> ## Documentation Index
> Fetch the complete documentation index at: https://help.finerd.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Access, security & privacy

> How AI access works in Finerd: read-only vs read & write, sign-in, token expiry, and data handling.

> You stay in control of what your AI can do and see.

## Read-only vs read & write

You pick at sign-in time:

* **Read-only** — your assistant can read your data (transactions, accounts, reports) but not change anything. A good default.
* **Read & Write** — your assistant can also create, edit, and delete transactions, transfers, tags, and rewards.

## Security

* Sign-in uses **OAuth 2.1 with PKCE** — your AI client never sees your Finerd password.
* The connector token **expires after 30 days**; sign in again to renew.
* You can revoke access at any time.

## Privacy

* Your assistant only sees data from the **space you ask it about**.
* We don't log your conversation content.
* See our [Privacy Policy](https://finerd.ai/privacy-policy) and [Security](https://finerd.ai/security) pages.

## What your AI cannot do

* Move real money — Finerd is a personal ledger; banks are read-only sources.
* Access another user's data — every request is scoped to your account.
* Read your AI chat history or files.
