Bank credentials stay with Plaid
Granite uses Plaid to connect supported financial institutions and does not receive or store the login credentials you use with your bank.
Granite is designed to use the financial context required for your budget while keeping access bounded, visible, and under your control.
The short version
Granite uses Plaid to connect supported financial institutions and does not receive or store the login credentials you use with your bank.
Granite uses HTTPS/TLS when information moves between supported clients and services.
Supported assistant connections require authorization and only receive the permissions you approve.
You can disconnect financial institutions and request deletion of your Granite account and associated data.
Protection in layers
Security is not one badge or vendor. It is a series of boundaries covering how information enters Granite, where it is used, and how you control that access.
Bank connections
Granite uses Plaid to connect supported financial institutions. The connection can provide the financial information needed for Granite features, while the credentials used at your institution are not provided to Granite.
Data protection
Granite uses managed authentication, database, and application infrastructure to operate the service. Access to production information is limited to people and services that need it to provide, secure, and maintain Granite.
Account and device access
On supported phones, Granite can use Face ID, Touch ID, fingerprint, or device biometrics as an optional way to protect access to the app.
AI and assistant access
Granite can provide deterministic calculations without external AI processing. When an AI-assisted feature is enabled, Granite sends the prompt and minimum relevant context needed to provide the requested explanation.
Your controls
Granite provides separate controls for analytics, optional AI processing, connected institutions, assistant permissions, and account deletion.
Granite loads optional website analytics only after you accept the analytics preference.
Where available, external AI processing can be enabled or disabled from your Granite settings.
Linked financial institutions can be reconnected when needed or removed from Granite.
Deletion can be requested through Granite’s deletion flow or by contacting support.
Security questions
This page explains Granite’s product approach. The Privacy Policy contains the full description of data collection, processing, retention, and legal rights.
Granite uses Plaid to connect supported financial institutions and does not receive or store the login credentials you use with your bank.
Depending on the institution and connection, Granite may receive eligible account information such as balances, transactions, merchant names, amounts, and categories. Granite uses this information for the budgeting, forecasting, and insight features you request.
Granite does not sell personal information. Information may be processed by service providers that help operate features such as bank connections, infrastructure, analytics you have accepted, notifications, and optional AI-assisted experiences.
Supported assistant connections require authorization and are limited by the permissions granted to that connection. Available tools can also depend on subscription and Granite settings.
You can request deletion of your Granite account and associated data. Granite’s Privacy Policy describes the deletion timeline and limited retention exceptions.
Questions or concerns?
Contact us if you have a privacy question, need help removing a connection, or want to report a potential security issue.