Privacy Policy
Last updated: July 16, 2026
This Privacy Policy explains what information LB TradingTracker ("we", "us") collects, how we use it, and the choices you have. We keep it simple: we collect only what the service needs to work, and we do not sell your data.
Information we collect
- Account information — an email address and a password verified by Firebase Authentication (Google Cloud). We do not store your password ourselves.
- Waitlist email — if you joined our pre-launch waitlist, we store the email address you provided, solely to contact you about the service.
- Trading journal data — the trades, portfolio settings, notes, and imported lists you enter into the app. This data belongs to you and is stored so the app can show it back to you.
- API keys you provide — an optional third-party market-data API key (e.g. Finnhub) that you supply in Settings, used only to fetch quotes on your behalf.
- Session cookie — a signed cookie that keeps you logged in. We do not use advertising or cross-site tracking cookies.
- Billing information — if you subscribe, payments are processed by Stripe. We never see or store your card number; we store only your subscription status, plan, and a Stripe customer reference.
How we use information
- To provide, maintain, and secure the service.
- To contact pre-launch waitlist subscribers about the service.
- To diagnose technical problems (server logs may include IP addresses and request metadata).
We do not sell, rent, or share your personal information with third parties for their marketing purposes.
Third-party services
Subscription payments are handled by Stripe, Inc., which receives the billing details you enter at checkout (card number, billing address) under its own privacy policy — that information never touches our servers.
The service runs on cloud infrastructure providers (hosting and data storage) and retrieves market quotes from third-party data providers (e.g. Finnhub, Yahoo Finance). Ticker symbols you view may be sent to those providers to fetch quotes; your journal contents are not shared with them. Fonts and styling assets may be loaded from public CDNs, which receive standard request metadata (such as your IP address) when your browser fetches them.
Data retention and deletion
We retain your data while your account is active. You may request deletion of your account, your journal data, or your waitlist entry at any time by contacting us, and we will remove it within a reasonable period.
Security
Data is transmitted over HTTPS and stored with access restricted to the service. No method of transmission or storage is 100% secure, so we cannot guarantee absolute security.
Children
The service is not directed to children under 16, and we do not knowingly collect personal information from them.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
Contact
Questions about this policy or your data? Contact us at smoroz@gmail.com.