Privacy Policy
1. Information We Collect
When you sign in via OAuth (Google, Facebook, etc.), we receive and store:
- Profile info: Name, email address, and profile picture URL from your OAuth provider
- Provider ID: A unique identifier from your OAuth provider (not your password)
When you use our features, we store:
- Watchlists: Stock symbols you add to your watchlists
- Portfolios: Stock symbols, share quantities, and cost basis you enter
- Transactions: Buy/sell records you log in your portfolio
2. How We Use Your Data
- To display your watchlists and portfolio analytics to you
- To provide AI-powered chat responses about your holdings (symbols only — share counts and cost basis are never sent to AI providers)
- To generate anonymized aggregate statistics (e.g., most-watched tickers) — your individual data is never exposed
3. What We Don't Do
- We never sell your personal data
- We never share individual portfolio or watchlist data with third parties
- We never send your share counts, cost basis, or P&L to AI providers
- We never display individual user data to other users or admins
- We do not provide personalized investment advice
4. Third-Party Services
- OAuth providers (Google, etc.): We use their authentication service. We receive profile info but they do not receive your InsiderStreet data.
- AI chat (xAI/Grok): When you ask about your portfolio or watchlist, we send only stock symbols and publicly available market data — never your personal financial details.
5. Data Storage & Security
- Your data is stored in an encrypted database with restricted file permissions
- Session cookies use Secure, HttpOnly, and SameSite flags
- We use HTTPS for all connections
6. Your Rights
- Access: View all your data via your watchlist and portfolio pages
- Deletion: Delete your entire account and all data at Account Settings
- Portability: Your watchlist and portfolio data is accessible via our API endpoints
7. Aggregate Data
We may generate and display anonymized aggregate statistics such as "most watched tickers" or "most held stocks." This data is fully anonymized — it is impossible to identify any individual user from aggregate statistics. We require a minimum threshold (2+ users) before including any ticker in aggregate reports.
8. Data Retention
We retain your data as long as your account is active. When you delete your account, all data is permanently and immediately removed from our systems.
9. Contact
For privacy inquiries, contact us at privacy@insiderstreet.ai