit purposes.
SeaBird Solutions, LLC
3717 Boston St PMB 329, Baltimore, MD 21224, USA
Email: support@seabird.biz • Phone: (240) 834-2035
Note: The mailing address and phone number shown above are SeaBird’s business contact details. They are not collected from you and are separate from any information you may optionally include in a support request.
We align our practices with applicable consumer-protection and privacy laws and will update this Policy as requirements evolve.
We honor the Global Privacy Control (GPC) signal. We do not sell or “share” personal information. For details, see
Do Not Sell or Share My Personal Information.