How Noryo protects your data
Updated on 7 August 2026
Encryption, hosting in Europe, read-only access, and full control: the principles that protect your data.
Your financial data is among the most sensitive there is. Noryo was built around a simple principle: show you your money without ever being able to touch it, and keep your information protected from end to end. Here is exactly how we do it.
The core principles
A framed bank connection
The connection to your bank relies on open banking, the European framework (PSD2 regulation) that lets a service read your accounts with your explicit consent. Everything happens securely and transparently.
- You approve the connection directly in your bank's interface, never inside Noryo.
- Your banking credentials are never entered or stored in the app.
- Access is strictly read-only: reading your transactions, nothing else.
- Your consent is explicit, time-limited and revocable at any time.
What Noryo can do, and what it cannot
You stay in control
Protecting your data also comes through the tools you hold yourself. At any time, you can exercise your rights and adjust what Noryo sees.
- <strong>Revoke a bank connection</strong>: cut off access to a bank whenever you like.
- <strong>Export your data</strong>: retrieve all of your information under the GDPR.
- <strong>Delete your account</strong>: a permanent deletion, confirmed by a code received by email.
- <strong>Set the assistant's permissions</strong>: decide, domain by domain, what Nory can read or change.
Your questions about data protection
Protecting your data is a shared responsibility: we secure the infrastructure, you strengthen access to your account. The next two pages show you how to go further.
Secure access to your accountTwo-factor authentication, passkeys, active sessions and login alerts.
Did this article help?