tradeReport

Privacy Policy

Introduction

Welcome to tradeReport ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and related services.

Information We Collect

Personal Information

  • Account Information: Email address, username, and password
  • Profile Information: Name, trading experience level, and optional bio
  • Financial Information: Trading preferences, goals, and closed trade PnL data (we do not store actual financial account credentials)

Automatically Collected Information

  • Browser Information: Browser type, version, and settings
  • Usage Data: Website interactions, feature usage patterns, and trading journal entries
  • Log Data: IP address, access times, pages visited, and error logs
  • Location Data: Approximate location based on IP address (if permitted)
  • Cookies and Similar Technologies: Session tokens, preferences, and analytics data

How We Use Your Information

Core Functionality

  • To create and maintain your account
  • To provide trading analysis and reporting features
  • To authenticate your identity and secure your account
  • To process and store your trading records and analysis

Service Improvement

  • To analyze usage patterns and optimize user experience
  • To diagnose technical issues and maintain website performance
  • To develop new features based on user behavior and feedback
  • To send service-related notifications and updates

Technical Infrastructure

Application Hosting

  • Our web application is served via Google Cloud Run, providing secure and scalable infrastructure
  • Cloud Run ensures isolated execution environments for enhanced security
  • All web traffic is encrypted using SSL/TLS certificates
  • Application logs are monitored and retained according to security best practices

Data Storage

  • Trading data, including closed trade Profit and Loss (PnL) information, is stored on Google Firebase
  • All data stored on Firebase is encrypted at rest using Google Cloud Platform's security standards
  • Real-time database security rules ensure proper data access control
  • Data backups are performed regularly with automated integrity checks

Security Measures

  • End-to-end encryption for all data transmission
  • Firebase Authentication for secure user access
  • Regular security audits and vulnerability testing
  • Strict access controls for employee access to user data
  • Automated threat detection and prevention systems
  • Regular penetration testing of our infrastructure
  • Continuous monitoring of all cloud services

Data Sharing and Disclosure

Third-Party Service Providers

We may share your information with trusted third parties who assist us in:

  • Hosting and maintaining our website (Google Cloud Platform)
  • Processing analytics
  • Providing customer support
  • Managing email communications
  • AI-powered analysis and educational insights (OpenAI)

Legal Requirements

We may disclose your information if required by law:

  • To comply with legal obligations
  • To protect our rights and property
  • To prevent fraud or abuse
  • To ensure the safety of our users

AI Services and Third-Party Integration

OpenAI Integration

Our platform integrates with OpenAI's services to power our AI educational assistant, pAivlov. This integration involves:

  • Sharing anonymized trading data and behavioral patterns with OpenAI for analysis
  • Processing user queries and generating educational insights through OpenAI's API
  • Temporary data transmission to OpenAI servers for real-time analysis
  • No storage of personal identifiable information on OpenAI's systems

OpenAI Terms and Privacy

Your data processed through OpenAI's services is also subject to OpenAI's terms and privacy policies:

Data Protection Measures

  • All data sent to OpenAI is anonymized and stripped of personally identifiable information
  • Trading data is aggregated and generalized before processing
  • API communications are encrypted using industry-standard protocols
  • No direct user identification is possible through the data we share with OpenAI
  • Users can opt-out of AI analysis features at any time through their account settings

Important Note

By using our AI-powered features, you acknowledge that anonymized data may be processed by OpenAI's systems. We recommend reviewing OpenAI's privacy policy and terms of service linked above to understand how they handle data processing.

Your Rights and Choices

You have the right to:

  • Access your personal information
  • Correct inaccurate or incomplete data
  • Request deletion of your account and data
  • Opt-out of marketing communications
  • Export your trading data
  • Restrict certain data collection and processing

International Privacy Rights

European Union (GDPR) Rights

If you are located in the European Union, you have additional rights under the General Data Protection Regulation (GDPR):

  • Right to Access: Request a copy of your personal data we hold
  • Right to Rectification: Correct inaccurate or incomplete personal data
  • Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data under certain circumstances
  • Right to Restrict Processing: Limit how we use your personal data in specific situations
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing of your personal data for legitimate interests or direct marketing
  • Right to Withdraw Consent: Withdraw consent for data processing at any time
  • Right to Lodge a Complaint: File a complaint with your local data protection authority

Legal Basis for Processing (GDPR)

We process your personal data based on the following legal grounds:

  • Contractual Necessity: To provide our trading journal services
  • Legitimate Interests: To improve our services and ensure security
  • Consent: For optional features like AI analysis and marketing communications
  • Legal Obligation: To comply with applicable laws and regulations

California Privacy Rights (CCPA/CPRA)

If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):

  • Right to Know: What personal information we collect, use, disclose, and sell
  • Right to Delete: Request deletion of your personal information
  • Right to Correct: Request correction of inaccurate personal information
  • Right to Opt-Out: Opt-out of the sale or sharing of personal information
  • Right to Limit: Limit the use of sensitive personal information
  • Right to Non-Discrimination: Not to receive discriminatory treatment for exercising privacy rights

Other Jurisdictions

We also respect privacy rights under other applicable laws, including:

  • Canada (PIPEDA): Personal Information Protection and Electronic Documents Act
  • Australia (Privacy Act): Australian Privacy Principles
  • United Kingdom (UK GDPR): Data protection rights similar to EU GDPR
  • Brazil (LGPD): Lei Geral de Proteção de Dados

Exercising Your Rights

To exercise any of these rights, please contact us at info@tradeReport.io with:

  • Your full name and email address associated with your account
  • The specific right you wish to exercise
  • Any additional information needed to verify your identity

We will respond to your request within the timeframes required by applicable law (typically 30 days for GDPR requests).

International Data Transfers

Our services are hosted on Google Cloud Platform, which may involve transferring your data across international borders. We ensure adequate protection through:

  • Adequacy Decisions: Transfers to countries with adequate data protection levels
  • Standard Contractual Clauses: EU-approved contractual safeguards for international transfers
  • Google Cloud Security: Industry-leading security measures and compliance certifications
  • Data Processing Agreements: Contracts ensuring proper data protection standards

Cross-Border Data Processing

By using our service, you acknowledge that your data may be processed in countries other than your own. We implement appropriate safeguards to ensure your data remains protected according to applicable privacy laws.

Cookie Policy

Our website uses cookies and similar tracking technologies to:

  • Maintain session information
  • Remember user preferences
  • Analyze website performance
  • Improve user experience
  • Track usage patterns

You can control cookie preferences through your browser settings. However, disabling certain cookies may limit functionality.

Data Retention

We retain your personal information for as long as:

  • Your account is active
  • Needed to provide our services
  • Required by law
  • Necessary for legitimate business purposes

Changes to Privacy Policy

We reserve the right to update this Privacy Policy at any time. We will notify you of any material changes through:

  • Website notifications
  • Email notifications
  • Posted notices on our platform

Contact Information

If you have questions, concerns, or requests related to your privacy or this policy, please contact us at:

Email: info@tradeReport.io