Privacy Policy

Last updated: May 2026

1. Introduction

AI-Stock (“we”, “us”, “our”) is committed to protecting your personal data. This Privacy Policy explains what information we collect, how we use it, and your rights regarding it. By using the Service you consent to the practices described here.

2. Information We Collect

  • Account data: When you sign in with Google OAuth we receive your email address, name, and profile picture from Google. We do not receive your Google password.
  • Preferences: Capital amount and risk level you set during onboarding, stored in our database to personalise your picks.
  • Payment data: Razorpay order IDs and payment IDs are stored to confirm your access. We never store full card numbers, CVVs, or bank account details — those remain with Razorpay.
  • Usage data: Page views and feature usage via anonymised analytics, used to improve the product. No third-party advertising trackers are used.
  • Watchlist: Stocks you choose to save, stored against your account.

3. How We Use Your Data

  • To authenticate your account and maintain your session.
  • To deliver personalised stock picks based on your capital and risk preferences.
  • To verify payment status and control access to paid features.
  • To send transactional emails (access confirmation, expiry reminders). We do not send marketing emails without explicit consent.
  • To improve the AI models and product experience through aggregate usage analysis.

4. Third-Party Services

  • Supabase — database and authentication infrastructure. Data is stored in Supabase's managed PostgreSQL (EU region by default). Supabase's privacy policy applies to data processed on their infrastructure.
  • Google OAuth — used for sign-in only. We request only your email and public profile. Google's Privacy Policy governs Google's handling of your data.
  • Razorpay — payment processing. Razorpay stores payment method data under their PCI-DSS compliance. We only receive transaction identifiers.

5. Data Retention

We retain your account and preferences data for as long as your account is active. Payment records are retained for 7 years as required by Indian tax regulations. You may request deletion of your account and associated data at any time (see Section 7).

6. Data Security

We implement industry-standard security measures including TLS encryption in transit, row-level security policies in our database, and server-side-only access for sensitive keys. No system is 100% secure; if you discover a vulnerability, please contact us immediately.

7. Your Rights

Under applicable Indian data protection law you have the right to:
  • Access the personal data we hold about you.
  • Correct inaccurate data.
  • Request deletion of your account and associated data.
  • Withdraw consent for data processing (this will terminate your access to the Service).
To exercise these rights, email suryasunrise261@gmail.com.

8. Cookies

We use only essential session cookies required for authentication (set by Supabase). We do not use advertising or tracking cookies.

9. Children

The Service is not directed at individuals under 18. We do not knowingly collect data from minors. If we become aware of such collection we will delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or a notice on the Service. Continued use after changes constitutes acceptance.

11. Contact

Privacy questions or requests: suryasunrise261@gmail.com

Terms of Service · Back to home