1. Information We Collect
We collect the following types of information when you use EasyStocks AI:
Account Information
- Email address — used for authentication and account recovery
- Password — stored securely using bcrypt hashing (we never store plaintext passwords)
- Birth year (optional) — used solely to calculate age-based investment strategy recommendations
Portfolio & Watchlist Data
- Stock transactions you record (ticker, shares, price, date)
- Portfolio names and configurations
- Stocks added to your watchlist
Usage Information
- Pages visited and features used (server logs)
- Browser type and device information (from HTTP headers)
- IP address (server logs only, not stored in user profiles)
2. How We Use Your Data
We use the information we collect to:
- Provide and maintain the stock scoring and portfolio tracking service
- Calculate age-based investment strategy recommendations (using birth year)
- Authenticate your identity and secure your account
- Send notifications about stock changes and portfolio updates (if enabled)
- Improve our scoring algorithms and overall service quality
- Monitor and prevent abuse of the platform
We do not sell, rent, or share your personal data with third parties for marketing purposes.
3. Data Storage & Security
We take the security of your data seriously:
- Encryption in transit: all connections use HTTPS/TLS encryption
- Password security: passwords are hashed with bcrypt and never stored in plaintext
- Database encryption: database connections are encrypted with SSL
- Infrastructure: hosted on secure cloud infrastructure with regular security updates
4. Cookies
We use only strictly necessary session cookies required for the platform to function:
- Session cookie: maintains your login state as you navigate the site. This cookie is essential for authentication and is deleted when you log out or close your browser.
We do not use advertising cookies, analytics tracking cookies, or any third-party tracking cookies. Because we only use strictly necessary cookies, no cookie consent banner is required.
5. Third-Party Data Sources
We fetch market data from financial data providers to power our stock scoring and analysis. These providers supply stock prices, dividends, financial metrics, and sector information.
We do not share your personal data with these providers. Our API calls to data providers contain only stock ticker symbols — no user information, email addresses, or portfolio data is transmitted.
6. Shared Portfolios
Portfolio sharing is entirely opt-in. If you choose to share a portfolio:
- A unique, private link is generated that you control
- The shared view displays portfolio positions and performance only — no account details, email, or personal information is visible
- You can revoke the shared link at any time
- Shared links do not appear in search engines or public directories
7. Your Rights (GDPR)
Under the General Data Protection Regulation (GDPR) and similar data protection laws, you have the following rights:
- Right to Access: request a copy of the personal data we hold about you
- Right to Rectification: request correction of inaccurate personal data
- Right to Erasure: request deletion of your account and all associated data
- Right to Data Portability: request your portfolio and transaction data in a portable format
- Right to Restrict Processing: request that we limit how we process your data
- Right to Object: object to the processing of your personal data
To exercise any of these rights, please contact us at the email address below. We will respond to your request within 30 days.
8. Data Retention
- Account data: retained for as long as your account is active
- Portfolio and watchlist data: deleted when you delete your account
- Server logs: retained for up to 30 days for security and debugging purposes
- Account deletion: all personal data is permanently deleted within 30 days of an account deletion request
9. Children's Privacy
EasyStocks AI is not directed to individuals under the age of 18. We do not knowingly collect personal data from minors. If we become aware that we have collected data from a person under 18, we will take steps to delete that information promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page indicates when the policy was last modified. We will make reasonable efforts to notify users of material changes through the platform.
Your continued use of the platform after changes are posted constitutes acceptance of the updated policy.
11. Contact
If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at [email protected].