MilesVault (“we”, “us”) is a rewards-tracking app that turns your credit-card statements into a ledger of the points and miles you earn, helping you track and optimise your card rewards and airline miles across your loyalty programmes. It is operated by Ameya Karve as an individual. This policy explains what we collect, why, and what we do with it. Questions or requests: support@milesvault.com.
Information we collect
- Account & identity. When you sign in with Discord, we receive your Discord username, email address, avatar, and user ID.
- Discord membership. With your permission, we read whether your Discord account is a member of our server and holds our member role — solely to verify your eligibility to access MilesVault. We do not read your messages, your other servers, or any other Discord content.
- Financial information you provide. The statements and transaction emails you upload or forward — including merchant names, amounts, dates, account and card identifiers, and reward balances — which we extract into your ledger.
- Feedback. Messages and optional screenshots you submit through the in-app feedback button.
- Operational logs. Standard technical logs (e.g. request metadata) used to run and secure the service.
How we use your information
- Authenticate you and decide whether you may access the service.
- Read your statements and use AI to draft ledger entries for you to review and approve — nothing is recorded without your approval.
- Maintain your ledger and show your balances, spending, and rewards.
- Respond to your feedback and improve the product.
Where your data is processed and stored
Your data is processed and stored on Cloudflare’s global network (Durable Objects, R2, and D1). Statement processing uses Cloudflare Workers AI — your statements are not sent to any third-party AI provider. Sign-in and membership verification are handled by Discord.
Sharing
We do not sell your data. We share it only with the infrastructure providers needed to run MilesVault — Discord (sign-in & membership) and Cloudflare (hosting, AI processing, storage) — and where required by law.
Retention and deletion
We keep your data until you delete it or ask us to. You can remove captured statements and ledger entries within the app, or request deletion of your account and all associated data by emailing support@milesvault.com.
Security
We use reasonable technical measures to protect your data. No system is perfectly secure, and MilesVault is currently in beta — please keep that in mind.
Your rights
You may access, correct, or delete your information at any time, in-app or by contacting us.
Children
MilesVault is not intended for anyone under 18.
Changes
We may update this policy; we’ll revise the “Last updated” date above when we do.