Privacy Policy
Last updated: 3 June 2026
Information we collect
TradeRR.ai collects the minimum information needed to provide and improve the service. This includes:
Account information
- Email address (used for login and account communications)
- Full name (optional, used for display purposes)
- Account creation date and last sign-in time
- Plan type and subscription status
Trading journal and import data
- Trade records imported via CSV, NinjaTrader, or Tradovate connections
- Journal entries, notes, screenshots, and tags added by the user
- Trading accounts and performance statistics calculated from imported data
Billing data
- Subscription plan and billing period
- Stripe customer ID and subscription ID (references to Stripe — we do not store card details)
- Payment status and access end dates
Authentication data
- Authentication tokens managed securely by Supabase
- Password hashes (never stored in plain text)
- OAuth provider data if you sign in with a third-party provider
How we use your data
- To create and maintain your TradeRR account
- To provide access to dashboard features based on your plan
- To store and display your trading journal, trades, and statistics
- To process and manage your subscription via Stripe
- To send account-related emails (confirmation, password reset, billing)
- To improve TradeRR.ai based on anonymised usage patterns (if analytics cookies are enabled)
- To respond to support requests submitted via the contact form or support inbox
How data is stored
Your data is stored securely in a PostgreSQL database hosted by Supabase. Row Level Security (RLS) ensures that users can only access their own data. Data is encrypted in transit using TLS.
Payment card details are handled entirely by Stripe and are never stored by or transmitted to TradeRR.ai. We only store billing identifiers (Stripe customer ID, subscription ID) to manage your plan.
Third-party services
TradeRR.ai uses the following third-party services to operate:
- Supabase — authentication, database, and file storage
- Stripe — payment processing and subscription billing
- Vercel — application hosting, edge deployment, and analytics
- Tradovate / NinjaTrader — only when you explicitly connect your trading account; data is fetched on your behalf and stored in your TradeRR profile
No trading or personal data is shared with advertising networks or sold to third parties.
Your rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and associated data
- Object to or restrict certain types of data processing
- Data portability (export your trade data from the dashboard)
To exercise any of these rights, please contact us at support@traderr.ai.
Data retention
We retain your account data for as long as your account is active. If you delete your account, your profile and associated data will be removed from our systems, subject to legal and billing obligations.
Imported trade data and journal entries are retained until you delete them or request account deletion. Billing records may be retained for a period required by applicable financial regulations.
Security
TradeRR.ai implements industry-standard security measures including TLS encryption, secure authentication managed by Supabase, database-level Row Level Security, and regular security reviews. However, no system is completely immune to security incidents. If you believe your account has been compromised, please contact us immediately.
Governing law and data protection authority
TradeRR.ai is operated from the Dubai International Financial Centre (DIFC), United Arab Emirates. This Privacy Policy and any dispute relating to it are governed by the laws of the DIFC and, where applicable, the laws of the United Arab Emirates. The exclusive jurisdiction for any such dispute is the courts of the DIFC.
We process personal data in line with the DIFC Data Protection Law (DIFC Law No. 5 of 2020). If you are based in the European Economic Area, the United Kingdom, or another jurisdiction with its own data protection regime, additional rights under your local law (such as the EU/UK GDPR) may also apply to your data, and we will honour those rights where they extend beyond those listed above.
If you believe your data has been handled in a way that does not comply with applicable law, you may lodge a complaint with the DIFC Commissioner of Data Protection (difc.ae/business/operating/data-protection) or with the data protection authority in your country of residence.
Contact
If you have questions about this Privacy Policy or how your data is handled, please contact us at support@traderr.ai or via our contact page.