Ask Misto
Back to home
Misto · security & privacy

Why you can trust us.

The short version sits on the home page. Here's the rest — for the people who want to see the whole hand before they sit down.

01

Encryption everywhere

Every byte that leaves your device travels over TLS 1.3 (HTTPS). If you choose to enable our premium cloud sync backup, your data is encrypted client-side using a key derived from your master password (via AES-GCM) before being uploaded to Cloudflare R2. We cannot decrypt your backups.

02

Read-only by design

Misto's is read-only by design. Since your bank data is ingested locally via your own file imports and bank sync, there is no connection to initiate transfers or payments. Your money stays safely in your bank.

03

Where your data lives

Your account credentials and session details live in an isolated Cloudflare D1 serverless database. Transaction histories, accounts, and budgets are stored 100% locally on your device in your browser's IndexedDB. Optional backups are stored as encrypted zero-knowledge files in Cloudflare R2.

04

Not for sale, ever

We make money one way: the optional Premium unlock. No advertisers, no data brokers, no “anonymized” segments quietly sold downstream. If you're not paying, you're not the product — you're just a member.

05

Leaving is one click

Delete your account from Profile → Privacy and your data is purged within 24 hours, including encrypted backups within 30 days. No retention emails, no “are you sure” guilt trips — just a quiet goodbye.

Trusted infrastructure

Built on foundations you already trust.

Stripe
Local-First
TLS 1.3
GDPR-aware
Cloudflare
AES-256