Legal

Privacy Policy

Last updated: February 2026

1. Information We Collect

When you use TBTY (tradebty.com), we collect the following information:

  • Account information: Your name and email address, provided when you sign in with Google OAuth or a magic link.
  • Early access signup information: Email, first name, timezone, and trading interests submitted through our signup form.
  • Trading review data: Session reviews, conditional rules, playbook entries, and related content you create within the app.
  • Payment information: Processed securely by Stripe. We do not store credit card numbers. We retain your Stripe customer ID and subscription status.
  • Usage data: Basic server logs including IP addresses for rate limiting and security purposes.

2. How We Use Your Information

  • To provide and maintain the TBTY service
  • To process payments through Stripe
  • To send transactional emails (sign-in links, Quick Start Guide)
  • To send the weekly digest email (opt-out available)
  • To enforce rate limits and prevent abuse

We do not sell your personal information. We do not use your trading review data for any purpose other than providing the service to you.

3. Cookies and Sessions

We use a single session cookie to keep you signed in. This cookie contains a signed token with your user ID and an expiration timestamp. We do not use third-party tracking cookies or analytics trackers.

4. Third-Party Services

  • Google OAuth: Used for authentication. We receive your name, email, and profile picture from Google when you sign in.
  • Stripe: Handles all payment processing. Subject to the Stripe Privacy Policy.
  • Resend: Used to send transactional and digest emails on our behalf.
  • MongoDB Atlas: Our database provider, hosted in the cloud with encryption at rest.
  • Vercel: Our hosting provider. Subject to the Vercel Privacy Policy.

5. Email Communications

We send the following types of email:

  • Sign-in magic links (transactional, cannot be opted out)
  • Quick Start Guide on early-access signup (one-time)
  • Weekly digest summarizing your trading reviews (opt-out via account settings or one-click unsubscribe)

6. Data Retention

Your account data and trading reviews are retained for as long as your account is active. If you cancel your subscription, your data is retained so you can access it if you resubscribe. You can request deletion of your account and all associated data by contacting us.

7. Data Security

We implement security measures including HTTPS encryption, CSRF protection on all mutating endpoints, rate limiting, signed session tokens with HMAC-SHA256, and timing-safe comparisons to prevent timing attacks.

8. Your Rights

You have the right to access, correct, or delete your personal data. You can update your email preferences from the billing page, or contact us for account-level requests.

9. Contact

For privacy-related questions or data requests, contact us at privacy@tradebty.com.

10. Changes to This Policy

We may update this privacy policy from time to time. Changes will be posted on this page with an updated revision date. Continued use of the service after changes constitutes acceptance.