Privacy Policy
Last updated September 28, 2026.
In one sentence: PayeeKit stores your records in your own iCloud account through Apple's CloudKit. There is no PayeeKit server, no PayeeKit database, and no way for BrightBench to see, access, or export your data.
Who this is about
This policy covers the PayeeKit iOS app, published by BrightBench LLC ("we," "us," "BrightBench"). It does not cover Apple's own handling of iCloud, which is governed by Apple's privacy policy.
What PayeeKit stores
Everything you enter is stored as described below: beneficiary names, the last four digits of a Social Security number (never more), benefit amounts, ledger entries, receipt photos, documents you add to the vault, and guardian module notes. It is stored:
- On your device, encrypted at rest using iOS Data Protection, and
- Synced to your own private iCloud database through Apple's CloudKit framework, encrypted in transit, so it's available on your other signed-in Apple devices.
That's the entire storage model. PayeeKit does not operate a server, does not have a backend database of user records, and has no technical means of reading, exporting, or recovering your data on your behalf. If you lose access to your iCloud account, we cannot retrieve what was stored there.
What PayeeKit does not do
- No analytics or usage tracking of any kind.
- No advertising identifiers, ad networks, or ad SDKs.
- No third-party crash reporting or diagnostics services.
- No account creation, no email address, no sign-in. The app works offline, apart from iCloud sync and buying PayeeKit Plus.
- No sale or sharing of personal information, because there is no copy of it for us to share.
- No bank, card, or financial-institution connection of any kind.
Apple's role
iCloud storage and sync are provided by Apple under Apple's own privacy practices and security controls. BrightBench does not have separate credentials to your iCloud account and cannot bypass Apple's protections to reach your data.
Your rights and controls
Because your data lives on your own device and in your own iCloud account, you already hold the controls a privacy law would otherwise ask us to build:
- Access. Everything is visible in the app at any time.
- Export. Settings → Export all records produces a zip of each beneficiary's ledger for the last three years, their documents, receipt photos and guardian records. PayeeKit Plus adds a spreadsheet of every transaction across every period.
- Deletion. Delete a single beneficiary or use Delete Everything in Settings; deleted data is removed from your device and your iCloud private database.
- Portability. Ledger exports are plain CSV, readable by any spreadsheet application.
If you are located somewhere with a specific statutory right (for example, under the CCPA or GDPR) that isn't satisfied by the controls above, email support@payeekit.com and we'll address it directly. In most cases there is no server-side copy of your information for a request like deletion or access to act on, beyond what's already in your hands.
Children's privacy
PayeeKit is not directed to children under 13, and we do not knowingly collect information from children. The app is intended for adults acting as representative payees or guardians. Beneficiary records the payee enters, including for a minor beneficiary, never leave the payee's own iCloud account. See "What PayeeKit stores" above.
Changes to this policy
If this policy changes, we'll update the date at the top of this page. Continued use of the app after a change means you accept the updated policy.
Contact
Questions about this policy: support@payeekit.com.