This Privacy Policy explains how Ledger5|5, also referred to as “Ledger,” collects, uses, processes, protects, retains, and discloses information.
Ledger5|5 is a personal financial recordkeeping application operated by Diamond Piper Software LLC.
By creating an account or using Ledger5|5, you acknowledge the practices described in this Privacy Policy.
1. Overview
Ledger5|5 helps users maintain manually entered or imported personal financial records, including account names, balances, transactions, payees, categories, schedules, budgets, and reconciliation information.
Ledger5|5 is not a bank, financial institution, payment account, credit-reporting service, accounting firm, or professional adviser.
Ledger5|5 does not automatically connect to financial institutions and does not require bank usernames or passwords.
We seek to collect only information reasonably necessary to provide, secure, maintain, support, and improve Ledger5|5.
Financial records may remain private and sensitive even when they do not contain complete account numbers, payment-card numbers, or banking credentials.
2. Eligibility and Children’s Privacy
Ledger5|5 accounts are intended only for individuals who are at least 18 years old.
Ledger5|5 is not directed to children or minors, and we do not knowingly collect personal information from anyone under 18.
If we learn that a person under 18 has created an account or provided personal information, we may suspend the account and take reasonable steps to delete the information.
A parent or legal guardian who believes a minor has provided personal information may contact us at contact@diamondpiper.com.
3. Information We Collect
Account information
When you create or maintain a Ledger5|5 account, we may collect:
- Your name.
- Your email address.
- Password authentication data stored in hashed form.
- Account status and registration information.
- Access permissions and administrative status.
- Application settings and preferences.
- Information concerning applicable storage, import, backup, or feature limits.
- Subscription, trial, payment, renewal, cancellation, and account-retention status.
- Communications you send concerning your account, support requests, or security concerns.
Financial records you provide
Ledger5|5 stores information that you voluntarily enter, create, upload, or import.
This may include:
- Financial account names and account types.
- Optional partial account identifiers, such as the last four digits.
- Opening, current, cleared, and reconciled balances.
- Payments, deposits, transfers, and scheduled transactions.
- Transaction dates, amounts, references, and status.
- Payees, categories, descriptions, and memos.
- Budgets.
- Reconciliation records.
- CSV files and transaction information submitted through import features.
- Export settings and generated export records.
- Customer backup files submitted through backup or restore features.
These records may reveal private financial or personal activity, including:
- Income and employment information.
- Debts and recurring expenses.
- Merchants and purchasing activity.
- Healthcare-related payments.
- Charitable activity.
- Travel.
- Housing information.
- Personal relationships or household activity.
- Other spending and financial patterns.
Payment information
When you purchase a Ledger5|5 subscription, payment information is collected and processed by Stripe or another disclosed payment processor.
Ledger5|5 may receive limited information such as:
- Payment status.
- Subscription status.
- Renewal date.
- Billing contact information.
- Customer or transaction identifiers.
- The last four digits or general type of a payment method when provided by the payment processor.
Ledger5|5 does not store complete debit-card or credit-card numbers on its own servers.
Technical and security information
Certain information may be collected automatically for authentication, security, troubleshooting, fraud prevention, and service operation.
This may include:
- IP addresses.
- Browser type and version.
- Device and operating-system information.
- Login dates and times.
- Failed login attempts.
- Session and authentication information.
- Two-factor authentication status, encrypted authenticator secrets, hashed recovery-code records, verification attempts, and the date security settings were changed.
- Pages requested.
- Application errors.
- Server and security logs.
- Administrative actions.
- Information used to identify unauthorized access, misuse, attacks, or technical problems.
Support and communications
When you contact us, we may collect:
- Your contact information.
- The contents of your communication.
- Information concerning your account or technical issue.
- Files, screenshots, or records you voluntarily provide.
- Information concerning how the matter was investigated and resolved.
You should remove unnecessary financial or personal information before sending screenshots, files, or support communications.
4. Sources of Information
We may obtain information:
- Directly from you when you register, enter records, import files, create backups, restore information, change settings, or contact us.
- Automatically through your browser, device, session, and use of Ledger5|5.
- From service providers that help operate, secure, host, communicate about, or process payments for Ledger5|5.
- From another person when that person is legally authorized to communicate or act concerning an account.
We do not purchase consumer financial profiles from data brokers.
5. Information You Must Not Enter
You must not enter, upload, import, or store the following information in Ledger5|5:
- Bank or financial-institution login credentials.
- Social Security numbers.
- Complete debit-card or credit-card numbers.
- Card security codes.
- Personal identification numbers.
- One-time authentication codes.
- Routing numbers.
- Complete financial-account numbers.
- Passport numbers.
- Driver’s-license numbers.
- Government identification numbers.
- Information you do not have the legal right to possess or process.
This restriction applies to:
- Account names.
- Payees.
- Categories.
- References.
- Memos.
- Transaction descriptions.
- CSV files.
- Backup files.
- Support messages.
- Screenshots.
- Every other user-provided field or file.
You are responsible for reviewing imported and uploaded files and removing information Ledger5|5 does not need.
Optional last-four account digits are intended only to distinguish similar accounts and must not be used to store a complete account number.
6. How We Use Information
We may use information to:
- Create and maintain user accounts.
- Authenticate users.
- Store and display user records.
- Provide transaction entry, search, import, export, backup, and restore functions.
- Provide schedules, budgets, reports, and reconciliation features.
- Apply account settings, permissions, and limits.
- Process payments and subscriptions.
- Send account, service, legal, and security communications.
- Respond to questions and support requests.
- Diagnose and correct errors.
- Maintain and improve service performance.
- Detect and prevent fraud, abuse, attacks, and unauthorized access.
- Investigate security incidents and Terms of Service violations.
- Maintain reasonable business, security, billing, and audit records.
- Establish, exercise, or defend legal claims.
- Comply with applicable legal obligations.
- Protect Ledger5|5, its users, service providers, and others.
Personal and financial records are not used to create advertising profiles or deliver targeted advertising.
7. Selling and Disclosure of Personal Information
No sale of personal information
Diamond Piper Software LLC does not sell, rent, trade, or license personal or financial information to data brokers, advertisers, or unrelated third parties.
Ledger5|5 does not disclose personal or financial information for third-party behavioral advertising or unrelated commercial marketing.
Operating an online application requires limited processing by service providers. Information may therefore be disclosed or made available only as reasonably necessary to operate, host, secure, maintain, support, back up, restore, communicate about, or process payments for Ledger5|5.
Information may also be disclosed:
- At your direction or with your permission.
- To comply with applicable law or legal process.
- To protect legal rights or safety.
- In connection with a business transfer as described in this policy.
8. Service Providers
Ledger5|5 may use third-party providers for essential business and technical functions, including:
- Website, application, server, and database hosting.
- Content delivery and network security.
- Domain-name and internet infrastructure.
- Email delivery and account communications.
- Backup, recovery, and data storage.
- Security monitoring and fraud prevention.
- Technical support and error diagnosis.
- Payment and subscription processing.
Depending on the service performed, a provider may process:
- Account information.
- Email addresses.
- IP addresses.
- Browser and device information.
- Technical and security logs.
- Billing or payment status.
- Customer records.
- Backup information.
Providers are expected to process information only for the services supplied to Ledger5|5, subject to their contracts, policies, and applicable law.
We do not authorize service providers to use Ledger5|5 customer records for their own unrelated advertising or marketing.
9. Cookies and Session Information
Ledger5|5 uses essential cookies and similar session technologies to:
- Keep users signed in.
- Maintain authenticated sessions.
- Remember necessary account preferences.
- Protect forms against unauthorized submissions.
- Maintain security and prevent misuse.
- Support essential application functions.
Ledger5|5 does not use cookies for third-party behavioral advertising.
Disabling essential cookies may prevent sign-in, security, and other application features from working correctly.
10. Email and Service Communications
We may use your email address to send:
- Account registration messages.
- Password-reset messages.
- Security alerts.
- Notices concerning suspected unauthorized access.
- Important service announcements.
- Changes to legal terms or policies.
- Support responses.
- Trial, subscription, payment, expiration, and retention communications.
Service and security communications are part of operating your account and may not always be optional.
Ledger5|5 does not sell email addresses or provide them to unrelated advertisers.
11. Recordkeeping, Accuracy, and User Responsibility
Ledger5|5 is a personal recordkeeping tool.
Ledger5|5 does not guarantee that balances, calculations, imported records, schedules, budgets, reports, exports, backups, restores, or reconciliation results are complete, current, or error-free.
You are responsible for reviewing entries and verifying important balances and transactions against statements and records provided by your financial institutions.
Ledger5|5 should not be treated as the official record of a bank, creditor, employer, government agency, tax authority, or other third party.
Ledger5|5 does not provide banking, accounting, tax, investment, credit, insurance, or legal advice.
12. Data Security
We use reasonable administrative, technical, and organizational safeguards intended to reduce the risk of unauthorized access, alteration, disclosure, destruction, or loss.
Safeguards may include:
- HTTPS connections.
- Password hashing.
- Authentication controls.
- Authenticator-app two-factor authentication, encrypted authenticator secrets, hashed recovery codes, and verification rate limiting when enabled.
- Customer-scoped database access.
- Login rate limiting.
- Security logging.
- Restricted administrative access.
- Software and security updates.
- Data backups.
- Access controls.
- Investigation of suspicious activity.
No website, application, server, database, backup, or electronic transmission can be guaranteed to be completely secure.
You are responsible for:
- Choosing a strong and unique password.
- Protecting your login information.
- Protecting the device containing your authenticator app and storing recovery codes in a secure location.
- Securing the email account associated with Ledger5|5.
- Restricting access to your devices.
- Signing out on shared devices.
- Promptly reporting suspected unauthorized access.
13. Security Incidents
If a suspected security incident occurs, we may:
- Investigate the incident.
- Preserve relevant records.
- Restrict affected accounts.
- Reset passwords or authentication sessions.
- Contain and remediate the issue.
- Work with hosting, security, legal, insurance, or technical providers.
- Notify affected users.
- Notify regulators, law enforcement, or other parties when required or reasonably appropriate.
The timing, content, and method of any notification will depend on the circumstances and applicable legal requirements.
14. Backups and Data Loss
Ledger5|5 may maintain routine backups for disaster recovery and service restoration.
Backups are not a guarantee against:
- Data loss.
- Data corruption.
- Accidental deletion.
- User error.
- Software errors.
- Security incidents.
- Hosting failures.
- Provider outages.
- Hardware failures.
- Incomplete restorations.
- Other interruptions.
You should periodically export your records or download personal backups and maintain an independent copy in a secure location.
Ledger5|5 should not be the only copy of information that would be difficult or impossible to replace.
15. Retention
Information may be retained for as long as reasonably necessary to:
- Provide and maintain accounts.
- Preserve records selected by users.
- Operate backup and recovery systems.
- Process payments and maintain billing records.
- Provide support.
- Maintain security and audit records.
- Investigate misuse or unauthorized access.
- Resolve disputes.
- Enforce agreements.
- Satisfy legal, accounting, or regulatory obligations.
- Establish, exercise, or defend legal claims.
Ledger5|5 trial accounts are currently offered for six months. If a trial expires without being converted to a paid or complimentary account, the account may remain available in read-only form and becomes eligible for permanent deletion one year after the trial began.
If a paid subscription ends, the account may remain available in read-only form and becomes eligible for permanent deletion one year after the paid-through date. Ledger5|5 may send advance expiration and deletion-eligibility notices to the email address associated with the account.
When information is no longer reasonably necessary, it may be deleted, anonymized, aggregated, or securely disposed of.
Residual copies may remain temporarily in routine backups until those backups are replaced or expire.
Security logs and records may be retained separately from active financial records when reasonably necessary for fraud prevention, security, legal compliance, or dispute resolution.
16. Account Deletion
Available Ledger5|5 tools may allow you to delete your account or request account deletion.
You may also contact us at contact@diamondpiper.com.
Before deleting your account, you should export any information you wish to retain.
Following deletion:
- Access to the account may end immediately.
- Active financial records may be deleted.
- Deleted records may not be recoverable.
- Residual copies may remain temporarily in routine backups.
- Information may be retained when reasonably necessary for security, fraud prevention, billing, dispute resolution, legal compliance, or enforcement of agreements.
17. Your Privacy Choices and Rights
Depending on where you live and subject to applicable law, you may have the right to request:
- Confirmation of whether we process your personal information.
- Access to available personal information.
- Correction of inaccurate account information.
- Deletion of certain personal information.
- A copy of certain information in a portable format.
- Information about categories of information collected.
- Information about categories of service providers or other recipients.
- Withdrawal of consent when processing is based on consent.
- Review of a denied privacy request when applicable law provides an appeal right.
You may submit a request to contact@diamondpiper.com.
We may need to verify your identity before completing a request. Verification may include confirming access to the email address associated with the account or requesting other information reasonably necessary to prevent unauthorized disclosure or deletion.
We may deny or limit a request when permitted by law, including when information is reasonably necessary to:
- Protect account security.
- Prevent fraud.
- Comply with legal obligations.
- Complete a transaction requested by you.
- Exercise or defend legal claims.
- Protect another person’s rights.
- Maintain required business or security records.
We will not discriminate against you for exercising a privacy right provided by applicable law.
18. Legal and Safety Disclosures
Information may be preserved or disclosed when reasonably necessary to:
- Comply with a valid subpoena, court order, warrant, legal process, or applicable legal requirement.
- Respond to lawful requests from government authorities.
- Investigate fraud, abuse, unauthorized access, or security incidents.
- Enforce the Terms of Service or another agreement.
- Protect the rights, property, safety, and security of Ledger5|5, its users, service providers, or others.
- Establish, exercise, or defend legal claims.
- Prevent or address unlawful activity.
When legally permitted and reasonably practical, we may notify an affected user before disclosing information in response to legal process. We may be prohibited from providing such notice.
19. Business Transfers
Information may be transferred or disclosed in connection with:
- A business reorganization.
- Financing.
- A merger.
- An acquisition.
- A sale of assets.
- A transfer of Ledger5|5.
- Bankruptcy or insolvency proceedings.
- Due diligence concerning a proposed transaction.
Any recipient would be expected to handle personal information subject to applicable law and the privacy commitments in effect at the time of transfer, unless users are provided notice of a materially different practice.
20. Aggregated and De-identified Information
We may create aggregated or de-identified information that does not reasonably identify an individual user.
Such information may be used for:
- Service operation.
- Security analysis.
- Troubleshooting.
- Capacity planning.
- Understanding general feature usage.
- Improving Ledger5|5.
We will not attempt to re-identify information that has been properly de-identified unless reasonably necessary to test the effectiveness of the de-identification process or as otherwise permitted by law.
21. Changes to This Privacy Policy
This Privacy Policy may be updated when Ledger5|5’s features, service providers, security practices, business operations, or legal obligations change.
The effective date at the top will be updated when changes are made.
Material changes may also be communicated through Ledger5|5 or by email when reasonably appropriate.
When legally required, we may request renewed consent before applying a material change.
22. Contact Us
Questions, concerns, security reports, account-deletion requests, or privacy requests may be submitted to:
Ledger5|5 by Diamond Piper Software LLC Email: contact@diamondpiper.com