Security & Trust
A finance app lives on trust. This page explains honestly how we treat your data: what we do, what we will never do, and what we don't have yet.
Your data is never used to train AI
Your conversations and transaction data are never used to train AI models, neither by Moneysaurus nor by the model providers we use. The AI processes your message to produce an answer in the moment, and that's it. We use commercial model services under agreements that do not permit customer data to be used for training.
We never ask for bank account access
Moneysaurus will never ask for your banking username, password, PIN, or OTP. Statement import works by you uploading an e-statement of your own choosing, not by us logging into your account.
- No bank credentials stored in any form
- Statement import = you upload a file you chose yourself
- Receipt scanning only reads photos you send
Encryption and infrastructure
All traffic between your device and our servers is encrypted with TLS (HTTPS) and enforced via HSTS. We apply modern security headers, request rate limiting, and administrative access to our systems is restricted to a private network.
Payments handled by a licensed gateway
All payments are processed by Xendit, a licensed payment gateway in Indonesia. We never see, let alone store, your card number or payment credentials.
Your data stays yours
You hold full control over your financial data.
- Export anytime as PDF, Excel, or CSV
- Request deletion of all your data at any time
- We never sell your personal data to anyone
Compliance
Moneysaurus AI is operated by Technosaurus Digital Rex in Jakarta and is subject to Indonesian law, including the Personal Data Protection Law (UU PDP). Full details are in our Privacy Policy and Terms of Service.
Honest about certifications
We do not yet hold ISO 27001 or SOC 2 certification, and we won't pretend otherwise. What's written on this page reflects real practices running today, and this list will grow as we do.
Found a security issue?
We value responsible disclosure. Send your findings to hello@moneysaurus.id and we will take them seriously.