Privacy Policy
Last updated: April 2026
1. Introduction
Trader Tone ("we", "us", "our") operates the Trader Tone automated cryptocurrency trading platform. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our service.
2. Information We Collect
We collect the following types of information:
- Account Information: Email address, display name, and authentication credentials (managed by Clerk).
- Exchange API Keys: API keys and secrets you provide to connect your exchange accounts. These are encrypted with AES-256-GCM and cannot be viewed or decrypted by us.
- Trading Data: Trade history, strategy configurations, portfolio snapshots, and performance metrics generated by the platform.
- Usage Data: Pages visited, features used, and interaction patterns for service improvement.
- Device Information: Browser type, operating system, and device identifiers for security and debugging.
3. How We Use Your Information
We use your information to:
- Provide and maintain the trading platform and execute automated strategies.
- Generate AI-powered performance reviews and chat responses.
- Send trade notifications, alerts, and service communications.
- Monitor system health, detect errors, and improve platform reliability.
- Process subscription payments and manage your account.
- Comply with legal obligations.
4. Data Storage and Security
Your data is stored in Supabase (PostgreSQL) hosted in the EU. All API keys and private keys are encrypted with AES-256-GCM before storage. The encryption key is stored as an environment variable and is never committed to source control or stored in the database.
We use Row Level Security (RLS) on every database table to ensure users can only access their own data. All connections use TLS encryption in transit.
5. Data Retention
- Trade records: Retained indefinitely while your account is active.
- Application logs: Retained for 90 days.
- Account deletion: When you close your account, all personal data is permanently deleted within 30 days. Encrypted API keys are destroyed immediately.
6. Your Rights
You have the right to:
- Access and download your personal data.
- Correct inaccurate information.
- Delete your account and all associated data.
- Object to processing of your data.
- Data portability — export your trade history in standard formats.
7. Cookies
We use essential cookies for authentication and session management. See our Cookie Policy for details.
8. Third-Party Services
We use the following third-party services:
- Clerk: Authentication and user management.
- Supabase: Database hosting and real-time subscriptions.
- Vercel: Web application hosting and edge functions.
- Sentry: Error tracking and performance monitoring (no personal data sent).
- Google Analytics: Anonymous usage analytics (opt-in only).
9. Children
Trader Tone is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notification. Continued use of the service after changes constitutes acceptance of the updated policy.
11. Contact
For questions about this Privacy Policy or to exercise your rights, contact us at privacy@tradertone.com.