Skip to main content

Privacy Policy

Your data belongs to you

Last updated: October 28, 2025

At RelayDesk, we take your privacy seriously. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our trading automation platform. By using RelayDesk, you agree to the practices described in this policy.

1. Information We Collect

We collect the following types of information to provide and improve our services:

1.1 Account Information

  • Email address (used for authentication and account recovery)
  • Name and optional profile photo
  • Account preferences and notification settings
  • Subscription plan and billing metadata (processed via Stripe)

1.2 Trading Data

  • Bot configurations, strategy parameters, and risk management settings
  • Broker API credentials (encrypted with AES-256 before storage)
  • Trade execution history, fills, and performance analytics
  • TradingView webhook payloads you send to RelayDesk
  • Position tracking and profit/loss calculations

1.3 Technical and Usage Information

  • IP address, browser type, device information, and operating system
  • Usage analytics (pages visited, features used, session duration)
  • Session identifiers and authentication tokens
  • Error logs and debugging telemetry to improve reliability

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Provide Core Services: Authenticate users, execute trades via your broker API, monitor positions, and deliver automation features.
  • Account Security: Protect your account from unauthorized access, detect suspicious activity, and enforce our Terms of Service.
  • Transactional Notifications: Send alerts about trade execution, system incidents, account changes, or product updates (you can manage preferences in settings).
  • Product Improvement: Analyze aggregated usage patterns to improve features, fix bugs, and optimize performance.
  • Billing and Payments: Process subscription payments via Stripe and maintain billing records.
  • Legal Compliance: Comply with applicable laws, regulations, and legal requests.

We do NOT sell your personal information or trading data to third parties. We do NOT use your data for advertising or marketing purposes beyond our own service.

3. Data Security

We implement industry-standard security measures to protect your data:

3.1 Encryption

  • Broker API credentials are encrypted using AES-256 encryption before storage
  • All data in transit uses HTTPS/TLS encryption
  • Database connections are encrypted and use secure authentication

3.2 Authentication

  • Firebase Authentication enforces email verification and secure session management
  • Secure, HTTP-only cookies prevent XSS attacks
  • Authentication tokens expire automatically after inactivity

3.3 Data Isolation

  • Per-user scoping at the database layer ensures your strategies and trades remain private
  • Role-based access controls prevent unauthorized internal access

3.4 Infrastructure Security

  • Managed cloud hosting with automated security patches
  • Automated backups and disaster recovery procedures
  • Continuous monitoring and incident response protocols

While we take extensive precautions, no system is 100% secure. You are responsible for keeping your account credentials confidential and notifying us immediately of any unauthorized access.

4. Third-Party Services

RelayDesk integrates with the following third-party services to provide functionality:

Firebase Authentication (Google)

Manages user identity, login, and session management.

View Firebase Privacy Policy

Alpaca Markets

Executes trades via the API credentials you provide. Alpaca is a FINRA/SIPC member broker-dealer.

View Alpaca Privacy Policy

PostgreSQL (Neon)

Hosts encrypted databases for RelayDesk with enterprise-grade security and compliance.

TradingView

Sends webhook alerts you configure to trigger automation. RelayDesk receives only the payloads you explicitly send.

We carefully vet all third-party services for security and privacy. However, we are not responsible for the privacy practices of these external services. We encourage you to review their privacy policies.

5. Your Rights and Choices

You have the following rights regarding your personal data:

  • Access: Request a copy of all personal data we hold about you.
  • Correction: Update or correct inaccurate information in your account settings.
  • Deletion: Request deletion of your account and associated data (subject to legal retention requirements).
  • Export: Download your trading data, bot configurations, and performance analytics.
  • Notification Preferences: Manage email and in-app notification settings from your account.
  • Withdraw Consent: Withdraw consent for data processing (note: this may impact platform functionality).

To exercise any of these rights, email [email protected]. We will respond within 30 days.

6. Data Retention

  • Active Account Data: Retained while your account is active and for 90 days after cancellation.
  • Trade History: Retained for seven years to comply with financial reporting and tax regulations.
  • Deleted Accounts: Personal data (name, email, preferences) removed within 90 days. Regulatory records (trade history) archived per legal requirements.
  • Session Data: Expires automatically after seven days of inactivity.

You can request early deletion by contacting [email protected], though regulatory records may still be retained.

7. Cookies and Tracking

We use cookies and similar technologies to enhance your experience:

Essential Cookies

Required for authentication, session management, and core functionality. Cannot be disabled.

Preference Cookies

Store your theme, timezone, and view settings to personalize your experience.

Analytics Cookies

Help us understand usage patterns, measure performance, and improve features.

You can control cookies via your browser settings. Note that disabling essential cookies will prevent you from using RelayDesk.

8. International Users

RelayDesk is based in the United States. If you access the platform from outside the U.S., your information may be transferred to and processed in the United States. We comply with GDPR requirements for EU users and use appropriate safeguards (such as Standard Contractual Clauses) for international data transfers.

If you are an EU resident, you have additional rights under GDPR, including the right to lodge a complaint with your local data protection authority.

9. Children's Privacy

RelayDesk is not intended for individuals under 18 years of age. We do not knowingly collect personal information from minors. If you believe we have collected information from a minor, please email [email protected] and we will delete it immediately.

10. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will post the new effective date at the top of this page and, for material changes, notify you via email or in-app alert. Your continued use of RelayDesk after changes means you accept the updated policy.

Trading risk disclosure: options trading involves substantial risk of loss and is not suitable for all investors. RelayDesk executes your strategies, you are solely responsible for outcomes.