CanFIRE

Privacy Policy & Disclaimers

Every figure you enter into CanFIRE stays on your device. There is no account, no cloud sync, and no backend server holding your financial data. The only information that leaves your device is the subscription data described in this policy, and a weekly request for public CPF reference figures โ€” neither of which includes anything you enter into the app.
๐Ÿงญ

Who We Are

CanFIRE is published and operated by DS-Lab, Singapore, who is the data controller for the limited personal data described in this policy.

For any privacy question, access request or correction request, contact hello@canfire.app.

Because CanFIRE has no servers and no accounts, we hold almost no data about you. Everything you enter into the app stays on your device and is never accessible to us.

๐Ÿ”’

Your Data Never Leaves Your Phone

On-Device Storage Only

Every number you enter into CanFIRE โ€” expenses, income, assets, insurance policies, and personal details โ€” is stored only on your device, in the app's private storage area, protected by your device's own security (your passcode or biometric lock and the operating system's built-in device encryption). There is no cloud sync, no account creation, and no backend server.

Receipt Photos (Camera & Photo Library)

You can optionally attach a receipt image to a spending entry, using your camera or photo library. The app requests camera and photo permissions only for this purpose, and only when you initiate it. Receipt images are stored on your device alongside your other CanFIRE data and are never uploaded, analysed, or shared. If you never attach a receipt, these permissions are never used.

Works Offline โ€” With One Weekly Update

CanFIRE works fully offline. It makes only two kinds of network connection: subscription management via RevenueCat (described below), and a once-weekly request for updated CPF reference figures (BRS/FRS/ERS). If you are offline, the app falls back to bundled figures.

The CPF reference file is hosted publicly on GitHub, not on a server we operate. No data you enter into the app is included in that request. As with any web request, GitHub receives your device's IP address in order to serve the file โ€” we do not receive, see, or store it. GitHub's handling of that information is governed by its own privacy statement.

Data Portability

To transfer your data to another device, use the Export / Restore feature in Settings. This creates an AES-256 encrypted .canfire backup file that only you control. The file is never uploaded or shared automatically.

๐Ÿšซ

No Tracking, No Analytics

CanFIRE does not collect usage analytics, crash reports, advertising identifiers, or any telemetry. There is no advertising in the app, and we do not track you across other apps or websites. Your personal financial data is never transmitted to any server.

The only data that leaves your device is the subscription information handled by RevenueCat, Apple, and Google, described in the next section, and the weekly CPF reference request described above. Neither includes anything you enter into the app.

๐Ÿ”—

Third-Party Services

RevenueCat (Subscription Management)

CanFIRE uses RevenueCat to manage in-app subscriptions (Pro plan). The RevenueCat SDK initialises each time the app starts, so for every user โ€” subscriber or not โ€” it collects and transmits: a randomly generated device identifier, app version, device type and model, operating system and version, and IP address (used by RevenueCat for fraud prevention and receipt validation). If you subscribe, it additionally processes purchase transaction data (product ID, transaction ID, price, currency, purchase date, subscription status, and app store receipt data).

This data is transmitted to RevenueCat's servers in the United States under a data processing agreement, and is used for subscription validation, restoration and fraud prevention. RevenueCat does not receive any of your personal financial data entered into CanFIRE โ€” your plans, logs, assets, insurance details, and CPF figures never leave your device.

For details on RevenueCat's data practices, see their Privacy Policy.

Apple and Google

In-app purchases are processed by Apple (iOS) or Google (Android). Apple and Google act as independent controllers of your purchase and payment information under their own privacy policies โ€” they do not process it on our behalf. For any subscription or payment data enquiry, please contact Apple or Google directly through your device's account settings.

GitHub

The weekly CPF reference file is served from GitHub, as described above. GitHub receives only your device's IP address as an incident of serving the file, and acts as an independent controller of that information.

๐Ÿ””

Notifications

If you enable reminders in Settings, CanFIRE schedules local notifications on your device. These are generated entirely on-device โ€” no notification tokens or device identifiers are sent to any server. You can disable notifications at any time in Settings or in your device's system settings.

โš–๏ธ

Important Disclaimers

Not Financial Advice

CanFIRE is a personal retirement planning calculator. It is not a licensed financial adviser, and nothing in this app constitutes financial advice, investment advice, or any form of regulated financial advisory service under the Financial Advisers Act 2001 or the Securities and Futures Act 2001 of Singapore. CanFIRE is not licensed or regulated by the Monetary Authority of Singapore.

All projections, estimates, and insights are based solely on the information you enter. They are for your own planning reference only. You should not make any financial decision based solely on outputs from this app. For personalised advice, consult a qualified financial professional.

CPF & Government Data

Retirement sums (BRS/FRS/ERS) are taken from publicly published CPF Board figures and updated periodically. CPF LIFE payout figures shown in the app are CanFIRE's own estimate derived from CPF Board's published Standard Plan ranges โ€” they are not CPF Board figures. All figures are for planning purposes only and may not reflect your actual CPF balances or entitlements. Please refer to cpf.gov.sg or your CPF statement for authoritative figures.

CPF reference figures are reviewed each January, following CPF Board's annual announcements. This app references publicly available CPF Board figures solely for planning purposes. It does not access, connect to, or retrieve data from your CPF account or any CPF Board systems.

Projections & Estimates

All financial projections are mathematical estimates based on your inputs and assumed growth rates. Past performance of any asset class does not guarantee future returns. Actual outcomes will differ from projections due to market conditions, inflation, policy changes, and personal circumstances.

No Affiliation

CanFIRE is an independent tool and is not affiliated with, endorsed by, or connected to CPF Board, the Monetary Authority of Singapore, any government body, financial institution, insurer, or investment product provider.

๐Ÿ—‘๏ธ

Data Retention & Deletion

All CanFIRE data lives only on your device, for as long as the app is installed. You can delete individual entries at any time, or remove everything at once with Settings โ†’ Clear All Data. Uninstalling the app also deletes all locally stored data. Encrypted .canfire backup files you export are under your control โ€” delete them from wherever you stored them.

Subscription records held by Apple, Google, and RevenueCat are retained under their own policies. Because Apple and Google are independent controllers of that data, requests about it should be made to them directly; we can assist with RevenueCat records where you can supply an identifier.

๐Ÿ”

Changes to This Policy

We may update this policy from time to time. The current version is always available at this address, and the "Last updated" date below will change. Where a change materially affects how your data is handled, we will highlight it in the app.

โœ‰๏ธ

Contact

For questions about this privacy policy or any personal-data enquiry, contact: hello@canfire.app

CanFIRE and NestFIRE are both published by DS-Lab; this address is the contact point for both.