Back to Thrymo

Privacy policy

Last updated · August 27, 2026

Thrymo doesn't collect your data. No account, no cloud, no analytics. Your budget lives in your phone's storage and nowhere else. This policy exists to explain precisely what that means — and also what the one thing is that does leave your device.

1. Who we are

Thrymo is a personal budgeting app developed and published from Colombia. In this policy, “Thrymo”, “we” and “our” refer to the data controller, as defined by Colombia's Law 1581 of 2012 on personal data protection.

For anything privacy-related, write to us at info@thrymo.com.

2. What we collect: nothing

We don't ask for your email, name, phone number or any other identifying detail. Thrymo has no accounts and no sign-up.

Everything you enter in the app — income, expenses, categories, goals, savings, debts and your cycle history — is stored exclusively in your device's local storage. There is no server of ours that receives it.

That cuts both ways, and it's worth understanding: we can't see your information, but we also can't recover it if you lose it, nor hand it to anyone who asks for it, including an authority. We simply don't have it.

3. What does leave your device

Being honest is worth more than sounding absolute. There are five situations in which technical information or your own files leave the phone:

  • App updates. Thrymo uses Expo's update service (u.expo.dev) to check whether a new version is available. During that check, Expo's servers receive your IP address and technical data about your device and installed version. Nothing from your budget is ever sent. Expo's privacy policy applies.
  • The app stores. Downloads and, once paid Premium exists, billing are handled by the Apple App Store and Google Play under their own policies. We only receive aggregate, anonymous download and sales reports.
  • Purchases. Premium purchases go through RevenueCat, the service that validates them and keeps track of whether your access is still active. It receives an anonymous installation identifier and the purchase events themselves: which product, when, and whether it remains active. It receives none of your financial data — not your expenses, not your categories, not your income, not your cycles. None of that leaves your phone. RevenueCat's privacy policy applies.
  • Files you choose to export. Backups and CSV exports are generated on your device. If you choose to share them by email or messaging, or save them to a cloud service, they leave the phone by your own action and become subject to that destination's terms.
  • If you write to us. When you send us an email we receive your address and whatever you choose to tell us. We use it only to reply.

None of this creates an account of you. Thrymo still has no sign-up and no email, still asks for no detail that identifies you, and still bundles no analytics or advertising SDK of any kind. The third parties above see the technical minimum needed to update the app and validate a purchase — never what you record in it.

4. Notifications

Thrymo's reminders are local notifications: the app schedules them on your device. We don't use push notifications, there is no server sending them, and the app never requests a notification token.

5. Security

Backups can be encrypted on the device itself, and the keys are held in the operating system's secure store (Keychain on iOS, Keystore on Android).

That said, the first line of defence for your data is your phone's own protection: the passcode, biometrics and system encryption. Anyone with access to your unlocked device has access to the app.

6. No tracking, no ads, no data selling

Thrymo bundles no analytics, advertising or tracking SDK of any kind. We don't build profiles, we don't measure your behaviour inside the app, and we don't share information with third parties for commercial purposes.

We do not sell or “share” personal information as those terms are defined by California's CCPA and CPRA. Since we collect no personal information, there is nothing to sell.

7. Children

Thrymo is not directed to children under 13 and we do not knowingly collect information from them, consistent with COPPA. Because no data is collected at all, the app exposes no user's information, whatever their age.

8. Your rights and how to exercise them

Colombia's Law 1581 of 2012 grants every data subject the rights to know, update, rectify and delete their personal data, and to withdraw any consent given. In Thrymo those rights are exercised directly on the device, because that is where the data lives and it never reaches us:

  • Know and port: export your data to a JSON or CSV file from within the app whenever you want.
  • Update and rectify: edit any record inside the app.
  • Delete: remove any record you want, or uninstall the app. Every associated piece of data goes with it, leaving no copy on any server.

Because we neither receive nor store personal data, Thrymo operates no database subject to registration in the National Database Registry held by Colombia's Superintendency of Industry and Commerce.

If you believe your rights as a data subject are not being respected, write to info@thrymo.com. If our answer doesn't satisfy you, you may file a complaint with the Data Protection Delegate Office of the Superintendency of Industry and Commerce.

If you live in the European Union or the United Kingdom (GDPR), or in California (CCPA/CPRA), you keep the rights those rules grant you and can exercise them the same way.

9. Changes to this policy

If the app changes in a way that affects this policy — for instance when paid Premium goes live — we'll update this document and the date shown above. Material changes will also be announced inside the app.

10. Contact

Any privacy question: info@thrymo.com.

Also read