How CostWatch handles your data
Individual mode analyses your bank CSV or PDF entirely in your browser. We do not send your statement or transaction data to any server.
- What we process: local parsing of the CSV or PDF file you select, grouping and lightweight heuristics to surface repeated payments, price changes and possible bank fees.
- What we never collect: your raw CSV/PDF, transaction rows, account numbers, or personally identifiable information — regardless of whether you're signed in.
- Telemetry: no telemetry by default. Any analytics will be opt-in, aggregated, and non-identifying.
Optional accounts (individual mode)
Individual mode works fully without signing in. If you choose to sign in, CostWatch automatically syncs your detected results to your account — the merchant name, how many times it charged you, the average amount, and the interval between charges — so you can see the same summary on another device. It does not sync your raw transaction rows, dates of individual charges, or the source CSV/PDF itself; those stay in that browser's local storage only.
Business mode (Xero, QuickBooks)
Business mode works differently from individual mode, because the whole point is an automatic connection — there's no file for you to keep local.
- You sign in directly with Xero or QuickBooks — CostWatch uses the industry-standard OAuth2 login flow, so we never see, ask for, or store your accounting platform password.
- Access is read-only. CostWatch requests only the ability to read transactions — it cannot create, edit, void or delete anything in your books.
- Your transactions are stored server-side (that's what makes the automatic connector work), encrypted at rest, and never sold or shared with third parties.
- Disconnect at any time from the business dashboard, or directly from Xero/QuickBooks — either way, access is revoked immediately and the stored connection is deleted.
Questions about how your data is handled? Email hello@sirnex.com.au.