What we store, and what we never see
A plain-language description of the data Stock Sentinel holds, written to match what the product actually does rather than what a template assumes.
This is a plain-language summary, not a legal document drafted by a lawyer. It describes current behaviour accurately. If anything here matters to a decision you are making, ask us.
What we collect
| Data | Why |
|---|---|
| Email address | To create your account, sign you in, and contact you about your account. |
| Password | Stored only as a cryptographic hash by our authentication provider. We cannot read it. |
| Credit balance | To know what you have bought and what remains. |
| Purchase records | Date, amount, currency, status, and the reference identifiers Stripe returns for each payment. Used for support and reconciliation. |
| Usage records | What each credit was spent on — which action, and when — so a balance can be explained and a failed run refunded. |
| Support messages | If you contact us: the topic, your email, your message, and your browser's user-agent string. |
| Sign-in token | If you choose “remember me”, a token that expires after 30 days. |
What we never see
Card numbers. Payment details are entered on Stripe’s own checkout page. They are not displayed to Stock Sentinel, do not pass through our servers, and are not stored in any of our records. What we keep is a reference identifier and an amount.
Anything you do not give us. We do not buy data about you, and we do not attempt to identify you beyond the account you created.
No advertising trackers
Stock Sentinel does not use advertising networks, analytics trackers, or third-party marketing pixels. There is no Google Analytics, no advertising cookie, and nothing that follows you to other sites.
Who processes data on our behalf
Running the product requires a small number of service providers. Each sees only what its job requires.
| Provider | Role | What it handles |
|---|---|---|
| Supabase | Database and sign-in | Your account record, credit balance, purchase and usage history, support messages. |
| Stripe | Payments | Your card details, entered directly on Stripe’s checkout page, and the resulting payment record. |
| Railway | Application hosting | Runs the application. Server logs may include request metadata. |
| Cloudflare | Domain and site delivery | Routes traffic to the site. |
| Sentry | Error reporting | Technical detail about application errors, so faults can be diagnosed. |
Market and social data providers supply information about publicly traded companies. They do not receive information about you, and your searches are not sent to them as identifiable activity.
How long we keep it
- Account data — for as long as your account exists.
- “Remember me” tokens — 30 days, then they expire and stop working.
- Purchase records — retained after account deletion where required for financial record-keeping, since they evidence money that actually moved.
- Support messages — kept so a conversation can be continued and a decision explained.
Your choices
You can ask us to show you what we hold about you, correct it, or delete your account. Contact us and we will do it.
Please do not put sensitive personal information into ticker inputs or support messages — neither field needs it, and neither is designed to protect it.
Changes
If what we collect changes, this page changes with it. It is written to describe the product as it currently works, so it is updated when the product is.