Privacy Policy
What we collect
- Identity — your email address and authentication identifiers from our identity provider (Clerk).
- Telemetry — equity snapshots, trade fills, signal evaluations, and health events emitted by your trading bot. This is stored in our database (Neon Postgres) and is the data shown on the dashboard.
- Operational logs — request logs, error traces, and deployment logs collected by our hosting providers (Vercel, AWS). These may include your IP address.
- Broker credentials — if you connect a brokerage account, the credentials are stored encrypted in AWS Secrets Manager. We never display secret keys back to you in plaintext after entry.
What we do not collect
- We do not collect your government-issued ID, financial account balances outside the broker you connect, or biometric information.
- We do not sell your data. We do not share your data with advertisers.
How we use it
We use your data to operate the Service, render the dashboard, debug issues you report, and meet legal obligations such as tax reporting and regulatory requests.
Sub-processors
- Clerk — authentication
- Neon — Postgres database hosting
- Vercel — frontend hosting and CDN
- AWS — backend hosting and secret storage
- Your connected broker (a registered U.S. securities or crypto broker that you authorize) — order execution and account data
Retention
We keep telemetry data for the duration of your account plus seven years to satisfy U.S. tax-record retention. Operational logs are kept for ninety days.
Your rights
You can request a copy of your data, correction of inaccuracies, or deletion of your account by emailing earnest@codealchemistlabs.com. We will respond within thirty days. Some data may be retained afterward as required by law.
Children
The Service is not intended for anyone under 18 and we do not knowingly collect data from children.
Changes
We may update this policy. The current version is always at this URL with a “last updated” date.
Questions? Contact earnest@codealchemistlabs.com.