Common Purse

Trust & Security

Your family's finances deserve a careful steward.

Common Purse holds wedding budgets, family contributions, and vendor contracts — information that matters. Here is plainly how we protect it. Last updated June 12, 2026.

The short version

  • No money moves through us. Common Purse is a system of record — there are no bank connections, no stored payment credentials, and nothing for an attacker to move.
  • Access is scoped on the server. Every request is checked against your role. A contributor's account is structurally unable to fetch the rest of the budget, other contributors, or any contract — it isn't hidden, it's not reachable.
  • Contracts live in private storage. Uploaded PDFs are stored privately and served only through authenticated, role-checked requests.
  • No passwords to steal. Sign-in works through single-use email links, so there is no password database to breach or reuse.
  • AI never trains on your data. Contract analysis runs on Anthropic's Claude under commercial terms that prohibit training on customer content.
  • Everything is encrypted in transit. All connections use HTTPS/TLS; data is encrypted at rest by our hosting providers.
  • We never sell your data. Our only business model is the product itself.

Subprocessors

These are the services that handle your data on our behalf, and what each one does:

ProviderPurposeLocation
VercelApplication hosting, content delivery, and DNSUnited States
NeonDatabase (your budget, ledger, and account data)United States (AWS us-east-1)
Vercel BlobPrivate storage for uploaded contract PDFsUnited States
AnthropicAI processing of contracts and budget suggestions (Claude)United States
ResendTransactional email (sign-in links, invitations)United States
Forward EmailInbound email forwarding for hello@commonpurse.comUnited States

We'll update this list before adding any new subprocessor.

An honest note on beta

Common Purse is a young product run by a small team. We don't yet hold formal certifications like SOC 2 — what we offer instead is a deliberately small attack surface (no money movement, no passwords, no third-party trackers), serious server-side access control, and direct accountability: security concerns sent to hello@commonpurse.com reach a founder the same day.

For what we collect and how it's used, see the Privacy Policy.