Privacy Policy
Last updated: February 18, 2026
1. Data We Collect
- Google profile: name, email address, profile photo (collected at sign-in via Google OAuth)
- Investigation history: inputs submitted and reports generated (stored in your account)
- Subscription data: PayPal subscription ID, status, billing dates (no payment card data stored by StockDossier)
- Usage data: pages visited, features used (analytics only, no personal identification)
- Contact form submissions
2. Data We Do NOT Collect
- Financial account numbers or credentials
- Payment card information (handled entirely by PayPal)
- Investment portfolios or holdings
- Any data you don't explicitly submit
3. How We Use Your Data
- To provide the investigation service
- To manage your subscription
- To respond to support requests
- To improve the service
We do not sell your data to third parties. We do not use your data for advertising.
4. Third-Party Services
Supabase
Database and authentication (EU infrastructure available)
PayPal
Payment processing
Anthropic
AI analysis. Investigation inputs are sent to the Anthropic API for processing. See Anthropic's privacy policy.
Vercel
Hosting
5. Data Retention
- Investigation history: retained for 12 months, then automatically deleted
- Account data: retained while account is active
- Contact submissions: retained for 24 months
6. GDPR Rights (EU Users)
You have the right to:
- Access your personal data
- Correct inaccurate data
- Delete your account and data
- Export your data
- Withdraw consent
Contact support@stockdossier.com to exercise these rights. We respond within 30 days.
8. Security
Data is encrypted in transit (TLS) and at rest. Access is controlled via Supabase Row Level Security.
9. Contact
For privacy-related inquiries, contact us at privacy@stockdossier.com.