Ping Island

PairGoal

Privacy policy

Effective date: July 11, 2026 · Last updated: July 19, 2026

1. Who we are.

PairGoal is published by Ping Island LLC ("Ping Island," "we," "us"), a Texas limited liability company. This policy explains what PairGoal — the app and its supporting services — collects, how it's used, and the choices you have. PairGoal is intended for use by residents of the United States. Questions: support@pingisland.io.

2. The short version.

PairGoal is built to hold as little of your data as possible. We don't sell data — personal or sensitive — we don't run ads, and there are no third-party analytics or tracking SDKs in the app. We read your budget from YNAB only with your permission, we store what's needed to run your shared goals, and you can have everything deleted.

3. What we collect.

(a) Account information. Your email address and a password for sign-in (sign-in is handled by AWS Cognito; we never see your password), plus the display name and household name you choose. When you invite your partner, we collect nothing about them: the invitation is a link you share yourself, and we store no name or contact information for your partner until they accept and create their own account.

(b) YNAB data, with your permission. When you connect PairGoal to YNAB, you authorize us — through YNAB's own sign-in (OAuth) — to read budget information from your YNAB account: category names, budgeted amounts and balances, goal targets, the names and balances of the accounts you track in YNAB (including debt accounts), and transaction amounts. We use this to show goal progress and to suggest where a goal could be accelerated, and we write goal updates back to your budget. To keep the app fast and stay within YNAB's rate limits, we keep a cached copy of this budget information on our servers; it is re-fetched from YNAB and overwritten continuously as your household uses the app (typically within a minute) and kept while your household is active. We never see or store your YNAB password — only a secure access token and the account identifier YNAB assigns you. You can revoke our access at any time from YNAB's own settings. PairGoal never connects to your bank: it can read the balances you've chosen to sync into YNAB, but it cannot reach your accounts or move real money.

(c) Goals and agreements. The shared goals you and your partner create — including any goal photo and "why it matters" note you attach — plus the acceleration rules, boosts, approvals, and comments between you.

(d) Service logs. Standard technical logs generated when the app talks to our servers (such as timestamps, request details, and network addresses), used for security and debugging and kept for up to 90 days. Some log entries include app activity — for example, an amount or the note attached to a boost — but never your password or YNAB token.

4. How we use it.

To run the app: showing goal progress, syncing with YNAB, operating the shared-goal features between you and your partner, and answering support requests. We do not use your data for advertising, we do not build profiles of you, and we do not sell, rent, or trade it — that includes the budget and account information we cache from YNAB, which we never sell or share with data brokers.

5. What your partner can see.

PairGoal is built for two people sharing one budget, so both members of a household see the same information: the connected YNAB budget's category and account names, amounts, and balances, the shared goals and their progress, and all goal activity — boosts, approvals, and the comments attached to them. There is no private view between partners inside a household. Connect a budget only if you're comfortable with your partner seeing what's in it.

6. How long we keep it.

Your YNAB access token: until you disconnect YNAB or until we process your account deletion. Cached budget information: continuously overwritten while your household is active, deleted when we process your account deletion. Goals, agreements, and account details: until we process your account deletion. Service logs: up to 90 days. When you ask us to delete your account, we complete the deletion — everything described in Section 3 — within 30 days.

7. How we protect it.

YNAB access uses OAuth only — PairGoal is architecturally incapable of holding your bank or YNAB credentials. Data is encrypted in transit (TLS) and at rest, stored on Amazon Web Services infrastructure in the United States, with access limited to what operating the service requires. YNAB access tokens are additionally encrypted with a dedicated key before they are stored.

8. Service providers.

We use a small number of providers to run PairGoal: Amazon Web Services (hosting, storage, and sign-in) and Apple (app distribution). They process data only to provide their services to us and are bound by their own security commitments. We use no third-party analytics, advertising, or data-broker services.

9. Your choices and rights.

You can disconnect PairGoal from YNAB at any time from your YNAB account settings, which cuts off our access. To delete your PairGoal account and data, request deletion from inside the app (Settings → Delete account), from the account deletion page on this site, or by emailing support@pingisland.io — every route reaches us the same way, and we complete deletion requests within 30 days. You can also ask us for a copy of your data or ask us to correct it. We don't track you across other companies' websites or apps, and for that reason we do not respond to browser "Do Not Track" signals — there is nothing to turn off.

10. Children.

PairGoal is not directed to children. You must be 18 or older to create an account (see the Terms of Service). We do not knowingly collect personal information from children under 13; if you believe a child has provided us information, email support@pingisland.io and we will delete it.

11. Changes to this policy.

If we change this policy, we'll update the date at the top. For material changes — especially anything that expands what we collect or who can see it — we'll notify you in the app or by email before the change takes effect, and where YNAB's rules require it, we'll ask for your consent again before accessing anything new.

12. Contact.

Ping Island LLC · Texas, USA · support@pingisland.io

Terms of service Delete account Support