TraderTrack ("we", "us", or "the Service") is a personal trade-signal
intelligence tool that aggregates publicly-posted trade ideas from
X (formerly Twitter) and helps you keep your own trade journal. This
policy explains what information we collect, how we use it, and what
controls you have.
Information we collect
Google account identifiers. When you sign in with
Google, we receive your email address, full name, profile picture,
and a stable Google identifier (the OpenID Connect ``sub`` claim).
We use these to identify you across sessions and to display your
name in the app. We do NOT receive your Google password, contacts,
Drive files, or any other Google services data.
Public trade content. Tweets we fetch from the X
public API on your behalf are stored in our database to power the
feed and analytics. This is content the original authors posted
publicly; we don't deal with private or protected accounts.
Your journal entries. Notes, screenshots, and trade
plans you create inside the app are stored against your user account.
Configuration data. Your watchlist of tracked X
accounts, your selected LLM model, and your account-size and risk
settings.
Session cookies. A signed cookie identifying your
user_id, used to keep you logged in across requests. The cookie is
HMAC-signed with a server-side secret; we don't store any of its
content beyond your user_id.
How we use this information
To authenticate you and show you your own data.
To run the aggregation pipeline against the X handles you've added.
To compute analytics (win rates, exposure, P&L estimates) on your
data and the public trader data you follow.
To diagnose errors and improve the Service.
Information we do NOT collect or sell
We don't sell, rent, or trade your data to anyone.
We don't run advertising and don't share data with ad networks.
We don't track you across other sites.
Third-party services
The Service relies on a small number of providers to function:
Render (hosting + Postgres database) — your data
lives on infrastructure operated by Render Services, Inc.
Google (OAuth identity provider).
X (we read public tweets from the X API v2; we do
not post on your behalf).
LLM providers (xAI / OpenRouter, depending on your
model selection) — tweet text and your prompts are sent to the
provider for extraction and summarisation. Provider terms apply
to that data once it leaves our system.
Binance / CoinGecko (public price data) — these
receive ticker symbols and date ranges, no personal data.
Data retention and deletion
We keep your data for as long as your account exists. You can request
deletion of your account and all associated data by emailing us at the
address below; we'll process the request within 30 days.
Your rights
You can request a copy of your personal data, correct inaccurate data,
or have your data deleted, regardless of jurisdiction. If you're in the
EU/UK (GDPR) or California (CCPA), the regional rights specific to your
location also apply. Email us to exercise any of these rights.
Children
TraderTrack is not intended for users under 18 and we don't knowingly
collect data from minors. If you believe we have, contact us and we'll
delete it.
Changes to this policy
We'll update this page if anything material changes and bump the
"Last updated" date. For substantive changes affecting active users,
we'll also notify you via email.