Effective date: April 2026  ·  Last updated: April 2026

Who we are

NorthKey is an organizational tool that helps people understand and prepare their financial situation before seeking professional help. We are not a law firm, financial advisor, credit counseling organization, or debt settlement service.

This Privacy Policy explains what information we collect when you use northkey.co and the NorthKey application, how we use it, and the choices you have. If you have questions, contact us through the link in the footer.

What we collect

We collect information in two ways: what you provide directly, and what's generated automatically when you use the service.

Information you provide

  • Account information: your name, email address, and password when you create an account.
  • Debt and liability information: creditor names, account types, approximate balances, interest rates, and payment status for debts you enter into the app.
  • Asset information: approximate values of property, vehicles, bank accounts, and other assets you choose to enter.
  • Income and expense information: your income sources, amounts, and monthly expenses that you provide to build your financial picture.
  • Uploaded documents: financial documents you choose to upload — such as bank statements, pay stubs, tax returns, credit card statements, or collection notices. These are stored securely and used only to help you organize your situation.
  • Fit check responses: answers to our short questionnaire about your financial situation, used to determine whether NorthKey is an appropriate tool for you.
  • Communications: messages you send us through contact forms or email.

Information collected automatically

  • Usage data: pages visited, features used, time spent, and actions taken within the app. We use this to understand how the product is working and where to improve it.
  • Device and browser information: browser type, operating system, screen size, and IP address.
  • Analytics: we use PostHog for product analytics. PostHog processes anonymized usage data. We do not use advertising-based analytics platforms.

How we use your information

We use your information solely to provide and improve the NorthKey service. Specifically:

  • To help you organize your financial documents and understand your situation
  • To generate summaries, checklists, and guidance within the app based on your inputs
  • To send you account-related communications and product updates (you can unsubscribe at any time)
  • To improve the product based on how it's used (using anonymized data)
  • To respond to your support requests and communications
  • To comply with applicable law

We do not use your information for targeted advertising, lead generation, or to match you with third-party services.

What we don't do with your data

Because NorthKey handles sensitive financial information, we want to be clear about how we do and don't use it:

  • We do not sell your personal or financial information to data brokers, advertisers, or third-party marketing platforms.
  • We do not share your information with creditors, debt collectors, or financial institutions.
  • We do not use your financial data for advertising targeting or credit scoring.
  • We do not use your uploaded documents for any purpose other than helping you organize your own situation.

NorthKey may in the future offer features that help connect you with qualified professionals — such as bankruptcy attorneys or credit counselors. If we do, any sharing of your information with those professionals will be opt-in, transparent, and entirely within your control. We will update this policy and notify you before any such feature is introduced.

How we share information

We share your information only in the following limited circumstances:

  • Service providers: we use a small number of third-party services to operate NorthKey — including Cloudflare (infrastructure and data storage), Resend (transactional email), and PostHog (product analytics). These providers access only what they need to perform their specific function and are contractually prohibited from using your data for other purposes.
  • With your direction: if you choose to share your organized information with a professional — for example, to send a summary to an attorney or counselor — we will do so only at your direction. NorthKey may also offer opt-in features in the future that facilitate connections with professionals; these will always be transparent and under your control.
  • Legal requirements: we may disclose information if required by law, court order, or government authority, or to protect the rights, safety, or property of NorthKey or others.

Financial data and document security

We understand that the information you enter into NorthKey is sensitive. We take the following measures to protect it:

  • All data is transmitted over encrypted connections (HTTPS/TLS).
  • Data is stored on Cloudflare's infrastructure, which provides encryption at rest.
  • Uploaded documents are stored in isolated, access-controlled storage and are not indexed or processed by third parties.
  • We limit internal access to your data to what is required to operate and support the service.

No method of transmission or storage is 100% secure. We take reasonable and industry-standard precautions, but we cannot guarantee absolute security.

Data retention

We retain your account and financial information for as long as your account is active. If you close your account and request deletion, we will delete your personal information and uploaded documents within 30 days, except where we are required by law to retain certain records.

Anonymized, aggregated usage data (with no connection to your identity) may be retained indefinitely to help us improve the product.

Your rights and choices

You have the following rights regarding your information:

  • Access: you can request a copy of the personal information we hold about you.
  • Correction: you can update most of your information directly within the app. For other corrections, contact us.
  • Deletion: you can request deletion of your account and associated data at any time.
  • Portability: you can request an export of your data in a machine-readable format.
  • Opt-out of communications: you can unsubscribe from marketing emails at any time using the link in any email we send.

California residents and residents of other states with applicable privacy laws (including Colorado, Connecticut, and Virginia) have additional rights under those laws. To exercise any of these rights, contact us through the footer link.

Cookies and tracking

We use a small number of cookies and similar technologies to operate the service — primarily for session management and to keep you logged in. We do not use third-party advertising cookies or tracking pixels.

Our analytics provider (PostHog) may set cookies to track usage patterns. These do not contain personally identifiable information and are used solely for product improvement.

Children's privacy

NorthKey is not directed at or intended for use by anyone under the age of 18. We do not knowingly collect personal information from minors. If you believe a minor has provided us with their information, please contact us and we will delete it promptly.

Changes to this policy

We may update this Privacy Policy from time to time. When we do, we'll update the effective date at the top and, for material changes, notify users by email. Continued use of NorthKey after a policy update constitutes acceptance of the revised terms.

Questions about this policy? Reach us through the contact link in the footer.