Privacy Policy

Last updated: May 6, 2026

1. Who we are

MonthLi (the "Service") is operated by MB Popierizmas, a company registered in Lithuania ("we", "us", "our"). MonthLi is a personal monthly budget planner accessible via monthli.dev and app.monthli.dev.

For the purposes of the EU General Data Protection Regulation (GDPR), MB Popierizmas is the data controller of your personal data.

Contact: support@monthli.dev

2. What data we collect

We only collect data needed to operate the Service:

  • Account data: your email address and authentication credentials.
  • Budget & financial data: income, expenses, categories, and notes you enter into MonthLi. This data is self-reported - we do not connect to your bank or read your transactions.
  • Billing data: subscription status and payment metadata. Card details are handled directly by Stripe - we never see or store your full card number.
  • Technical data: basic logs (IP address, browser type, timestamps) used for security and debugging.

3. How we use your data

We process your personal data to:

  • Provide and operate the MonthLi Service;
  • Authenticate your account and keep your data secure;
  • Process the 7-day free trial and €3/month incl. VAT subscription;
  • Communicate with you about your account, billing, or support requests;
  • Comply with our legal and tax obligations.

4. Legal basis (GDPR Art. 6)

  • Contract - to deliver the Service you signed up for.
  • Legal obligation - for invoicing, VAT, and accounting.
  • Legitimate interests - to keep the Service secure and prevent abuse.
  • Consent - where required (e.g. optional communications), which you can withdraw at any time.

5. Sub-processors

We use a small number of trusted providers that process data on our behalf under GDPR-compliant data processing agreements:

  • Supabase - database, authentication, and hosting of your account and budget data.
  • Stripe - payment processing for subscriptions.

Some of these providers may transfer data outside the EU/EEA. When they do, transfers are protected by Standard Contractual Clauses or equivalent safeguards.

6. How long we keep your data

We keep your account and budget data for as long as your account is active. If you delete your account, we delete or anonymise your personal data within 30 days, except where we are legally required to retain certain records (e.g. invoices for accounting purposes, typically up to 10 years under Lithuanian law).

7. Your rights under GDPR

You have the right to:

  • Access the personal data we hold about you;
  • Correct inaccurate or incomplete data;
  • Delete your account and personal data at any time from within the app, or by emailing us;
  • Restrict or object to certain processing;
  • Export your data in a portable format;
  • Withdraw consent where processing is based on consent;
  • Lodge a complaint with the Lithuanian State Data Protection Inspectorate (vdai.lrv.lt) or your local supervisory authority.

To exercise any of these rights, contact support@monthli.dev.

8. Security

We use industry-standard technical and organisational measures to protect your data, including encryption in transit (HTTPS), encryption at rest, and access controls. No system is 100% secure, but we work hard to keep your data safe.

9. Cookies

We use only the cookies and local storage strictly necessary to keep you signed in and to operate the Service. We do not use advertising or third-party tracking cookies.

10. Changes to this policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-app notice before they take effect.

11. Contact

Questions about this policy or your data? Email support@monthli.dev.