Skip to content
Tennanova

Privacy

Your statement isn't our business.

Tennanova processes financial documents only to convert them into spreadsheets. This policy explains what is handled, why, and for how long.

Last updated: 31 August 2026

Who operates Tennanova

Tennanova is operated by BLACKCUBE CAPITAL PTY LTD (ABN 83 697 516 788), an Australian private company based in Victoria, Australia.

Information we process

When you use Tennanova, you provide a PDF bank statement. During conversion we temporarily process the PDF contents, including any institution name, masked account identifier, dates, balances, transaction descriptions, and transaction amounts printed in it.

We also process your Clerk account identifier and verified email status, a random job identifier, extraction status, page count, allowance usage, subscription status, and abuse-prevention signals.

How your statement is handled

The uploaded PDF is streamed into a private Cloudflare R2 object so Z.ai can retrieve it through a short-lived signed URL. Tennanova deletes that object immediately after OCR. A 15-minute cleanup and a one-day R2 lifecycle rule are backstops. Extracted results are AES-256-GCM encrypted in Cloudflare D1, become inaccessible two hours after successful processing, and are then physically removed.

Result and edit endpoints verify the Clerk account owner; a job identifier by itself does not grant access. CSV and Excel files are generated in your browser from the authorised result.

Service providers

  • Clerk handles account authentication through verified email codes and configured Google sign-in.
  • Cloudflare hosts the site, temporarily stores PDFs in private R2, and stores encrypted results and allowance records in D1.
  • Z.ai processes PDFs and OCR/model requests in Singapore. Z.ai states API content is not retained or used for training without opt-in.
  • Stripe handles subscription Checkout, billing, and the customer portal. Tennanova does not receive full card details.
  • PostHog receives limited anonymous product events only when analytics is configured. Financial values, filenames, PDF content, account identifiers, and transaction descriptions are excluded.

Security and logs

Production traffic is encrypted in transit using HTTPS/TLS. Sensitive job payloads are encrypted at rest in temporary storage. Application error logging is designed to record error categories rather than statement contents, model output, or filenames. No internet service can guarantee absolute security.

Analytics and advertising

Tennanova does not use statement contents for ad targeting. Optional product analytics are limited to events such as an upload starting, an extraction completing, or an export being downloaded. Event properties pass through a fixed allow-list. Statement text, filenames, values, account identifiers, and transaction descriptions are excluded.

Your choices and contact

You can stop before upload, manage or delete your Clerk account, manage billing through Stripe, and allow a temporary result to expire without downloading it. A network address is stored only as an HMAC hash for rolling abuse controls, never in raw form. For privacy questions or deletion requests, contact daniel@blackcubecapital.com.au and include only the random job identifier—not your statement or transaction details.