How we keep your data secure. 🔒

Your privacy matters to us. Below are some measures we put in place to keep your data secure.

We employ a number of security measures to help keep data safe, including 256-bit encryption to protect it at rest and Transport Layer Security (TLS) to protect it in transit.

We use aggregated and anonymized data for internal analytics and business purposes. Financial data, such as transactions, is only accessed by our team when necessary to provide our services (e.g. when users request support for a data issue).

We do not see or store users' bank login credentials because we partner with trusted data aggregators, like Plaid, to connect to your financial institutions. Cruise works with third party vendors who adhere to industry security standards. You can read more about Plaid security policy here.

You can delete you account at any time from the Settings menu, or by sending us a request via in-app chat or to support@cruiseapp.io. If you delete your account, we do not keep any of the linked financial data or account data (email address, rules, etc.), except in the limited circumstances where required by law, to resolve disputes, protect Cruise and our users, and enforce our agreements. Where Cruise has no such obligations, the data will be completely removed from all our internal systems, including backups, within 60 days.

Deleting your Cruise account and canceling your app subscription are two separate actions, as subscriptions are managed by Apple. Your subscriptions are managed by Apple. You can cancel your app subscription from Settings prior to deleting your account. Go to Cruise Settings → Manage your Subscription and you’ll be taken to the App Store to complete the cancelation. If you forget to cancel your subscription before deleting your account, you can still do so by going to your mobile device’s Settings → Purchases → Subscriptions → Cruise.

We use Multi-Factor Authentication (MFA) on all internal systems and incorporate MFA support and mobile device management into our company devices.

Cruise's infrastructure is built on the Google Cloud Platform (GCP), which is used by leading financial companies worldwide. GCP adheres to industry standard security, privacy and compliance controls, including:
ISO/IEC 27001, 27017 and 27018
SOC 1/2/3
PCI DSS
CSA STAR

Our Privacy Policy comprehensively details our data practices.

We also know that security isn’t a “set it and forget it” sort of thing, which is why we regularly conduct application penetration tests to identify and, as needed, mitigate vulnerabilities or risks in our systems.

We’ll keep this page up-to-date and let you know if anything big changes with our practices. We’re also available if you have any questions or concerns.

You can always contact us through in-app chat or at support@cruiseapp.io.