PRIVACY
Privacy notice
Current status: figures entered in the free calculator stay in the browser and are not sent to Life in Real Terms. Saved accounts are an invitation-only private beta. The service does not accept payments, show advertising, use behavioural analytics or send marketing email.
Information stored in readable form
The service stores an account email address, beta access status, account dates, access timestamps and security-related request metadata. Hosting infrastructure may process IP addresses and browser information in ordinary server logs.
The initial beta account and email verification
The single account created during installation does not receive a verification email because public registration and automated email are not active. Registration closes after this initial account is created. Before registration is opened to the public, new users will have to confirm their email address. The privacy notice will also identify the email provider and explain how long verification records are kept.
Encrypted financial information
Financial profiles, countries, currencies, assets, debts, balances, tax assumptions, categories, transactions, scenarios and work-time calculations are encrypted in the browser before the plan is uploaded. The server stores an encrypted copy of the plan and the technical information needed to save and open it. Market lookups and optional bank or broker connections process some information separately, as described below. The protection and its limitations are explained in the security page.
Why readable account data is used
Readable account data is used to authenticate users, prevent abuse, provide encrypted synchronization and operate the beta. It is not used to profile financial behaviour. Saving or opening the encrypted plan does not send its readable contents to the server. If you request a bank or broker report, its financial records pass through the server before reaching your browser for review.
Sharing and service providers
Hosting infrastructure processes the minimum data needed to deliver requests and store encrypted plans. The beta does not use a payment provider, advertising network, remote analytics service or email-marketing service. Encrypted plans may appear in hosting backups but remain encrypted.
If you ask the account to identify a listed investment or update its closing price, the browser sends the server only the ticker, ISIN or investment name, the relevant exchange identifier, the confirmed quote unit, and the listing and main currencies needed for the lookup and conversion. The configured market-data provider receives the search term or public symbol and exchange needed to answer the request. It does not receive the number of units you own, balances, purchase costs, transactions, bank or broker account details, email address or other contents of the encrypted plan. The installation keeps a shared cache of public symbols, exchange identifiers and closing-price responses so the same successful market listing is not requested again during its daily market cycle. A listing-specific empty or invalid response is also held until the next market cycle. Temporary provider failures instead trigger a shared backoff and can be tried again after that pause. A local safety counter stops new provider units before this installation exceeds the allowance chosen by the site owner for that UTC month, but it cannot see earlier or external use of the same provider account. Exact site-wide usage is shown only to the site owner. These cache and counter entries are not linked to a user, institution, quantity or portfolio. Currency conversion uses general reference-rate data from the European Central Bank and does not send personal financial information to it.
Geographic information is checked automatically when you open your plan. To identify a company’s country, the browser sends the server its public company name, ticker or ISIN. The server first checks the bundled GLEIF company directory and reviewed issuer references. If those do not resolve the company, it may query Wikidata with those public identifiers. It does not send quantities, values, costs, transactions, institution or account details, or your email. An unambiguous match is saved in your encrypted plan with its source. Missing or ambiguous information stays Unclassified. Public company results are shared for 30 days; unsuccessful searches are cached for seven days. Wikidata structured data is available under CC0.
For supported funds, the server uses the public fund identifier and listing to obtain dated country data from iShares/BlackRock, State Street or Vanguard. Fund identifiers are shared; your holdings and account information are not. Successful allocations are cached across the installation for 24 hours per fund. The encrypted plan records the allocation, source and date and checks for updates on a later visit. Manually entered allocations are preserved. When a source is unavailable, the last successful information is kept.
The closing-price dialog lets you control automatic updates. For investments with updates enabled, opening your plan may start a check after the relevant cache has expired. Opening an older plan may also retrieve a missing price for a supported Bitcoin investment, unless you have explicitly switched automatic updates off. This repairs the missing valuation without enabling ongoing updates or replacing a saved manual or broker valuation. Manual prices are not automatically updated.
Optional bank and broker connections
Interactive Brokers: when you request a Flex report, your reporting token and Query ID are sent through our server to Interactive Brokers. The returned report can contain account identifiers, balances, holdings and transactions. It passes through the server to your browser, where you review the changes before adding them to your encrypted plan. The connection requests reporting access only and does not ask for your IB password or provide trading actions.
Banks: where activated, connections use Enable Banking. You choose a supported bank and authorize access through the provider and bank. The service exchanges the authorization response and requests the account information you permitted. Bank account details, balances and booked transactions pass through our server to your browser. Bank sign-in takes place outside Life in Real Terms. The connection provides account information only, with no payment actions.
The connection code processes tokens and downloaded reports temporarily; it does not save plaintext credentials or raw report copies to the application database, files or application logs. IB tokens are remembered only if you select that option, inside your encrypted plan. Bank connection references are protected and stored with your encrypted plan. Readable exports remove those access credentials. Password-protected backups can contain them. Interactive Brokers, Enable Banking and the selected bank process requests under their own privacy and retention terms.
Retention and deletion
Deleting an account removes its user record and encrypted plan from the active database. Hosting backups may retain an encrypted copy temporarily under the hosting provider's backup schedule. Operational rate-limit records contain hashed request buckets rather than financial data. Shared public market-cache entries are not linked to an account or portfolio and are therefore not removed when one account is deleted. Removing a saved connection does not delete records held by the bank or broker. You can revoke its authorization with that provider.
Your controls
You can export a readable copy, create a separate password-encrypted backup, restore a compatible backup, optionally create or replace an emergency recovery code, sign out and delete the account. Your financial information is also hidden automatically after 15 minutes without activity. A readable export is no longer protected by the application's encryption. Keep exports, backup passwords and any recovery code somewhere safe.
Children
The beta is intended for adults managing their finances and is not directed to children.
Before public or paid registration
No paid plan is offered under this notice. Before accepting payment or opening registration generally, the site must publish the responsible legal entity and contact address, lawful bases and user-rights procedure, relevant service providers and international transfers, retention periods, governing privacy jurisdiction and payment-related processing. New accounts will also require email verification. Those details will not be presented as complete before they exist.