MyPortflow

Privacyverklaring

Privacy statement

Versie 1.2 · 30 september 2026

In het kort

1. Wie is verantwoordelijk

MyPortflow is van Ricardo Cornelissen, handelend onder de naam MyPortflow, in Nederland. Hij is de verwerkingsverantwoordelijke in de zin van de Algemene verordening gegevensbescherming (AVG).

E-mail
info@myportflow.app
In de app
de postbus (de envelop), versleuteld

De inschrijving bij de Kamer van Koophandel volgt. Daarna staan het KvK-nummer en het adres hier.

2. Wat we verwerken, waarom en hoe lang

Op je eigen apparaat (niet bij ons)

Je plan, je profielen, je pincode, je herstelsleutel, een eigen API-sleutel en je akkoord op de voorwaarden staan in de opslag van je browser. Die komen niet bij ons. Wis je die opslag, dan zijn ze weg; wij kunnen niets terugzetten.

Je Klant-ID

Een nummer dat op je apparaat wordt afgeleid van een sleutelpaar. De server bewaart het nummer, de publieke sleutel, wanneer het is ontstaan en voor het laatst langskwam, en je licentie (Basis, Pro of Premium, de bron, de begin- en einddatum, en of je een proefperiode had).

Waarom
cloudback-up, de postbus en je licentie
Grondslag
uitvoering van de overeenkomst (art. 6 lid 1 sub b AVG)
Hoe lang
zolang je het gebruikt, of tot je vraagt om verwijdering. Een Klant-ID met een kluis waarin nooit iets heeft gestaan, gaat na dertig dagen automatisch weg.

Cloudback-up (alleen als je die aanzet)

Versleutelde pakketjes die wij niet kunnen openen, met wat een server nodig heeft om ze te bewaren: hoe groot de kluis is, wanneer hij voor het laatst is bijgewerkt, welke apparaten eraan gekoppeld zijn (met de naam die het apparaat zich geeft, zoals "Chrome op Windows") en hashes van hun toegangssleutels.

Waarom
je plan op een tweede apparaat, en terughalen
Grondslag
uitvoering van de overeenkomst
Hoe lang
tot je de kluis wist in de app, of tot je vraagt om verwijdering

De postbus

Een bericht aan ons wordt op je apparaat versleuteld met de sleutel van de beheerder. De server bewaart het en kan het niet lezen; alleen de maker kan het openen. Bij nieuwe post krijgt de maker een seintje per e-mail zonder inhoud.

Grondslag
uitvoering van de overeenkomst
Hoe lang
een gesprek waarin dertig dagen niets gebeurt, gaat automatisch weg

De Community

Je zelfgekozen naam, en wat je in het kanaal schrijft, met tijd en categorie. Dat staat leesbaar op de server, zodat het gemodereerd kan worden. Privégesprekken staan versleuteld op de server; die kunnen wij niet lezen. Een melding bewaart wie meldde, over welk bericht en de reden. Wie je blokkeert, staat bij je naam.

Grondslag
uitvoering van de overeenkomst; voor moderatie en meldingen ook onze wettelijke plicht onder de Digital Services Act (art. 6 lid 1 sub c)
Hoe lang
berichten in het kanaal negentig dagen; een privégesprek tot dertig dagen stilte of tot het gesloten wordt; een afgehandelde melding zes maanden na de afhandeling; je naam tot je vraagt om verwijdering

Koersen, nieuws en jaarcijfers

Voor koersen, nieuwskoppen en jaarcijfers stuurt de app de beurssymbolen van je fondsen naar onze server, zonder Klant-ID. De server vraagt ze op bij de koersbron (nu Yahoo Finance) en bewaart de lijst niet. Lukt dat niet, dan vraagt de app de koersbron rechtstreeks; die ziet dan je IP-adres en de symbolen. Om bij een fonds de notering te vinden op de beurs waar je kocht, stuurt de server de ISIN van dat fonds en een beurscode naar OpenFIGI; wie je bent of wat je verder bezit gaat niet mee.

Flow AI

Grondslag
uitvoering van de overeenkomst

Betalen op de website (Stripe)

Koop je Pro of Premium op de website, dan reken je af bij Stripe. Wij zien je betaalgegevens niet. Van Stripe krijgen we het e-mailadres dat je daar invult, het bedrag, de datum, een kenmerk van de betaling en de stand van een abonnement, gekoppeld aan je Klant-ID.

Waarom
je licentie, en je kunnen helpen als je je Klant-ID kwijtraakt
Grondslag
uitvoering van de overeenkomst; voor de administratie een wettelijke plicht
Hoe lang
je e-mailadres tot je vraagt om verwijdering. De transactie zelf (bedrag, datum, factuur) bewaren we zeven jaar, omdat de fiscale bewaarplicht dat eist.

De Android-app (Google Play)

De Android-app is deze zelfde site, in Chrome. Voor de app geldt dus alles op deze pagina. Hij verkoopt nu niets. Zodra hij dat wel doet, via Google Play, vullen we deze verklaring aan.

Het logboek van de server

Van elk verzoek: de tijd, het adres binnen de server, de uitkomst, hoe lang het duurde, een kort kenmerk van de kluis en je IP-adres (dat Cloudflare doorgeeft).

Waarom
beveiliging, misbruik afremmen en storingen vinden
Grondslag
gerechtvaardigd belang: een veilige, werkende dienst (art. 6 lid 1 sub f)
Hoe lang
veertien dagen. De snelheidsrem houdt een IP-adres een paar minuten in het geheugen.

Statistiek

Eén keer per nacht telt de server hoeveel Klant-ID's, kluizen en licenties er zijn en hoe de server het doet. Alleen getallen: geen Klant-ID, geen IP-adres.

3. Wie het nog meer ziet

Onze server staat in Nederland, op eigen apparatuur. Deze partijen komen erbij:

We verkopen geen gegevens en delen niets voor reclame.

4. Buiten de Europese Unie

Cloudflare, Google en Stripe zijn Amerikaanse bedrijven. Gegevens die bij hen komen, kunnen in de Verenigde Staten worden verwerkt. Ze zijn gecertificeerd onder het EU-VS Data Privacy Framework, en waar dat niet geldt, werken ze met de standaardcontractbepalingen van de Europese Commissie.

5. Cookies en opslag op je apparaat

Wij zetten geen cookies. De app gebruikt de opslag van je browser alleen om te werken: daar staat je plan. Het lettertype staat op onze eigen site; bij het openen gaat er niets naar Google. Cloudflare kan een strikt noodzakelijke beveiligingscookie zetten om misbruik te weren.

6. Beveiliging

Je plan wordt op je apparaat versleuteld (AES-256-GCM) voordat het ergens heen gaat. Met een pincode is het ook op je eigen apparaat versleuteld. Wat bij je Klant-ID hoort, is ondertekend met een sleutel die je apparaat nooit verlaat, al het verkeer loopt over TLS, en de server heeft geen open poort naar het internet.

7. Je rechten

Je hebt recht op inzage, correctie, verwijdering, beperking, overdraagbaarheid en bezwaar (tegen wat we op grond van gerechtvaardigd belang doen). Veel daarvan doe je zelf in de app: je plan exporteren, je kluis wissen, je Klant-ID bekijken. Voor de rest: stuur een bericht via de postbus of mail naar info@myportflow.app, met je Klant-ID erbij. Zonder dat nummer kunnen we niet zien welke gegevens van jou zijn (art. 11 AVG). Je krijgt binnen een maand antwoord.

Ben je het niet met ons eens, dan kun je een klacht indienen bij de Autoriteit Persoonsgegevens.

7a. Je gegevens laten verwijderen

Er is geen account met een wachtwoord. Wat bij jou hoort, hangt aan je Klant-ID: je vindt het in de app bij Instellingen → Beveiliging & gegevens, met een knop om het te kopiëren.

Zelf, meteen

In de app, bij Instellingen → Beveiliging & gegevens → Kluis van de server wissen. Dat verwijdert je versleutelde kluis van de server, en het verband tussen je Klant-ID en die kluis. Je plan op je eigen toestel blijft staan; dat verwijder je door de app te verwijderen, of de gegevens van de site in je browser te wissen.

Alles, via ons

Stuur een bericht via de envelop in de app, of mail naar info@myportflow.app met je Klant-ID en het verzoek om alles te verwijderen. Binnen een maand verwijderen we alles wat bij dat Klant-ID hoort: je kluis, je licentie, je postbus, je naam en je berichten in de Community, je privégesprekken, en het e-mailadres dat je bij een betaling op de website opgaf. Een licentie (Pro of Premium) is daarna weg.

Wat blijft, en hoe lang

8. Geen geautomatiseerde besluiten

Er worden geen besluiten over je genomen die rechtsgevolgen hebben of je in aanmerkelijke mate treffen. Flow AI geeft informatie en neemt geen beslissingen. Wat automatisch gebeurt, zijn technische grenzen: de daglimiet, de snelheidsrem en het opruimen van lege kluizen.

9. Leeftijd

MyPortflow is bedoeld voor mensen van 18 jaar en ouder.

10. Wijzigingen

Deze verklaring draagt een versie en een datum. Verandert er iets wezenlijks, dan zie je dat in de app, samen met de voorwaarden, en vragen we opnieuw om je akkoord.

© 2026 MyPortflow · myportflow.app

In short

1. Who is responsible

MyPortflow belongs to Ricardo Cornelissen, trading as MyPortflow, in the Netherlands. He is the controller within the meaning of the General Data Protection Regulation (GDPR).

Email
info@myportflow.app
In the app
the mailbox (the envelope), encrypted

Registration with the Dutch Chamber of Commerce (KvK) is pending. After that, the KvK number and the address will be listed here.

2. What we process, why and for how long

On your own device (not with us)

Your plan, your profiles, your PIN, your recovery key, your own API key and your agreement to the terms are kept in your browser's storage. They do not reach us. If you clear that storage, they are gone; we cannot restore anything.

Your Customer ID

A number derived on your device from a key pair. The server stores the number, the public key, when it was created and last seen, and your licence (Basic, Pro or Premium, its source, start and end date, and whether you had a trial).

Why
cloud backup, the mailbox and your licence
Legal basis
performance of the contract (Art. 6(1)(b) GDPR)
How long
as long as you use it, or until you ask for deletion. A Customer ID with a vault that never held anything is removed automatically after thirty days.

Cloud backup (only if you switch it on)

Encrypted parcels we cannot open, with what a server needs to keep them: how big the vault is, when it was last updated, which devices are linked to it (with the name the device gives itself, such as "Chrome on Windows") and hashes of their access keys.

Why
your plan on a second device, and restoring it
Legal basis
performance of the contract
How long
until you erase the vault in the app, or until you ask for deletion

The mailbox

A message to us is encrypted on your device with the administrator's key. The server stores it and cannot read it; only the maker can open it. When new mail arrives, the maker gets an email notice without content.

Legal basis
performance of the contract
How long
a conversation in which nothing happens for thirty days is removed automatically

The Community

Your chosen name, and what you write in the channel, with time and category. That is stored readable on the server, so it can be moderated. Private conversations are stored encrypted on the server; we cannot read them. A report keeps who reported, which message and the reason. Whoever you block is stored with your name.

Legal basis
performance of the contract; for moderation and reports also our legal obligation under the Digital Services Act (Art. 6(1)(c))
How long
channel messages ninety days; a private conversation until thirty days of silence or until it is closed; a handled report six months after it was handled; your name until you ask for deletion

Prices, news and annual figures

For prices, news headlines and annual figures the app sends the ticker symbols of your funds to our server, without a Customer ID. The server requests them from the price source (currently Yahoo Finance) and does not keep the list. If that fails, the app asks the price source directly; it then sees your IP address and the symbols. To find a fund's listing on the exchange where you bought it, the server sends that fund's ISIN and an exchange code to OpenFIGI; who you are and what else you hold do not go with it.

Flow AI

Legal basis
performance of the contract

Paying on the website (Stripe)

If you buy Pro or Premium on the website, you pay at Stripe. We do not see your payment details. From Stripe we receive the email address you enter there, the amount, the date, a payment reference and the state of a subscription, linked to your Customer ID.

Why
your licence, and helping you if you lose your Customer ID
Legal basis
performance of the contract; for the accounts a legal obligation
How long
your email address until you ask for deletion. The transaction itself (amount, date, invoice) is kept for seven years, because Dutch tax law requires it.

The Android app (Google Play)

The Android app is this same site, in Chrome. So everything on this page applies to the app. It sells nothing at the moment. Once it does, through Google Play, we will add to this statement.

The server log

For every request: the time, the address within the server, the outcome, how long it took, a short mark of the vault and your IP address (passed on by Cloudflare).

Why
security, slowing down abuse and finding faults
Legal basis
legitimate interest: a safe, working service (Art. 6(1)(f))
How long
fourteen days. The rate limiter holds an IP address in memory for a few minutes.

Statistics

Once a night the server counts how many Customer IDs, vaults and licences there are and how the server is doing. Numbers only: no Customer ID, no IP address.

3. Who else sees it

Our server is in the Netherlands, on our own hardware. These parties are involved:

We do not sell data and share nothing for advertising.

4. Outside the European Union

Cloudflare, Google and Stripe are American companies. Data that reaches them may be processed in the United States. They are certified under the EU-US Data Privacy Framework, and where that does not apply, they use the European Commission's standard contractual clauses.

5. Cookies and storage on your device

We set no cookies. The app uses your browser's storage only to work: that is where your plan is. The typeface is hosted on our own site; nothing goes to Google when you open it. Cloudflare may set a strictly necessary security cookie to keep out abuse.

6. Security

Your plan is encrypted on your device (AES-256-GCM) before it goes anywhere. With a PIN it is also encrypted on your own device. Everything that belongs to your Customer ID is signed with a key that never leaves your device, all traffic runs over TLS, and the server has no open port to the internet.

7. Your rights

You have the right of access, rectification, erasure, restriction, portability and objection (to what we do on the basis of legitimate interest). Much of it you do yourself in the app: export your plan, erase your vault, view your Customer ID. For the rest: send a message through the mailbox or email info@myportflow.app, with your Customer ID. Without that number we cannot tell which data is yours (Art. 11 GDPR). You will get an answer within a month.

If you disagree with us, you can lodge a complaint with the Dutch Data Protection Authority, the Autoriteit Persoonsgegevens, or with the authority in your own country.

7a. Having your data deleted

There is no account with a password. What belongs to you is tied to your Customer ID: you find it in the app under Settings → Security & data, with a button to copy it.

Yourself, right away

In the app, under Settings → Security & data → Wipe vault from server. That removes your encrypted vault from the server, and the link between your Customer ID and that vault. Your plan on your own device stays; you remove it by uninstalling the app, or by clearing the site's data in your browser.

Everything, through us

Send a message through the envelope in the app, or email info@myportflow.app with your Customer ID and the request to delete everything. Within a month we delete everything tied to that Customer ID: your vault, your licence, your mailbox, your name and messages in the Community, your private conversations, and the email address you gave when paying on the website. A licence (Pro or Premium) is gone after that.

What stays, and for how long

8. No automated decisions

No decisions are made about you that have legal effects or significantly affect you. Flow AI gives information and makes no decisions. What happens automatically are technical limits: the daily limit, the rate limiter and cleaning up empty vaults.

9. Age

MyPortflow is meant for people aged 18 and over.

10. Changes

This statement carries a version and a date. If something material changes, you will see it in the app, together with the terms, and we will ask for your agreement again.

© 2026 MyPortflow · myportflow.app