Your money data, protected

Here's exactly how Cheeserino secures what you store — and what we can and can't see.

Encrypted at rest, per account

Every sensitive field is encrypted with AES-256-GCM under a key unique to your account (envelope encryption). That includes your account balances, transaction amounts, descriptions and notes, your two-factor secret and backup codes, and the device details on your sessions. Your raw sign-in IP is never stored.

Our staff can't read your finances

The admin tools are structurally blind to your financial data: they operate on a strict allow-list of non-sensitive columns and have no path to decrypt amounts, descriptions or balances. Support agents see only the support ticket queue.

Operator-trust, not zero-knowledge

We're honest about the trade-off: Cheeserino holds the encryption keys so it can run the service and help you recover your account. This is operator-trust, not zero-knowledge. We minimise what's exposed, never sell your data, and encrypt everything sensitive at rest.

Strong account protection

Sign in with a passkey or your Apple, Google or Microsoft account. Add optional two-factor authentication (TOTP) with backup codes, and get notified when a new device signs in. Passwords are hashed with Argon2id.

In transit and on your terms

Everything is served over HTTPS only. You can export all of your data at any time (GDPR) or permanently delete your account from your profile.

Create your accountBack to home