Privacy Policy
Last updated: November 8, 2025
Introduction
At Conte.pt, operated by Wisely Lda ("we", "our", or "us"), we are committed to protecting your privacy and ensuring the security of your personal and financial information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our cloud-based accounting assistant for small businesses.
Information We Collect
Personal Information
- Name and email address (via Google OAuth2 through Auth0)
- Organization details you create or join
- User preferences and settings
- Profile information from your Google account
Financial Information
- Bank account information accessed via GoCardless (Nordigen) Open Banking API
- Transaction history and details
- Account balances and metadata
- Expense reimbursement records
- Receipts, invoices, and accounting documents uploaded to Google Drive
Technical Information
- IP address and browser information
- Device information and operating system
- Usage data and analytics
- Log data for debugging and security purposes
How We Use Your Information
We use the collected information for the following purposes:
- Provide and maintain our cloud-based accounting assistant service
- Authenticate users via Google OAuth2 integration
- Synchronize and display your financial transactions
- Enable organization-based collaboration features
- Process expense reimbursements and generate reports
- Store, organize, and manage receipts, invoices, and documents in your Google Drive
- Provide document organization and retrieval via Google Drive API
- Improve our services and develop new features
- Communicate with you about service updates and support
- Ensure security and prevent fraud
- Comply with legal obligations
Data Security
We implement industry-standard security measures to protect your data:
- End-to-end encryption for data transmission
- Secure storage in MongoDB Atlas with encryption at rest
- Authentication via Auth0 with JWT tokens
- Role-based access control within organizations
- Regular security audits and updates
- Isolated data storage per organization
- Secure API endpoints with proper authorization
Third-Party Services
We integrate with the following third-party services:
Google OAuth2:
For user authentication via Google accounts
Google Drive API:
For storing and managing your receipts, invoices, and accounting documents
Auth0:
For secure authentication infrastructure and session management
GoCardless (Nordigen):
For secure Open Banking connections
Google Cloud Platform:
For hosting and infrastructure
MongoDB Atlas:
For secure database services
Each third-party service has its own privacy policy, and we encourage you to review them.
Data Sharing
We do not sell, trade, or rent your personal information. We may share data only in these circumstances:
- With your explicit consent
- Within your organization (based on permissions)
- To comply with legal obligations
- To protect our rights and prevent fraud
- With service providers under strict confidentiality agreements
Your Rights
Under GDPR and other privacy regulations, you have the following rights:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your personal data
- Portability: Receive your data in a portable format
- Restriction: Limit processing of your data
- Objection: Object to certain data processing
- Withdrawal: Withdraw consent at any time
To exercise these rights, please contact us at privacy@mail.conte.pt
Data Retention
We retain your data for as long as necessary to provide our services:
- Transaction data: Retained while your account is active
- User account data: Retained until account deletion
- Organization data: Retained while the organization exists
- Backup data: Retained for 30 days after deletion
- Log data: Retained for 90 days for security purposes
Cookies and Tracking
We use essential cookies and similar technologies to:
- Maintain your authentication session
- Remember your preferences
- Ensure security and prevent fraud
- Analyze usage patterns (anonymized)
You can control cookie settings through your browser preferences. For detailed information about the cookies we use, please see our Cookie Policy
Children's Privacy
Our service is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
International Data Transfers
Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers, including standard contractual clauses and adequacy decisions.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.
Contact Us
If you have questions, concerns, or complaints about this Privacy Policy, please contact us:
Email: privacy@mail.conte.pt
Company: Wisely Lda
Address: Rua de S. Pedro 12A, 4720-092, Portugal
Data Protection Officer: privacy@mail.conte.pt
Supervisory Authority
If you are not satisfied with our response to your privacy concerns, you have the right to lodge a complaint with the Portuguese data protection authority:
Comissão Nacional de Proteção de Dados (CNPD)
Website: www.cnpd.pt
Address: Av. D. Carlos I, 134, 1º, 1200-651 Lisboa, Portugal