GoalJars Privacy Policy

Updated October 9, 2026

Your savings records

GoalJars is a manual savings tracker. Goals, recorded contributions and withdrawals, correction history, plans, notes, photos, trophies and preferences are stored on your device. GoalJars does not connect to your bank, hold money or make transfers. Features depend on your installed version; shared jars and the reviewed support form require version 2.0.0 or later.

Private iCloud sync

When iCloud is available for the app, your records also sync through Apple CloudKit in your private iCloud database. This can involve network activity at launch and while the app is in use. Your Apple Account and device settings control access to Apple services. InnovaLabWorks does not receive your savings collection through this sync.

Sharing you choose

When you choose to share a jar, its goal details, note, photo, recorded entries and correction history are placed in an Apple CloudKit share for invited participants. Other jars and your personal preferences are not included. Participants can see the shared content and contributor labels; Apple supplies account and participant information needed to manage access. Collaboration requires valid Pro access for each participant. Eligible Apple Family Sharing can supply Pro without another purchase, and never shares records automatically.

Roles and retained copies

The owner controls invitations and whether a participant can contribute or only view. A participant can leave, and the owner can remove access. Removing access cannot recall files, screenshots or other copies someone already made. Review the selected jar before inviting someone, and avoid sharing information you do not want participants to retain.

Exports and backups

PDF statements, CSV exports and recovery backups can contain the records you select, including notes and photos where supported. A recovery backup is a readable file, not an encrypted vault. Keep these files safe and choose their recipients carefully. Importing a backup does not restore Apple purchase receipts, Pro entitlement or another person's sharing permissions.

Photos and reminders

The app uses the photos you deliberately select for your goals. Optional reminders use Apple's notification system and your device's notification settings; notification previews may be visible to others using your device. These features do not automatically send your savings records to InnovaLabWorks.

Support and optional diagnostics

When you send a support or privacy request, we receive the reply email, optional name, chosen topic and message you enter, plus the app identity, version, build and request source. The version 2.0.0 form also sends the reviewed request reference and creation time. Troubleshooting details are optional in that form: if you include them, the review shows the device model, OS version, language or locale and where you opened support before sending. The earlier version 1.2.6 support form includes device model, OS version and locale when you deliberately send a request. Diagnostics exclude savings amounts, record contents, photos, private file paths, device identifiers, purchase receipts and invitation or authentication tokens. Your own message may contain information you choose to disclose. After you review a version 2.0.0 request, a local copy of the exact reviewed request and any receipt is kept separately from your savings records. It is excluded from device and app recovery backups and is never sent automatically. You can discard it; acknowledging a delivered receipt removes it. Its fixed 90-day period starts at request creation, and an expired copy is removed when the app next opens it. If the local copy cannot be saved or recovered, the form tells you and support remains available.

Handling support requests

Cloudflare hosts support intake, and ClickUp is used to manage support cases. Email services may be used to notify support or reply to you. We use submitted information to answer requests, troubleshoot and prevent abuse, never to subscribe you to marketing. Network providers process connection information. For version 2.0.0 requests, one-hour submission limits use hashes of the reply address and network address, together with request references; they do not contain message contents. A request reference helps prevent duplicate cases. If delivery to ClickUp is uncertain, a support copy may be retained in the intake queue for up to 90 days from its first receipt; retries do not extend this period. Case information is retained as needed to resolve the request and meet applicable obligations; you can ask about access or deletion through the Privacy request topic.

Purchases and update checks

Apple processes purchases and supplies verified access information to the app. We do not receive your payment-card details. The app may ask Apple's App Store service for an available update using its bundle identifier. Apple and network providers process the connection information necessary to operate these services. GoalJars includes no advertising SDK, behavioral analytics SDK or cross-app tracking.

Deletion and your choices

Use the app's removal controls to manage individual records and sharing access. Corrections preserve an audit history rather than silently replacing the original entry. Deleting the app removes its local app data, but does not necessarily delete private iCloud records, Apple backups, exported files, support cases or copies retained by participants. Manage Apple backups and iCloud storage through Apple's settings, and contact us through the Privacy request form for support information we hold.

Contact and policy changes

GoalJars is provided by InnovaLabWorks / 9547-8715 Quebec Inc., Montreal, Canada. Contact us through Contact Support in Settings or the app-specific support page. Material changes are presented in the app; the current policy remains available in Settings and on the website.