‹ Ledger policies

Privacy Policy

Last updated 21 July 2026

Ledger is a private, invite-only app for keeping track of informal debts between people who already know each other. It is operated as a sole proprietorship in Ohio, United States ("Ledger", "we", "us"). This policy explains what we collect, why, and what we will never do with it.

We have tried to keep this short and specific rather than long and vague. If anything here is unclear, email developer@l3dger.xyz.

Information we collect

Information you give us

Information we generate

Ledger does not collect location data, contacts, advertising identifiers, or browsing activity. There is no analytics or tracking SDK in the app.

How we use it

We do not use your information for advertising, profiling, or automated decision-making, and we do not sell it.

SMS and mobile information

We send SMS messages only to deliver one-time verification codes when you create an account or sign in. These are transactional messages. We do not send marketing or promotional text messages.

No mobile information will be shared with third parties or affiliates for marketing or promotional purposes. Information sharing with subcontractors in support services, such as our SMS delivery provider, is permitted solely to deliver the messages you request. All other use case categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.

Message and data rates may apply. Message frequency varies and depends on how often you sign in. Reply STOP to opt out of messages or HELP for help. See our Terms & Conditions for full messaging terms.

Who your information is shared with

We share information in only three situations:

We do not sell, rent, or trade personal information to anyone.

How long we keep it

Account information is kept while your account exists. Ledger entries are kept as long as the account exists, because balances are recalculated from the full history and deleting an entry would silently change what someone else is owed. Verification codes are discarded once used or after ten minutes, whichever comes first.

If you ask us to delete your account, we remove your name, phone number, password and photo. Entries between you and other people are retained in an anonymised form, because they form part of another person's financial record.

Security

Traffic between the app and our servers is encrypted with HTTPS. Passwords are stored only as salted PBKDF2 hashes. Verification codes are stored hashed, expire after ten minutes, and lock after repeated wrong attempts. Access to the production database is restricted to the operator.

No system is perfectly secure. Please use a password you do not use elsewhere.

Your choices

Children

Ledger is not intended for anyone under 13, and we do not knowingly collect information from children under 13. If you believe a child has created an account, contact us and we will remove it.

Changes

If this policy changes materially we will update the date at the top and, where the change affects how we handle your information, notify you in the app.

Contact

developer@l3dger.xyz