Privacy Policy
Last updated: March 9, 2026
1. Introduction
BankReconPro ("we", "our", "the Service") is a bank reconciliation platform operated by NobleBlocks Ltd. This Privacy Policy explains how we collect, use, protect, and share information when you use our platform.
2. Information We Collect
Account Information
- Name, email address, username
- Firm/organization name
- Role and team membership
Financial Data
- Bank statements and general ledger exports you upload
- Transaction details (dates, amounts, descriptions, references)
- Reconciliation results, match data, and exception reports
- Client company information
Usage Data
- Login timestamps, IP addresses, browser information
- Actions performed (audit logs)
- Session duration and feature usage
3. How We Use Your Information
- Provide the Service: Process reconciliations, match transactions, generate reports
- Security: Authenticate access, log activity, prevent unauthorized use
- Improve the Service: Analyze usage patterns (aggregated, non-personally-identifiable)
- Communication: Service notifications, security alerts, and account-related messages
4. Data Storage & Security
- All data is stored on encrypted servers hosted on AWS (US East region)
- All connections use TLS 1.2+ encryption (HTTPS)
- Database backups are encrypted at rest
- Access is restricted by role — junior staff only see clients they are assigned to
- Sessions expire automatically after 30 days of inactivity
- All user actions are logged in an immutable audit trail
5. Data Sharing
We do not sell, rent, or share your financial data with third parties. Data may be shared only:
- With team members within your firm, as configured by your administrator
- With infrastructure providers (AWS) who process data on our behalf under strict agreements
- When required by law or valid legal process
6. AI Processing
Certain features use AI models (OpenAI) to generate narrative reports and provide chat assistance. When you use these features:
- Only the minimum data required is sent to the AI provider
- Transaction-level data sent for analysis is not stored by the AI provider
- AI features are optional — core reconciliation does not require AI
7. Data Retention
- Reconciliation data is retained as long as your account is active
- Deleted reconciliations are permanently removed within 30 days
- Audit logs are retained for a minimum of 7 years (regulatory compliance)
- You may request a full data export or account deletion at any time
8. Your Rights
You have the right to:
- Access all personal data we hold about you
- Correct inaccurate data
- Request deletion of your account and data
- Export your data in standard formats (Excel, PDF)
- Withdraw consent for optional processing (e.g., AI features)
9. Cookies
We use only essential cookies required for authentication and session management. We do not use tracking cookies, advertising cookies, or third-party analytics.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via the platform. Continued use of the Service after changes constitutes acceptance.
11. Contact
For privacy questions or data requests, contact us at info@nobleblocks.com.