How it worksMarketsPerformancePricingAboutFAQ Contact
Get BIDZSign in
Privacy Policy

How we handle your data.

Last updated 19 September 2026

This policy explains what personal data BIDZ processes, why, and your rights.

1. Data we collect

  • Account data: name, email address, country (optional), password hash (never your password itself).
  • Service data: TradingView username, subscription status, entitlement status, notification preferences, support tickets and attachments.
  • Billing data: payment records and Stripe customer identifiers. Card details are collected and stored by Stripe; BIDZ never receives your full card number.
  • Security data: sign-in events, IP address, device/browser description and session records, used to protect your account.

2. Why we use it

To provide and secure the Service, process payments, grant indicator access, respond to support requests, send transactional emails (verification, security, billing), and meet legal obligations. We do not sell personal data.

3. Processors

We use Stripe (payments), an email delivery provider (transactional email), Cloudflare (network security and delivery) and our hosting provider. Each processes data only on our instructions.

4. Cookies

We use strictly necessary cookies only: a session cookie that keeps you signed in, a security token that protects forms against cross-site request forgery, and a short-lived message cookie. We do not use advertising or tracking cookies.

5. Retention

Account data is kept while your account is open. Billing records are kept as required for tax and accounting. Security logs are kept for a limited period for fraud prevention. Verification codes and password reset tokens expire within minutes and are stored only as hashes.

6. Security

Passwords are hashed with Argon2id; two-factor secrets are encrypted at rest; sessions use HttpOnly, Secure, SameSite cookies; and access to customer data by staff is permission-controlled and audit-logged.

7. Your rights

Depending on where you live, you may have rights to access, correct, delete, restrict or port your data and to object to processing. Contact support@localhost to exercise them. You may also complain to your data protection authority.