Back
P
PipPilot

Privacy Policy

Last updated: July 19, 2026

1. Introduction

This Privacy Policy explains how PipPilot (“we,” “us,” or “our”) collects, uses, and protects your information when you use our trading journal application (the “Service”). By creating an account, you agree to the collection and use of information as described here.

2. Information We Collect

We collect the following categories of information:

  • Account information — the email address and password you provide when signing up.
  • Trading journal data— trades you log (dates, P&L amounts, pairs, notes, strategy tags, mistake tags, R-multiples), account settings, custom checklists, and any other data you enter into the app.
  • Usage data — basic technical information such as browser type and general usage patterns, used only to keep the Service running reliably.

We do not currently collect or require any bank account numbers, brokerage credentials, or payment card details. All figures you log (P&L, account balances, drawdown limits) are entered manually by you and are not verified against any real financial institution.

3. How We Use Your Information

  • To provide, operate, and maintain the Service.
  • To authenticate your account and keep your data separate and private from other users.
  • To send you account-related emails (e.g. confirming your email address), and, only if you opt in, trade reminders or goal-reached notifications.
  • To diagnose and fix technical problems.

We do not sell your data. We do not use your trading data to train any AI model. We do not share your journal entries with any third party for marketing purposes.

4. Data Storage & Security

Your data is stored using Supabase, a third-party database and authentication provider, on infrastructure located in the region our project is hosted. Every table containing your data uses row-level security, meaning the database itself enforces that only you can read or write your own rows — this isn’t just an application-level rule. Passwords are hashed and never stored in plain text.

No system is 100% secure, and we cannot guarantee absolute security of information transmitted over the internet.

5. Third-Party Services

We rely on the following third-party services to operate PipPilot:

  • Supabase — authentication and database hosting.
  • Vercel — application hosting and delivery.
  • An email delivery provider — used solely to send account confirmation and, if enabled, notification emails.

Each of these providers has its own privacy practices governing the infrastructure they operate.

6. Cookies & Local Storage

We use a small number of essential cookies to keep you signed in securely — these are required for the Service to function and are not used for advertising or cross-site tracking. We do not use third-party advertising cookies.

7. Your Rights

  • Access & export — you can export all of your trading data at any time as a JSON file from Settings → Data.
  • Deletion — you can permanently delete all of your trade data from Settings → Danger Zone. To delete your account entirely, contact us using the details below.
  • Correction — you can edit or remove any trade, setting, or profile detail directly within the app at any time.

8. Data Retention

We retain your data for as long as your account remains active. If you delete your account, we will delete your associated data within a reasonable period, except where retention is required by law.

9. Children’s Privacy

PipPilot is not intended for, and we do not knowingly collect information from, anyone under the age of 18.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will update the “Last updated” date above when we do. Continued use of the Service after changes take effect constitutes acceptance of the revised policy.

11. Contact Us

If you have questions about this Privacy Policy or how your data is handled, contact us at support@pippilot.app.