Your finances · Understood

Your money, finally explained.

SpendCopilot connects to your financial accounts, organizes what's happening, and helps you understand where your money goes and what to do next.

The SpendCopilot home screen on iPhone: a projected surplus of +$325 marked on track, tracked spending of $349.95 across three reported expenses, and budget rows for Groceries, Dining, Fuel and Family, above a single input field reading Ask or log anything.
Passkey & Face ID sign-in·Encrypted connections·Plaid-powered account linking·No ad tracking

Where SpendCopilot actually is

It is not out yet. What's built today is the part that has to be right first: reporting spending in plain language, deterministic budgets and projected surplus, bank import through Plaid, reconciliation that counts one purchase exactly once, and passkey sign-in with Face ID.

Net worth across every account, and the conversational Copilot, are designed but not built. The two sections below marked Planned describe where SpendCopilot is going — not what it does today.

Spending clarity

Know where you stand, while it still matters.

Most finance apps explain your spending after the moment has passed. SpendCopilot shows you the position you're actually in right now — so the next decision is an informed one rather than a postmortem.

Log something in plain language and your picture updates immediately. No waiting for the bank to settle.

  • A single number that means something. Projected surplus or deficit for the period you're in, not a wall of charts.
  • Category budgets that read at a glance. Spent, remaining, and whether the pace is sustainable.
  • Immediate, not retrospective. Reported spending changes the picture the second you enter it.
This period · Day 3
+$325
Projected surplus · On track
Groceries$271.71 / $225.00
Front-loaded · avoid another large run121%
Dining$0.00 / $75.00
$75.00 remaining0%
Fuel$48.24 / $175.00
Monthly reference28%
Every figure here is computed from what you entered and what your bank posted. Groceries is 121% of plan for the period; the projection above already accounts for it.
Net worth & accounts Planned

Every account in one honest total.

Bank connectivity is built: SpendCopilot links an institution through Plaid and imports its pending and posted transactions. What comes next is breadth — checking, savings, credit cards, loans and investments pulled into one number for what you own, what you owe, and the difference.

That work isn't done. The first release connects a single institution, and there is no net-worth view in the app yet.

  • Beyond one bank. Today's connection covers one institution; the goal is every account in one place.
  • Balances in context. Each account shown beside the obligations it has to cover.
  • You choose what's linked. Connecting and disconnecting institutions stays your decision.
Net worth Planned
$84,210
Across 5 linked accounts
Design concept, not a shipped screen. Illustrative figures.
Copilot Planned

Ask a real question. Get a real answer.

One field already takes what you spent in plain language — "$48.24 gas", "spent 8.96 at the market for buns and ice cream" — and turns it into a budgeted event, deterministically and without a model in the loop. The Copilot extends that same field from logging to asking.

It is designed and specified, and it is not built. The constraint it will ship under is already settled: deterministic systems own the financial truth, and the Copilot may only explain results it did not compute.

  • Explanation, not scolding. Calm and specific, with no shame mechanics, streaks or alarms.
  • The math stays deterministic. AI may interpret and explain; it will never own a balance, a total or a projection.
  • You decide. SpendCopilot's job is to make the tradeoff visible. The choice stays yours.
Copilot Planned
Can I afford takeout tonight?
Yes — Dining is untouched at $75.00 for the period, and you're projected +$325.
Groceries are already 121% of plan, so keep the rest of the week's food spending flexible rather than adding another large run.
Still on track.
A $35 dinner leaves you at roughly +$290 projected for the period.
Design concept, not a shipped screen.
Transaction organization

One purchase. One entry. Counted once.

What you reported and what the bank later posts are two observations of the same purchase. SpendCopilot matches them, keeps both records, and counts the event exactly once — so the total never quietly doubles.

Amounts drift between authorization and posting, and the posting date is often not the day you actually spent it. Both are handled explicitly instead of being papered over.

  • Reported and posted, reconciled. A $155.16 report and a $155.17 posting are the same purchase, not two.
  • Dates you can correct. Purchase date, posting date and your budget date are kept separately.
  • Nothing decided behind your back. Matches are shown with their evidence before they're applied.
Review match
Your report

$20.00 · Groceries
Budget date: Aug 18

Bank evidence

EXACT MARKET · $20.00
Posted: Aug 18

Result

Counted once. No change to projected surplus.
Your budget date and category remain unchanged.

Security & privacy

Built to hold as little as possible.

The most reliable way to protect financial data is not to keep it. SpendCopilot's backend stores a deliberately small amount: enough to sign you in and keep your bank connection working, and nothing more. Everything below is a description of what the system actually does.

Passkey and Face ID sign-in

Sign-in uses passkeys (WebAuthn) with Face ID or Touch ID. There is no password to phish, reuse or leak. Only the public key and its metadata are stored on our side.

Encrypted connections

All API traffic runs over TLS. The database is encrypted at rest with AES-256-GCM under Cloudflare-managed keys, and API keys are held as encrypted Worker Secrets — never in source or in the database.

Plaid-powered account linking

Bank connections are made through Plaid. Your bank login happens inside Plaid and we never see it. Transactions are fetched on demand and passed straight through to your device — the backend stores no transactions, balances or account numbers.

Deletion you control

Account deletion erases every record tied to your account across all tables and revokes your Plaid connection at Plaid. You get a deletion receipt; only a de-identified hash is retained, to prove the deletion happened. The endpoint is live today; the in-app control ships with the app.

No ad tracking

No advertising identifiers, no ad networks, no cross-app tracking, no profiling. We do not sell your data and we do not use it for advertising.

Versioned consent

Consent is recorded at the points where data handling begins — account creation and bank linking — along with the exact policy version you agreed to. You can retrieve your consent records at any time.

We don't claim security certifications we don't hold. The full detail — the complete inventory of what is stored, retention periods, and how to exercise your rights — is in the SpendCopilot privacy policy.

SpendCopilot is coming soon.

It isn't on the App Store yet, and we won't pretend otherwise. Leave your email and you'll get one message when it's available — nothing else.

One email at launch. Every message has one-click unsubscribe. We store the address and which page you signed up from, and nothing else — see the privacy policy.