Privacy Policy

Last Updated: March 11, 2026

1. Introduction

Pro Portfolio Tracker ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our portfolio tracking platform.

By using Pro Portfolio Tracker, you consent to the data practices described in this policy.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Email address
  • Password (stored securely hashed)
  • Account preferences

2.2 Portfolio Data

You may choose to input financial data including:

  • Portfolio names and configurations
  • Asset holdings and quantities
  • Transaction history (buys, sells, dividends)
  • Custom notes and labels

2.3 Usage Data

We automatically collect:

  • Browser type and version
  • Pages visited and features used
  • Time and date of access
  • Device information

3. How We Use Your Information

We use the information we collect to:

  • Provide and maintain the Platform
  • Process your portfolio calculations and analytics
  • Send you service-related communications
  • Improve our Platform and user experience
  • Enforce our Terms of Service
  • Comply with legal obligations

4. Data Storage & Security

Your data is stored securely using Supabase, a modern PostgreSQL-based backend platform with enterprise-grade security.

Row Level Security (RLS)

We implement Row Level Security (RLS) at the database level. This means:

  • Each user can only access their own data—enforced by the database itself
  • Even if application code were compromised, database-level policies prevent cross-user data access
  • Support staff cannot view individual portfolio values or financial details

Additional Security Measures

  • All data transmitted via HTTPS encryption
  • Automated daily backups with point-in-time recovery
  • Data stored redundantly across multiple availability zones
  • Regular security audits and updates

5. Third-Party Services

5.1 Stripe (Payment Processing)

We use Stripe to process subscription payments. When you subscribe to a paid plan:

  • Your payment card details are sent directly to Stripe—we never see or store your full card number
  • We store only a Stripe customer ID and subscription status
  • Stripe's privacy policy governs their handling of your payment data: stripe.com/privacy

5.2 Market Data Providers

We retrieve live market prices and financial data from third-party providers (including Yahoo Finance). No personal information is shared with these providers—only asset symbols are queried.

5.3 OpenAI (AI Features) — Privacy-First Approach

For Pro subscribers, we offer AI-powered Morning Briefings and Portfolio Health analysis using OpenAI (GPT-4o-mini).

What We Send to AI:

  • Percentage allocations only (e.g., "30% Australian Stocks, 25% US Tech")
  • Percentage returns (e.g., "+5.2% this month")
  • Asset types and sectors

What We NEVER Send to AI:

  • Actual dollar amounts or portfolio values
  • Net worth or account balances
  • Email addresses or personal identifiers
  • Transaction amounts or purchase prices

The AI sees "30% in Australian dividend stocks" but never "$150,000 in CBA". Your actual financial position remains private.

6. Cookies & Tracking

We use essential cookies to maintain your login session and remember your preferences. We do not use third-party advertising or tracking cookies.

You can disable cookies in your browser settings, but this may affect Platform functionality.

7. Data Retention

We retain your account and portfolio data for as long as your account is active. If you delete your account:

  • Your portfolio data is permanently deleted within 30 days
  • Aggregated, anonymised statistics may be retained for product improvement
  • We may retain certain data as required by law (e.g., billing records)

8. Your Rights

You have the right to:

  • Access your personal data via the Reports section (CSV/PDF exports)
  • Correct inaccurate data in your account settings
  • Delete your account and associated data
  • Export your portfolio data in standard formats

To exercise these rights, contact us at support@proportfoliotracker.xyz

9. Children's Privacy

Pro Portfolio Tracker is not intended for users under 18 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us immediately.

10. International Users

Pro Portfolio Tracker is operated from Australia. If you access the Platform from outside Australia, please be aware that your information may be transferred to, stored, and processed in Australia where our servers are located.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last Updated" date. Your continued use of the Platform after changes indicates acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us at:

support@proportfoliotracker.xyz