Doric

Privacy Policy

Last updated: June 2026

Doric is a local-first application. The core app is free and keeps your data on your own device. Some optional paid features — collectively Doric Cloud — involve third-party services and are covered separately below. Those services are only ever used if you choose to subscribe and enable them.

Data stored locally

All data you enter — accounts, transactions, payees — is stored in a database file on your computer. The free, local app does not upload, sync, or transmit this data anywhere.

Update checks

When Doric checks for updates, it makes a single HTTPS request to doricapp.com to fetch the current version number. This request includes no personal information. Like any web server, doricapp.com's hosting provider may log the request IP address in standard server logs.

Analytics and tracking

Doric contains no analytics, crash reporting, or telemetry, and does not track you. The only third-party service it connects to is Plaid, used solely to connect a bank if you opt into Doric Cloud bank feeds (see below) — it is not loaded or used otherwise.

Cookies

The doricapp.com website is static and sets no cookies of its own. It uses no analytics, advertising, or tracking. Our hosting and security provider, Cloudflare, may set strictly-necessary cookies (such as a short-lived bot-management cookie) to protect the site from abuse; these are not used to identify, track, or profile you and are exempt from consent requirements. Because the site sets no non-essential cookies, it shows no cookie-consent banner.

Doric Cloud (optional)

If you subscribe to Doric Cloud and enable its features, the following third-party services are involved. None of this applies to the free, local-only app.

Bank feeds (Plaid)

Bank connections are provided by Plaid, Inc. When you connect a bank, you do so inside Plaid's secure flow and agree to Plaid's End User Privacy Policy. Your bank login credentials are entered into and handled by Plaid; Doric never sees or stores them. Your transaction and account data is retrieved from your bank through Plaid and delivered into the database file on your device — it is not stored on our servers. To keep a connection active, an access token issued by Plaid is held (encrypted) by our infrastructure provider; it is deleted when you disconnect the bank or your subscription ends.

Payments (Stripe)

Subscription payments are processed by Stripe, Inc. Stripe handles your payment details; we do not receive or store your card information. We retain your email address and subscription status in order to issue and validate your license. Stripe's handling of your data is governed by Stripe's privacy policy.

Cloud backup

If you enable cloud backup, your company file is encrypted on your device before it is uploaded, and stored with our infrastructure provider (Cloudflare R2). We cannot read the contents of your backups — we do not hold the means to decrypt them.

Data deletion and retention

Disconnecting a bank deletes its stored access token. Ending your subscription revokes your bank connections. Your encrypted cloud backups remain available for you to download for at least 30 days after your subscription ends, after which they may be deleted. Your local company file is always yours and is never affected. To request earlier deletion of your backups, license, or account information, email support@doricapp.com.

Contact

Questions? Email support@doricapp.com.