WealthScout.app Legal
Privacy Policy
How WealthScout handles personal information across the public website and household wealth application.
Effective: 10 August 2026 · Last updated: 10 August 2026
About This Policy
This Privacy Policy explains how WealthScout handles personal information through wealthscout.app, app.wealthscout.app, related emails, support channels, and other services that link to this policy.
In this policy, “WealthScout”, “we”, “us”, and “our” mean IP3 Holdings, ABN 88 562 020 114, trading as WealthScout.
WealthScout is household wealth record-keeping and modelling software. It is not a bank, broker, accountant, tax agent, financial adviser, credit provider, or legal adviser.
Information We Collect
Account and identity information may include your name, email address, authentication identifiers, household membership, invitation status, account or email preferences, and records showing which version of the Terms of Service you accepted and when.
Household profile information may include household name, country, reporting currency, time zone, review schedule, names and dates of birth of adults and dependants, and details about trusts, companies, retirement structures, or other entities.
Financial information may include assets, liabilities, balances, transactions, income, expenses, budgets, ownership, tax settings, investment holdings, property addresses and values, mortgages, retirement accounts, projections, assumptions, reviews, snapshots, and notes.
Documents and imports may include spreadsheet or statement data and optional private attachments such as invoices or receipts. Uploaded files may contain personal information beyond the fields WealthScout needs, so you should remove unnecessary identifiers before uploading where practical.
Communications may include waitlist submissions, support messages, privacy requests, complaints, survey responses, and records of emails sent, delivered, opened only where the provider supplies that event, suppressed, or unsubscribed.
Commercial information may include plan, billing interval, provider/store, product and offer identifiers, price and currency, renewal or cancellation state, subscription coordination records, affiliate attribution, Offer B eligibility or redemption, and partner commission records. Payment credentials are handled by the applicable payment provider and are not stored in WealthScout.
Technical and usage information may include IP address, browser and device information, approximate location inferred from network information, referral page, request and security logs, error reports, product-analytics events, survey responses, and interactions needed to operate, protect, and improve the service.
Information About Other People
A household member may enter information about a partner, family member, dependant, beneficiary, trustee, company officer, or another person. The member providing that information must be authorised to do so and should make the person aware of this policy where appropriate.
WealthScout accounts are intended for adults. Adults may record information about children or dependants for household reporting and planning. WealthScout is not directed to children and does not knowingly allow children to create their own accounts.
How We Collect Information
We collect information directly from you when you join the waitlist, create or use an account, enter household records, upload a file, invite a member, contact us, or change a preference.
We also receive information from household members, authentication and infrastructure providers, email providers, address and market-data services, and other services you choose to connect or use with WealthScout.
Address text entered into the address lookup is sent to Geoapify to return address suggestions. Security identifiers and account information are processed through Clerk. Market symbols and related requests may be sent to market-data providers such as Marketstack or Yahoo Finance.
When the public pricing section loads, RevenueCat receives a RevenueCat-generated anonymous Pricing Identity and the browser's provider request needed to select and format the current localized Plus Offering. This identity is display-only, is not linked to a WealthScout account or referral, and is not used to start checkout.
Why We Use Information
We use personal information to provide and secure accounts; create and operate household workspaces; calculate and display records, estimates, reports, and projections; process imports and attachments; manage invitations and access; coordinate subscriptions and entitlement state; process billing support, cancellations, refunds, and disputes; administer referrals and partner commission; deliver requested emails; provide support; investigate errors and abuse; maintain backups and service reliability; improve the service; and comply with legal obligations.
We may use aggregated or de-identified information to understand service performance and product usage where the information is no longer reasonably capable of identifying an individual.
We do not sell personal information. We do not use household financial information for third-party advertising.
Household Sharing and Access
Information in a household workspace is available to people who have access to that household. Current household members have broad read and write access, so only invite people you trust.
Household members may add, change, export, or delete household information within the permissions provided by the service. Under the current household model, any current member may permanently delete the household and remove access for all members. The app displays a separate warning and confirmation before this occurs.
Deleting a household does not delete each member’s separate sign-in identity. A former member may later use the same sign-in account to create a new, empty household.
Product Analytics, Feedback, and Session Replay
We use PostHog in the authenticated WealthScout application to understand product usage, navigation, interactions, and module drop-off. The app identifies an authenticated user with the Clerk identifier assigned to that account. We do not intentionally place names, email addresses, balances, notes, account values, or entered form values into ordinary analytics properties.
The Feedback control is not displayed automatically. If you open Feedback, PostHog renders the survey and receives the category, written response, survey lifecycle events, and the logical workspace context needed to understand the report. The response is linked to the identified Clerk user and may include the household and screen identifiers used by WealthScout for feedback triage.
Opening Feedback also starts a feedback-triggered Session Replay that may retain available recent activity and continue for the rest of that PostHog session. The replay may show information visible in WealthScout, including financial values, names, addresses, notes, documents, and ordinary inputs. Password inputs remain masked. The replay does not capture network request or response bodies, console logs, or cross-origin iframe content. This is a notice about the processing that occurs when you open Feedback, not an opt-in checkbox.
PostHog is configured for the US or EU project region selected for the relevant WealthScout environment. We restrict access to operators who need product-analysis or feedback-triage access and review the configured region, retention, and deletion controls before enabling Production.
Service Providers and Disclosures
We use service providers to operate WealthScout. Current providers include Clerk for authentication and household access, Vercel for application hosting and private file storage, Neon for database hosting, Resend for email delivery, RevenueCat for subscription entitlement coordination, localized pricing, and web checkout, Stripe for RevenueCat's web payment processing, Apple and Google for native store billing, Better Stack for error and reliability monitoring, PostHog for product analytics, surveys, and feedback-triggered Session Replay, Geoapify for address lookup, and market-data providers including Marketstack and Yahoo Finance. PostHog is not used as the application-error or operational-alerting system.
We may disclose information to professional advisers, insurers, auditors, a purchaser or successor involved in a genuine business transaction, or government and law-enforcement bodies where reasonably necessary or legally required.
Providers may use their own subcontractors. We take reasonable steps to select appropriate providers and limit information to what is reasonably needed for the service they perform.
Overseas Processing
WealthScout and its providers may store or process personal information outside Australia. Depending on provider configuration and subprocessors, these locations may include the United States and countries in the European Union, including Germany, as well as other countries disclosed by the relevant provider.
Privacy and data-protection laws in another country may differ from Australian law. Where required, we take reasonable steps through provider selection, contractual controls, access restrictions, and security measures to protect information processed overseas.
AI and Automated Processing
The current AI Export feature creates a file for you to download. WealthScout does not upload that export to an AI provider and does not control copies you choose to share with another service. You should review that service’s privacy, retention, training, and deletion terms first.
If WealthScout introduces an AI-assisted feature that sends information to a model provider, the feature will identify that processing and provide a notice before information is sent. This policy will be updated to name the provider, the information involved, retention and training settings, and the controls available to you.
WealthScout calculations and status indicators may use rules and software to produce estimates, warnings, or classifications from household data. They support record-keeping and review; they do not make legal, lending, insurance, employment, or other decisions about an individual’s rights or eligibility.
Cookies and Local Storage
WealthScout uses cookies and similar storage needed for authentication, security, preferences, and core service operation. The app may store limited interface preferences, such as portfolio filters, in your browser. PostHog may use browser storage and cookies for its SDK identity, session, survey, and replay state.
We do not use third-party advertising cookies. PostHog product analytics and feedback replay are used for the purposes described in this policy, not for third-party advertising.
Referral Cookies
If you visit a valid partner URL such as wealthscout.app/<handle>, the public site may ask the authenticated WealthScout service to validate the handle and record a first-win referral capture. The site may then store the opaque capture token in the HttpOnly, Secure, SameSite=Lax cookie named wealthsight_referral_capture for the configured referral window, currently 30 days.
The referral cookie is used to carry attribution into account setup and does not grant paid access, change a plan, or identify your household to a partner. A partner receives only the bounded programme reporting described in the Affiliate Terms; household identity and financial records are not shown in the partner portal.
If you join the waitlist or otherwise consent to product marketing, we may send beta, launch, feature, or product communications. You can opt out through the unsubscribe method in the message or by contacting us.
We may still send necessary service messages about account security, household access, requested actions, material service changes, or other non-marketing matters. Commercial electronic messages should identify WealthScout, include contact details, and provide a functional unsubscribe method where required.
Security
We take reasonable technical and organisational steps to protect personal information from misuse, interference, loss, and unauthorised access, modification, or disclosure. These measures include authenticated access, server-side household authorisation, encrypted network connections, private file access controls, restricted operational access, monitoring, and data minimisation in error reports.
No online service can guarantee absolute security. You should protect your sign-in account, use multi-factor authentication when available, review household membership, and contact support@wealthscout.app promptly if you suspect unauthorised access.
Retention and Deletion
We retain household information while the household remains active and for as long as reasonably needed to provide the service, meet legal obligations, resolve disputes, prevent fraud, maintain security, and keep ordinary business records.
When a household is permanently deleted, WealthScout removes the live household record, its financial data, household email records, and stored household files through the deletion process. Separate sign-in identities remain with the authentication provider unless the individual arranges their deletion separately.
Where commercial billing exists, bounded records may include webhook receipt fields, retained subscription/provider records, purchase intents and provider purchase evidence, Terms and Affiliate Terms acceptances, referral attribution, affiliate earn/reversal/recovery entries, payout references, and refund or dispute evidence. We retain only what is needed for subscription/provider linkage, Offer B eligibility, affiliate reconciliation, legal or accounting needs, and dispute handling. These records must not contain the deleted household's financial workspace, household name, member list, attachments, or marketing profile. The exact legal/accounting retention schedule is a launch decision and is not stated here.
Some completed provider webhook receipts are currently subject to a bounded operational cleanup process, and full raw provider payloads are not retained indefinitely by default. That operational cleanup is not a legal or accounting retention decision for the other commercial records described above.
Deleted information may remain temporarily in infrastructure backups, already-delivered emails, security logs, and provider systems until their normal retention or backup periods expire. Restored backups must not be used to reattach a deleted household to a user.
Feedback-triggered PostHog replays are configured for 30 days. Product-analytics events and survey responses use the configured PostHog project retention periods. On a verified deletion request, we use PostHog's person and data-deletion controls to request deletion of the associated person, events, survey responses, and replays, subject to the provider's deletion process and applicable legal limits.
Waitlist, support, diagnostic, legal acceptance, and business records are retained only for as long as reasonably needed for their purpose, to establish an agreement or resolve a dispute, or as required by law. When information is no longer needed, we take reasonable steps to delete or de-identify it. We do not publish an invented fixed retention period for commercial/legal records before the legal and accounting review is complete.
Access, Correction, Export, and Deletion
You can correct much of your household information directly in the app. The app also provides household data export and permanent household deletion features where available.
You may ask to access or correct personal information we hold about you, or request deletion where applicable, by emailing privacy@wealthscout.app. We may need to verify your identity and household authority before acting. Legal, security, technical, or operational limits may apply, and we will explain a refusal where required.
Privacy Complaints
Send a privacy complaint to privacy@wealthscout.app with enough detail for us to understand and investigate the issue. We will acknowledge the complaint and aim to provide a substantive response within 30 days.
If you are not satisfied with our response, you may be able to complain to the Office of the Australian Information Commissioner at oaic.gov.au. Other local privacy regulators may also be available depending on where you live.
Contact
The operator is IP3 Holdings, ABN 88 562 020 114, trading as WealthScout. Privacy enquiries, requests, and complaints: privacy@wealthscout.app.
General product support: support@wealthscout.app.
Changes to This Policy
We may update this policy when the product, providers, information handling, or legal requirements change. The current version will be published here with its last updated date.
If a change materially affects how existing household information is handled, we will take reasonable steps to notify affected users through the app or by email before the change takes effect where practicable.