How your data is stored

Your data powers your plan, not someone else's ad targeting. Sill never sells your personal data, sensitive values are encrypted at rest, and bank connections run through Plaid.

Sill collects what you tell it — income, savings, debts, credit posture, target area, timeline, housing situation — plus your identity details for your account. Everything beyond that is optional: documents you upload, and financial data you choose to link from your bank.

Bank connections

Bank links run through Plaid. You sign in to your bank inside Plaid's flow, so Sill never sees or stores your banking username or password. The access token Sill holds on your behalf is encrypted at rest with envelope encryption, and linking, syncing, viewing, or disconnecting a bank all require an authenticated account and an additional multi-factor check.

Linking an account is free for every buyer and involves no credit check of any kind.

Disconnecting

When you disconnect a bank, Sill revokes the token with Plaid first, then deletes the encrypted token material, account rows, balance rows, and transaction rows in the same request. There is no grace period and no soft delete.

What we keep, and for how long

  • Audit records of connect and disconnect events: seven years, for compliance correlation.
  • Application logs: thirty days in the active tier, one year in cold storage.
  • Consent records and legal acceptance history: kept for security and dispute resolution.
  • Raw responses from Plaid: never stored.

What Sill does not do

  • We do not sell your information.
  • We do not share it without your permission.
  • We do not pass it to anyone who will spam-call you.
  • We do not auto-match you to a professional.

← Back to app