Connected financial data
Draft — Plaid Sandbox developmentConnected accounts, explained.
NUEMI’s Plaid integration is being prepared for Sandbox testing. This draft describes the intended security and disclosure model; it does not claim Production access, live institution coverage, or finalized data practices.
Production disclosure not yet final. Exact Plaid Products, data fields, purposes, retention, deletion, supported institutions, and user-facing consent language must match the implemented and approved Production configuration.
Intended technical boundaries
- The iOS app receives a short-lived Link token, not NUEMI’s Plaid secret.
- Public-token exchange and long-lived access-token handling occur on an authenticated server.
- Sensitive integration tokens are intended to be encrypted at rest and never returned to the app.
- Each connection is associated with the authenticated NUEMI user and protected by ownership checks.
- Disconnecting a connection should revoke Plaid access and remove associated NUEMI data according to the final retention policy.
Information users must receive before connecting
- Which accounts and data types the selected Plaid connection can provide.
- Why NUEMI uses each data type and which features depend on it.
- How to reconnect, update permissions, disconnect, and request deletion.
- What NUEMI stores, how long it is retained, and which providers process it.
- Links to NUEMI’s effective Privacy Policy and Plaid’s user-facing disclosures.
Facts still required
Confirm the exact Plaid Products and use cases, Production approval status, transaction-history window, account and transaction fields stored, sync frequency, webhook behavior, analytics, deletion timing, legal operator, privacy contact, and launch regions. The final copy must be reconciled with the server implementation and reviewed before publication.