Privacy Policy
1. What We Collect
Account information: email address, and authentication data from your chosen sign-in method (Google, or email/password).
Exchange connectivity: when you connect Binance or another exchange, we store your API key and secret encrypted at rest, restricted to the read/trade-only permissions you configured. We never ask for or accept credentials with withdrawal permission.
Trading and automation settings: the risk parameters, enabled assets, and automation preferences you configure.
Wallet and deposit data: historical platform wallet balances, deposit addresses, and on-chain transaction records associated with deposits you previously made (legacy custody is currently offline pending replacement).
Usage data: pages viewed, features used, and device/browser information, collected to keep the Service reliable and to improve it.
Support conversations: messages you send to Help & Support, including replies from our support agent and, where a conversation is escalated, from a human team member.
2. How We Use It
To provide the Service (ranking opportunities, executing automation you configured, processing subscriptions when available, retaining historical deposit/ledger records), to secure your account, to respond to support requests, and to improve the platform. We do not use your trading data to trade on our own account, and we do not sell your personal data.
3. Who We Share It With
We share data only where necessary to operate the Service: your connected exchange (Binance) receives the order instructions your automation generates; TronGrid (a Tron blockchain data provider) is queried to detect your on-chain deposits; our support conversation may be processed by a third-party AI provider strictly to generate a first-line support reply, scoped to never discuss other users' data. We do not sell or rent personal data to advertisers or data brokers.
4. How We Protect It
Exchange API credentials are encrypted at rest and are never displayed in full after entry. Deposit addresses are derived from a hardware-isolated wallet seed; we never expose private keys through the app. Sessions expire after a period of inactivity.
5. Your Rights
You can review and update your account details from Profile, disconnect an exchange at any time from API Management, and request deletion of your account and associated data via Help & Support or the Delete Account option in the profile menu. Some records (e.g. completed transactions) may be retained where we have a legal or regulatory obligation to keep them.
6. Cookies and Local Storage
We use essential cookies/local storage to keep you signed in and to remember preferences like your theme choice. We do not use third-party advertising trackers.
7. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be highlighted in-app where practical.
8. Contact
Questions about this policy, or requests regarding your data, can be sent through Help & Support in the app, or to privacy@zappa-ai.com.