Privacy Policy

Last updated: November 8, 2025

Introduction

At Conte.pt, operated by Wisely Lda ("we", "our", or "us"), we are committed to protecting your privacy and ensuring the security of your personal and financial information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our cloud-based accounting assistant for small businesses.

Information We Collect

Personal Information

  • Name and email address (via Google OAuth2 through Auth0)
  • Organization details you create or join
  • User preferences and settings
  • Profile information from your Google account

Financial Information

  • Bank account information accessed via GoCardless (Nordigen) Open Banking API
  • Transaction history and details
  • Account balances and metadata
  • Expense reimbursement records
  • Receipts, invoices, and accounting documents uploaded to Google Drive

Technical Information

  • IP address and browser information
  • Device information and operating system
  • Usage data and analytics
  • Log data for debugging and security purposes

How We Use Your Information

We use the collected information for the following purposes:

  • Provide and maintain our cloud-based accounting assistant service
  • Authenticate users via Google OAuth2 integration
  • Synchronize and display your financial transactions
  • Enable organization-based collaboration features
  • Process expense reimbursements and generate reports
  • Store, organize, and manage receipts, invoices, and documents in your Google Drive
  • Provide document organization and retrieval via Google Drive API
  • Improve our services and develop new features
  • Communicate with you about service updates and support
  • Ensure security and prevent fraud
  • Comply with legal obligations

Data Security

We implement industry-standard security measures to protect your data:

  • End-to-end encryption for data transmission
  • Secure storage in MongoDB Atlas with encryption at rest
  • Authentication via Auth0 with JWT tokens
  • Role-based access control within organizations
  • Regular security audits and updates
  • Isolated data storage per organization
  • Secure API endpoints with proper authorization

Third-Party Services

We integrate with the following third-party services:

Google OAuth2:

For user authentication via Google accounts

Google Drive API:

For storing and managing your receipts, invoices, and accounting documents

Auth0:

For secure authentication infrastructure and session management

GoCardless (Nordigen):

For secure Open Banking connections

Google Cloud Platform:

For hosting and infrastructure

MongoDB Atlas:

For secure database services

Each third-party service has its own privacy policy, and we encourage you to review them.

Data Sharing

We do not sell, trade, or rent your personal information. We may share data only in these circumstances:

  • With your explicit consent
  • Within your organization (based on permissions)
  • To comply with legal obligations
  • To protect our rights and prevent fraud
  • With service providers under strict confidentiality agreements

Your Rights

Under GDPR and other privacy regulations, you have the following rights:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion of your personal data
  • Portability: Receive your data in a portable format
  • Restriction: Limit processing of your data
  • Objection: Object to certain data processing
  • Withdrawal: Withdraw consent at any time

To exercise these rights, please contact us at privacy@mail.conte.pt

Data Retention

We retain your data for as long as necessary to provide our services:

  • Transaction data: Retained while your account is active
  • User account data: Retained until account deletion
  • Organization data: Retained while the organization exists
  • Backup data: Retained for 30 days after deletion
  • Log data: Retained for 90 days for security purposes

Cookies and Tracking

We use essential cookies and similar technologies to:

  • Maintain your authentication session
  • Remember your preferences
  • Ensure security and prevent fraud
  • Analyze usage patterns (anonymized)

You can control cookie settings through your browser preferences. For detailed information about the cookies we use, please see our Cookie Policy

Children's Privacy

Our service is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers, including standard contractual clauses and adequacy decisions.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.

Contact Us

If you have questions, concerns, or complaints about this Privacy Policy, please contact us:

Email: privacy@mail.conte.pt

Company: Wisely Lda

Address: Rua de S. Pedro 12A, 4720-092, Portugal

Data Protection Officer: privacy@mail.conte.pt

Supervisory Authority

If you are not satisfied with our response to your privacy concerns, you have the right to lodge a complaint with the Portuguese data protection authority:

Comissão Nacional de Proteção de Dados (CNPD)

Website: www.cnpd.pt

Address: Av. D. Carlos I, 134, 1º, 1200-651 Lisboa, Portugal