← Back to Meridian PIA

Privacy Policy

Last updated: July 2026

The short version: Meridian PIA is a zero-knowledge application. We cannot see, access, or read your financial data. It is encrypted on your device and never transmitted to any server.

What is Meridian PIA?

Meridian PIA (Personal Investment Analysis) is a client-side personal finance application. It runs entirely in your web browser. There is no server-side component, no user account system, no database, and no cloud storage.

Data storage

All your financial data is encrypted using AES-256-GCM with a key derived from your passphrase via PBKDF2 (310,000 iterations). The encrypted data is stored in your browser's IndexedDB and localStorage. It never leaves your device unless you explicitly export a backup file.

What we cannot do

This is by design. Zero-knowledge means zero access.

Data we do not collect

Meridian PIA does not collect:

External services

Meridian PIA may connect to the following external services at your request:

No financial data from your vault is ever sent to these services.

Backup files

When you export a backup, the file is encrypted with your passphrase. It is downloaded directly to your device. We have no access to the file or its contents.

Your passphrase

Your passphrase is never stored anywhere — not in the browser, not on any server, not in any log. It exists only in memory during your active session and is cleared when you lock the vault or close the browser. If you lose your passphrase, your data cannot be recovered by anyone, including us.

Children's privacy

Meridian PIA is not directed at individuals under 18 years of age.

Changes to this policy

We may update this policy from time to time. Changes will be reflected by updating the date at the top of this page.

Contact

For questions about this privacy policy, contact us at privacy@meridianpia.com.