Privacy policy

Ledger, a trading journal · Last changed: [date of publication]

Draft. This text describes what the app does today; it has not yet been reviewed by a lawyer.

Ledger is a trading journal for your phone and your computer. You keep your trades in it, and it shows you what they say. This page explains, in plain words, what we keep about you, why, where, for how long, and what you can do about it.

Who we are

Ledger is run by [full name], [address], Switzerland (“we”). Write to us at [support email] or through Settings → Help and feedback in the app. We are responsible for your data under the Swiss Federal Act on Data Protection (FADP) and, for people in the European Union or the UK, the GDPR.

What we keep, and why

WhatWhy
Your email address and password (the password only as a scrambled hash we can’t read)Your account: so you can sign in on any device.
Your journal: trades (tickers, dates and times, prices, amounts, fees, setups, ratings, notes) and account valuesThe service itself. We don’t look at your journal, except when you ask us to help with it.
Your settings: currency, trading style, setups, lookSo the app fits how you trade, on every device.
Your plan: when you signed up, your free month, whether you subscribed and paidTo know whether you can use the app, and to run the business (how many people subscribe).
Messages you send usTo answer you.
Crash reports: an error message, the page, your browser’s name, and your account if signed inTo find and fix problems. Never the contents of your journal.
Your email address, if you join the waitlistTo tell you when the app opens. Nothing else.

The legal bases, where the GDPR applies: the contract with you (your account, journal and plan), our legitimate interest in a working, secure service (crash reports), and your consent (the waitlist), which you can withdraw at any time.

What stays on your device

Who else is involved

ServiceWhat forWhat they see
Supabase (database and sign-in), servers in [Zurich, Switzerland]Keeping your account and journalEverything listed above, stored for us
Cloudflare (hosting the website)Delivering the app to your browserYour IP address and browser, as any website does
Paddle (payments, as “merchant of record”)Selling you the subscription: Paddle is the seller, handles the payment and VAT, and sends receiptsWhat you give Paddle at checkout (name, email, card, country). We never see your card. Paddle’s own privacy policy applies to it.
Frankfurter (the European Central Bank’s exchange rates)Converting amounts into your account’s currencyA request for a rate and your IP address; nothing about you or your trades
Your broker (Trading 212, Interactive Brokers, eToro), only if you connect itFetching your historyYour key, through our relay

Some of these may process data outside Switzerland and the EU. Where they do, they are bound by the safeguards the law requires (such as the EU’s standard contractual clauses). We don’t sell your data, and we don’t share it with anyone else.

How long we keep it

Your rights

Security

Everything travels encrypted (HTTPS). Each account can reach only its own rows: the database itself enforces this, not just the app. Your password is never stored readable. The app holds no secret keys; those stay on our servers.

Children

Ledger is for adults (18 and over).

Changes

If we change this policy, the date at the top changes, and for anything important we tell you in the app or by email first.