Legal
Privacy Policy
Effective May 9, 2026.
CentProof is a privacy-first Mac app published by Java Mantra Corp. This policy explains what information CentProof and the centproof.com website handle, where it lives, and what we will and will not do with it.
1. Plain-English summary
CentProof is a local-first Mac app. Your imported bank and credit-card PDF statements, the SQLite database that stores parsed transactions, and the local AI model all live on your Mac. They are not uploaded to Java Mantra Corp servers, are not synchronized to any cloud service we operate, and are not used for advertising.
The only personal data we receive is what is needed to deliver purchases and provide support: your email address, billing details handled by LemonSqueezy on our behalf, and any messages you send to support@centproof.com.
2. Who we are
The data controller for CentProof is Java Mantra Corp, a California corporation headquartered in the San Francisco Bay Area, contactable at support@centproof.com.
3. What stays on your Mac
- The PDF statements you import.
- The local SQLite database CentProof creates when parsing those PDFs (transactions, balances, tags, categories, notes).
- The local AI model files, prompt history, and any AI-generated text used in Ask CentProof, merchant cleanup, and summarization.
- Your saved reports and exports, until you choose to share them.
None of the above is transmitted to Java Mantra Corp under normal operation. We have no copy and cannot retrieve any of it for you.
4. What we do receive
The website and the purchase / license flow handle a small amount of personal data:
- Purchase data via LemonSqueezy. When you buy a CentProof license, LemonSqueezy (our merchant of record) collects your name, email, billing address, payment method, and tax information. They share with us only the order details we need to issue the license: name, email, plan purchased, and an order ID. Their privacy policy applies to their handling of this data.
- License email delivery.We use Resend to email the signed license key to the address LemonSqueezy gives us. Resend processes the email envelope and message contents to deliver mail; Resend's privacy policy applies to that processing.
- Support email. If you email us we will store the message and our reply for as long as needed to provide support and meet our legal obligations.
- Update checks. When the desktop app checks for a new release it makes a request to
centproof.com/updates/.... That request reveals your IP address, the running version, and the platform target (e.g.darwin-aarch64) to us. We use this only to serve the right manifest; we do not associate it with a customer record.
5. What we do NOT do
- We do not need or store your bank password.
- We do not sync your bank statements, transactions, or AI prompts to Java Mantra Corp or any third party.
- We do not use telemetry, behavioral analytics, ad-tech pixels, or session-replay tools on the desktop app.
- We do not sell, rent, or share your personal information with advertisers or data brokers.
- We do not run ads inside the product.
- We do not access “saved passwords”, “autofill data”, or other macOS Keychain items belonging to other apps.
6. Cookies and the website
centproof.com is a marketing site. We do not set advertising cookies. We do not run third-party analytics scripts. If we add aggregate, privacy-respecting analytics in the future (for example, Plausible or a self-hosted equivalent that does not use cookies and does not identify individuals) we will update this policy.
7. Your rights
Depending on where you live (for example, the EU/UK under GDPR or California under the CCPA/CPRA) you may have the right to access, correct, export, or delete personal data we hold about you, and to object to or restrict its processing. Because the only personal data we typically hold is your purchase email and any support conversation, fulfilling these requests usually means a single email exchange. Send requests to support@centproof.com.
8. Children
CentProof is not directed at children under 13 and we do not knowingly collect personal data from children.
9. Security
The desktop app encrypts imported PDFs at rest with AES-256-GCM using a per-install key stored in the macOS Keychain. License keys are signed with ed25519 and verified offline, so we never need to phone home to validate your license. The website is served over HTTPS.
10. Changes to this policy
We will update this policy as the product evolves. Material changes will be highlighted on this page and reflected in the “effective” date at the top.
11. See also
The plain-English overview of how CentProof handles data lives at /privacy. The Terms of Service are at /legal/terms.