Effective date: June 26, 2026
These Terms of Service govern access to Candor, including your Candor account,
connected financial data, web account controls, the candor CLI, public
agent instructions, and related services. "Candor", "we", "us", and "our" mean
the Candor service and the organization that provides it, including any
successor, affiliate, or operator identified in the service or account
materials. "You" means the person who creates an account, requests access,
connects financial accounts, or uses Candor through an agent or tool.
By creating an account, connecting an account, authorizing a client, or using the service, you agree to these Terms and to the Candor Privacy Policy.
1. What Candor Is
Candor is a read-only financial data service for personal agents.
Candor lets you connect supported financial accounts, stores organized
financial records, and exposes factual financial context to authorized agents
through the candor CLI, remote MCP, and structured responses.
Candor is not a bank, broker, investment adviser, tax adviser, legal adviser, money transmitter, payments provider, bill-pay service, accounting firm, credit repair organization, or consumer reporting agency.
2. Eligibility And Preview Features
Candor may offer public, beta, preview, paid, or free features. Some features may be incomplete, change quickly, contain bugs, or be unavailable. We may add, remove, suspend, or limit features as the service evolves.
You may use Candor only if you are at least 18 years old, are able to form a binding agreement, and are using the service for personal, family, or household financial context unless we approve another use in writing.
3. Read-Only Boundary
Candor is read-only for external financial actions. Candor does not move money, initiate payments, open accounts, trade securities, pay bills, cancel subscriptions, file taxes, negotiate contracts, or make account changes at your financial institutions.
Some Candor commands may update Candor account information, such as settings, budgets, goals, notes and reminders, corrections, user-approved imports, action-history context, and access controls. These updates affect Candor only. They do not move money or change external financial accounts.
4. No Financial, Tax, Legal, Or Investment Advice
Candor returns factual data, query results, deterministic calculations, freshness and coverage information, caveats, source information, factual changes, typed financial state, finance methods, and reason-bearing action history.
Candor does not provide personalized financial, investment, legal, tax, credit, insurance, accounting, or similar professional advice. Candor may expose reusable calculation policy, missing context, and approval boundaries for a fact pattern, but any recommendation, interpretation, plan, message, transaction, account action, or external action created by your own agent is outside Candor unless we expressly say otherwise.
You are responsible for reviewing facts, caveats, coverage, freshness, and source information before making decisions.
5. Your Agents And Authorized Clients
The primary Candor surfaces are the candor CLI and Candor's authenticated
remote MCP service, used by agents you run or authorize.
Candor authorizes OAuth clients with explicit scopes. Unless the service expressly says otherwise, Candor does not treat each individual agent, model, process, plugin, or chat runtime behind an authorized client as a separate security boundary. An agent using an authorized CLI or remote MCP client can access the Candor data and operations allowed by that client's scopes.
You are responsible for:
- deciding which agents and tools may run in your environment;
- reviewing what they do with Candor output;
- managing transcripts, logs, memory, screenshots, files, and model-provider retention outside Candor;
- preventing your agents from treating financial text fields as instructions;
- stopping your agents before any external financial, legal, tax, investment, subscription, or account action unless you explicitly approve that action.
6. Account Security
You are responsible for your Candor account, email account, local machine, local credential storage, and any agent or automation that can access your local environment.
You must not share account credentials, OAuth refresh credentials, access tokens, provider tokens, or private data exports with anyone who should not have access to your financial data. Tell us promptly at security@candor.money if you believe your account, device, Candor data, or credentials were compromised.
7. Financial Account Connections
Candor uses Plaid and may use other providers to help you connect financial accounts. You authorize Candor and its providers to access, receive, store, and process the financial account data needed to provide the service.
You must connect only accounts you own or are authorized to connect. You must not provide false information, connect another person's account without permission, or use Candor to violate any agreement with a financial institution or data provider.
Candor does not need your bank password in chat. Do not send bank credentials, one-time passcodes, account numbers, or provider secrets to Candor support, an agent prompt, or a public issue.
8. User Content And Imports
You may provide content to Candor, including financial account connections, agent-authored imports, budgets, goals, notes and reminders, corrections, concise action reasons, settings, and support messages. You retain your rights in your content.
You grant Candor the limited right to host, process, normalize, store, display, transmit, and use your content as needed to operate, secure, support, debug, improve, and comply with legal obligations for the service.
Do not upload or import information unless you have the right to provide it to Candor and it is relevant to your use of the service.
9. Acceptable Use
You must not:
- use Candor for unlawful, harmful, deceptive, abusive, or unauthorized purposes;
- attempt to bypass authentication, OAuth consent, provider consent, rate limits, or security controls;
- probe, scan, or test Candor systems without written permission;
- reverse engineer non-public service components except as allowed by law;
- access or attempt to access another user's account, financial data, or credentials;
- submit malware, secrets you do not own, or data you are not authorized to process;
- use Candor output to make eligibility, credit, insurance, employment, housing, or similar regulated decisions about another person;
- sell, rent, or disclose Candor financial data except as allowed by law and by the user who owns the data.
10. Data Controls
Candor provides account disconnect, OAuth client revocation, data export, and data deletion controls.
Disconnecting a financial institution removes active access to that institution and deletes or disables provider credentials where supported. Historical records and audit records may remain in Candor unless you delete your Candor data.
Export provides a bounded copy of organized Candor data. It does not include provider access tokens or raw provider data unless a separate export format expressly says otherwise.
Data deletion immediately revokes active OAuth access and removes provider credentials, then deletes the deletable online financial workspace, including prior user-visible action history. A minimal deletion receipt may remain temporarily so Candor can return or replay the result securely. Records under legal hold remain until the hold ends and are disclosed by count. Backups and operational logs may take additional time to expire under infrastructure retention policies.
11. Fees
Some Candor plans or features may be free, trial, preview, or paid. We will present applicable fees before charging you for use of the service.
12. Third-Party Services
Candor depends on third-party services, including infrastructure providers, authentication and email providers, financial data providers, financial institutions, and agent runtimes you choose. Their services are governed by their own terms and policies.
Candor is not responsible for third-party services, financial institutions, agent runtimes, model providers, browser extensions, operating systems, or tools outside Candor's control.
13. Intellectual Property
Candor and its software, documentation, designs, trademarks, and service content are owned by Candor or its licensors. These Terms do not transfer any ownership rights to you.
Subject to these Terms, we grant you a limited, personal, non-transferable, revocable right to use Candor while you comply with these Terms.
14. Service Changes, Suspension, And Termination
You may stop using Candor at any time. We may suspend or terminate access if we believe you violated these Terms, created risk for the service or other users, or used the service outside its intended scope.
We may also suspend the service for maintenance, security, provider requirements, legal obligations, or operational reasons.
15. Disclaimers
Candor is provided "as is" and "as available." To the maximum extent allowed by law, we disclaim all warranties, including implied warranties of merchantability, fitness for a particular purpose, title, and non-infringement.
We do not warrant that Candor will be uninterrupted, error-free, complete, secure, accurate, current, or compatible with every financial institution, provider, agent, tool, device, or workflow. Financial data can be delayed, stale, incomplete, duplicated, miscategorized, or unavailable.
16. Limitation Of Liability
To the maximum extent allowed by law, Candor will not be liable for indirect, incidental, special, consequential, exemplary, or punitive damages, or for lost profits, lost revenue, lost data, lost goodwill, trading losses, investment losses, tax outcomes, legal outcomes, or financial decisions made from Candor or agent output.
To the maximum extent allowed by law, Candor's total liability for all claims relating to the service will not exceed the greater of USD 100 or the amount you paid Candor for the service in the 12 months before the claim.
Some jurisdictions do not allow certain limitations, so some of these limits may not apply to you.
17. Indemnity
You will defend, indemnify, and hold harmless Candor from claims, damages, losses, liabilities, costs, and expenses arising from your misuse of Candor, your violation of these Terms, your unauthorized data, your agents or tools, or your external financial, legal, tax, investment, subscription, account, or business actions.
18. Governing Law
These Terms are governed by the laws of California, without regard to conflict of law rules, unless another jurisdiction is required by applicable law.
The parties consent to the exclusive jurisdiction and venue of the state and federal courts located in San Francisco County, California, for disputes that are not required to be brought elsewhere by applicable law.
19. Changes To These Terms
We may update these Terms from time to time. If changes are material, we will provide reasonable notice through the service, email, or another appropriate channel. The updated Terms are effective when posted or when the notice says they take effect.
Your continued use of Candor after the effective date means you accept the updated Terms.
20. Contact
Questions about these Terms: legal@candor.money
Security reports: security@candor.money