Trust & Security
Your family's finances deserve a careful steward.
Common Purse holds wedding budgets, family contributions, and vendor contracts — information that matters. Here is plainly how we protect it. Last updated June 12, 2026.
The short version
- No money moves through us. Common Purse is a system of record — there are no bank connections, no stored payment credentials, and nothing for an attacker to move.
- Access is scoped on the server. Every request is checked against your role. A contributor's account is structurally unable to fetch the rest of the budget, other contributors, or any contract — it isn't hidden, it's not reachable.
- Contracts live in private storage. Uploaded PDFs are stored privately and served only through authenticated, role-checked requests.
- No passwords to steal. Sign-in works through single-use email links, so there is no password database to breach or reuse.
- AI never trains on your data. Contract analysis runs on Anthropic's Claude under commercial terms that prohibit training on customer content.
- Everything is encrypted in transit. All connections use HTTPS/TLS; data is encrypted at rest by our hosting providers.
- We never sell your data. Our only business model is the product itself.
Subprocessors
These are the services that handle your data on our behalf, and what each one does:
| Provider | Purpose | Location |
|---|---|---|
| Vercel | Application hosting, content delivery, and DNS | United States |
| Neon | Database (your budget, ledger, and account data) | United States (AWS us-east-1) |
| Vercel Blob | Private storage for uploaded contract PDFs | United States |
| Anthropic | AI processing of contracts and budget suggestions (Claude) | United States |
| Resend | Transactional email (sign-in links, invitations) | United States |
| Forward Email | Inbound email forwarding for hello@commonpurse.com | United States |
We'll update this list before adding any new subprocessor.
An honest note on beta
Common Purse is a young product run by a small team. We don't yet hold formal certifications like SOC 2 — what we offer instead is a deliberately small attack surface (no money movement, no passwords, no third-party trackers), serious server-side access control, and direct accountability: security concerns sent to hello@commonpurse.com reach a founder the same day.
For what we collect and how it's used, see the Privacy Policy.