Nectar Wallet

Dokumen versi 2026-08-31

Kebijakan Privasi

Terakhir diperbarui: 31 Agustus 2026 · Bagian Cloud berlaku saat Sinkronisasi Cloud tersedia untuk publik

Ringkasnya: Nectar Wallet tetap offline-first dan tidak memerlukan akun untuk fitur lokal. Jika Anda memilih Sinkronisasi Cloud Premium Plus, isi finansial teks dienkripsi di perangkat sebelum dikirim. Metadata minimum tetap diproses untuk menyediakan layanan.

1. Siapa yang mengelola data

Nectar Wallet dikembangkan oleh Ans Bee App Team, Manado, Indonesia. Pertanyaan atau permintaan terkait privasi dapat dikirim ke ansbee01@gmail.com.

2. Fitur lokal tanpa akun

Anda dapat memakai fitur utama tanpa akun cloud. Data keuangan, catatan, foto struk, dan gambar kustom disimpan pada perangkat. Data tersebut hanya keluar dari perangkat jika Anda menjalankan fitur yang memang memerlukannya, seperti berbagi/ekspor, backup pilihan Anda, atau Sinkronisasi Cloud.

3. Data akun dan Sinkronisasi Cloud

Jika Anda memilih membuat akun cloud, kami memproses:

  • Identitas akun: ID pengguna, alamat email, nama tampilan, dan avatar jika diberikan oleh Google atau Apple.
  • Langganan: status Premium Plus, product ID, masa berlaku, serta waktu verifikasi dari RevenueCat dan toko aplikasi.
  • Persetujuan legal: jenis, versi, hash dokumen, waktu server, platform, build aplikasi, bahasa, dan flow persetujuan.
  • Perangkat dan keamanan: ID instalasi, platform, build aplikasi, waktu terakhir aktif, dan status akses perangkat.
  • Metadata sinkronisasi: ID workspace/record, jenis data, revisi, urutan perubahan, waktu perubahan, status hapus, versi enkripsi, serta ukuran ciphertext.
  • Isi finansial terenkripsi: data teks akun, kategori, transaksi, transaksi berulang, anggaran, tabungan, serta utang/piutang dalam bentuk ciphertext.

Foto struk, gambar kustom, recovery key, dan kunci workspace mentah tidak diunggah dalam ruang lingkup Sinkronisasi Cloud saat ini.

4. Cara enkripsi bekerja

Isi finansial dienkripsi di perangkat menggunakan AES-256-GCM sebelum dikirim melalui HTTPS. Server menyimpan ciphertext dan salinan kunci workspace yang sudah dibungkus. Recovery key yang diperlukan untuk membuka pembungkus tidak disimpan oleh Nectar Wallet.

Enkripsi end-to-end tidak menyembunyikan metadata minimum yang diperlukan untuk autentikasi, pembatasan Premium Plus, pencegahan konflik, keamanan, dan operasi layanan. Enkripsi juga tidak melindungi perangkat yang sudah terbuka atau disusupi.

5. Data teknis dan fitur pihak ketiga

  • Iklan dan analitik teknis: versi gratis dapat memproses Advertising ID, interaksi aplikasi, dan diagnostik melalui Google AdMob atau layanan platform.
  • Pembelian: RevenueCat, Google Play Billing, dan App Store memproses data pembelian dan identitas terkait sesuai kebijakan mereka.
  • Kurs mata uang: ExchangeRate-API/open.er-api.com menerima permintaan berdasarkan kode mata uang dasar, bukan judul, nominal, kategori, akun, catatan, atau foto transaksi.
  • Login: Google atau Apple memproses autentikasi sesuai pilihan pengguna.
  • Hosting: backend produksi berjalan pada infrastruktur yang kami kelola sendiri di sebuah penyedia VPS di Indonesia. Backup terenkripsi dibuat secara berkala dan dapat disimpan pada penyedia penyimpanan terpisah yang bertindak atas instruksi kami.

6. Tujuan pemrosesan

Data digunakan untuk menyediakan fitur aplikasi, autentikasi, memverifikasi langganan, menyinkronkan perangkat, mendeteksi konflik, mencegah penyalahgunaan, menjaga keamanan, menjalankan dukungan, memenuhi permintaan penghapusan, dan memenuhi kewajiban hukum yang berlaku. Data finansial tidak dijual.

7. Pilihan dan kontrol

  • Anda dapat menolak Sinkronisasi Cloud dan tetap memakai aplikasi secara lokal.
  • Anda dapat keluar tanpa menghapus akun cloud.
  • Anda dapat menghapus akun cloud dari aplikasi atau melalui halaman Penghapusan Akun.
  • Anda dapat meminta informasi atau koreksi data akun melalui alamat kontak kami.
  • Pengaturan iklan dan izin perangkat dapat dikelola melalui sistem operasi atau platform terkait.

8. Retensi dan penghapusan

  • Data lokal bertahan sampai dihapus melalui aplikasi, dihapus dari perangkat, atau aplikasi dihapus sesuai perilaku sistem operasi.
  • Selama akun dan Premium Plus aktif, data cloud disimpan untuk menyediakan sinkronisasi.
  • Setelah Premium Plus berakhir, workspace cloud terenkripsi dapat disimpan hingga 90 hari sebelum dihapus.
  • Jika akun dihapus, data aktif dihapus dari sistem operasional. Salinan residual dalam backup terenkripsi dapat bertahan sampai siklus backup selesai, paling lama 60 hari.
  • Data tertentu dapat dipertahankan lebih lama jika diwajibkan hukum, diperlukan untuk keamanan, atau diperlukan untuk menyelesaikan sengketa; alasan dan ruang lingkupnya akan dibatasi.

9. Keamanan

Kami menggunakan enkripsi di perangkat, HTTPS, pembatasan akses server, isolasi data antar-akun yang ditegakkan di basis data, pemisahan kredensial, pencatatan diagnostik yang diminimalkan, dan backup terenkripsi berkala yang hanya dapat dibuka dengan kunci di luar server. Tidak ada sistem yang sepenuhnya bebas risiko. Gunakan pengunci layar, lindungi akun Google/Apple, dan simpan recovery key di tempat terpisah yang aman.

10. Anak-anak

Nectar Wallet tidak ditujukan bagi anak di bawah 13 tahun. Jika Anda mengetahui seorang anak memberikan data pribadi tanpa izin yang diperlukan, hubungi kami untuk menindaklanjuti penghapusan.

11. Perubahan kebijakan

Versi dan tanggal kebijakan dicantumkan di bagian atas. Perubahan material pada pemrosesan Cloud Sync akan meminta pengguna meninjau kebijakan terbaru sebelum sinkronisasi dilanjutkan.

12. Layanan terkait

Google Apple RevenueCat ExchangeRate-API
Ketentuan Sinkronisasi Cloud Penghapusan Akun Kembali ke beranda

Document version 2026-08-31

Privacy Policy

Last updated: August 31, 2026 · Cloud sections become effective when Cloud Sync is publicly available

In short: Nectar Wallet remains offline-first and does not require an account for local features. If you choose Premium Plus Cloud Sync, text-based financial content is encrypted on the device before transmission. Minimum metadata is still processed to provide the service.

1. Who controls the data

Nectar Wallet is developed by Ans Bee App Team in Manado, Indonesia. Privacy questions and requests may be sent to ansbee01@gmail.com.

2. Local features without an account

You can use core features without a cloud account. Financial data, notes, receipt photos, and custom images are stored on the device. That data leaves the device only when you use a feature that requires it, such as sharing/export, a backup you choose to create, or Cloud Sync.

3. Account and Cloud Sync data

If you choose to create a cloud account, we process:

  • Account identity: user ID, email address, display name, and avatar when provided by Google or Apple.
  • Subscription: Premium Plus status, product ID, entitlement period, and verification timestamps from RevenueCat and app stores.
  • Legal acceptance: document type, version and hash, server timestamp, platform, app build, language, and acceptance flow.
  • Device and security: installation ID, platform, app build, last-active time, and device access state.
  • Synchronization metadata: workspace/record IDs, data type, revision, change sequence, timestamps, deletion state, encryption version, and ciphertext size.
  • Encrypted financial content: text-based accounts, categories, transactions, recurring transactions, budgets, savings, debts, and receivables as ciphertext.

Receipt photos, custom images, recovery keys, and raw workspace keys are not uploaded within the current Cloud Sync scope.

4. How encryption works

Financial content is encrypted on the device using AES-256-GCM before being sent over HTTPS. The server stores ciphertext and a wrapped copy of the workspace key. Nectar Wallet does not store the recovery key needed to unwrap it.

End-to-end encryption does not hide the minimum metadata required for authentication, Premium Plus enforcement, conflict prevention, security, and service operations. Encryption also does not protect an unlocked or compromised device.

5. Technical data and third-party features

  • Advertising and technical analytics: the free version may process Advertising ID, app interactions, and diagnostics through Google AdMob or platform services.
  • Purchases: RevenueCat, Google Play Billing, and the App Store process purchase and related identity data under their policies.
  • Exchange rates: ExchangeRate-API/open.er-api.com receives a request based on the base-currency code, not transaction titles, amounts, categories, accounts, notes, or photos.
  • Sign-in: Google or Apple processes authentication based on the method you choose.
  • Hosting: the production backend runs on infrastructure we operate ourselves at a VPS provider in Indonesia. Encrypted backups are taken on a regular schedule and may be stored with a separate storage provider acting on our instructions.

6. Why data is processed

Data is used to provide app features, authenticate users, verify subscriptions, synchronize devices, detect conflicts, prevent abuse, secure the service, provide support, fulfill deletion requests, and meet applicable legal obligations. Financial data is not sold.

7. Choices and controls

  • You may decline Cloud Sync and continue using the app locally.
  • You may sign out without deleting the cloud account.
  • You may delete the cloud account in the app or through the Account Deletion page.
  • You may request information about or correction of account data using our contact address.
  • Advertising settings and device permissions can be managed through the relevant operating system or platform.

8. Retention and deletion

  • Local data remains until removed in the app, removed from the device, or deleted with the app according to operating-system behavior.
  • While the account and Premium Plus are active, cloud data is retained to provide synchronization.
  • After Premium Plus access expires, the encrypted cloud workspace may be retained for up to 90 days before deletion.
  • When an account is deleted, active data is removed from operational systems. Residual copies in encrypted backups may remain until the backup cycle ends, for up to 60 days.
  • Specific data may be retained longer where required by law, necessary for security, or necessary to resolve a dispute; the reason and scope will be limited.

9. Security

We use device-side encryption, HTTPS, server access controls, per-account data isolation enforced in the database, credential separation, minimized diagnostics, and scheduled encrypted backups that can only be opened with a key held off the server. No system is entirely risk-free. Use a device lock, protect your Google/Apple account, and store the recovery key separately in a safe place.

10. Children

Nectar Wallet is not directed to children under 13. If you learn that a child provided personal data without required authorization, contact us so we can address deletion.

11. Policy changes

The policy version and date appear at the top. Material changes to Cloud Sync processing will require users to review the latest policy before synchronization continues.

12. Related services

Google Apple RevenueCat ExchangeRate-API
Cloud Sync Terms Account Deletion Back to home