Home → Privacy
Privacy you don't have to trust. It's architecture.
Every finance app promises privacy in a policy document. Gilt does something stronger: it's built so that reading your data is technically impossible for us.
The architecture
No servers
Gilt has no backend. Your data is stored on your iPhone and synced through your personal iCloud (CloudKit private database). There is nothing on our side to hack, subpoena or sell.
No account
Nothing to sign up for. Gilt uses the iCloud account already on your phone. We don't know your email, your name, or that you exist.
No tracking
Zero analytics SDKs, zero ads, zero third-party code phoning home. The App Store privacy label reads: Data Not Collected.
What this means in practice
- Your transactions never leave Apple's ecosystem — device + your private iCloud, end to end
- Face ID / passcode lock on the app itself
- AI features work without the app talking to any AI service — you bring your own
- Exports are privacy-filtered by default: merchant names and notes stay out unless you opt in
- If we disappeared tomorrow, your app and your data would keep working
“We couldn't read your data even if we wanted to — there is nothing on our side to read it with.”
Formal document: Privacy Policy · Deep dive: What “no servers” actually means