Privacy Policy
Last Updated: October 12, 2025
At Algomind ("we," "our," or "us"), we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use our AI-powered trading analysis and social media automation platform (the "Service").
Key Takeaways:
- We collect account info, trading data, and API usage logs
- We encrypt sensitive data (passwords, OAuth tokens)
- We do NOT sell your personal information
- You can request data deletion at any time
- We comply with GDPR, CCPA, and data protection laws
1. Information We Collect
1.1 Information You Provide
When you create an account or use our Service, we collect:
- Account Information: Name, email address, password (encrypted)
- Profile Data: Username, avatar, preferences
- Payment Information: Processed and stored by Stripe (we only store subscription status)
- Trading Data: Chart uploads, trading pairs, signals you create
- Social Media Tokens: OAuth access/refresh tokens for TikTok, Instagram (encrypted)
- Communication Data: Emails, support tickets, feedback
1.2 Automatically Collected Information
When you use our Service, we automatically collect:
- Usage Data: Pages viewed, features used, time spent on platform
- API Logs: API requests, timestamps, response codes
- Device Information: IP address, browser type, operating system
- Location Data: Country/region based on IP address (not GPS)
- Cookies: Session cookies, authentication tokens, preference cookies
1.3 Third-Party Data
We receive data from:
- TikTok API: Profile info, follower count, post performance (when you connect your account)
- Google Gemini AI: Analysis results and confidence scores
- Stripe: Payment status, subscription details
- Telegram: User ID, chat ID (when you interact with our bot)
2. How We Use Your Information
2.1 Service Provision
We use your information to:
- Create and manage your account
- Process trading data and generate AI analysis
- Generate and post social media content on your behalf
- Send notifications via Telegram, Email
- Process subscription payments and manage billing
- Provide customer support
2.2 Service Improvement
We analyze aggregated, anonymized data to:
- Improve AI model accuracy
- Identify and fix bugs
- Understand feature usage patterns
- Optimize performance and user experience
- Develop new features
2.3 Communication
We may contact you for:
- Service updates and maintenance notifications
- Security alerts and account updates
- Subscription renewal reminders
- Marketing (with your consent, opt-out anytime)
- Surveys and feedback requests
2.4 Legal Compliance
We may process your data to:
- Comply with legal obligations
- Enforce our Terms of Service
- Prevent fraud and abuse
- Protect our rights and safety
3. Data Storage and Security
3.1 Data Storage
Your data is stored:
- Database: MySQL 8.0 (encrypted at rest)
- Cache: Redis (session data, temporary storage)
- File Storage: AWS S3 / Local storage (chart images, cards)
- Servers: [Your hosting provider, e.g., AWS US-East-1]
3.2 Security Measures
We implement industry-standard security:
- Encryption: TLS/SSL for data in transit, AES-256 for sensitive data at rest
- Authentication: Laravel Sanctum tokens, bcrypt password hashing
- Access Control: Role-based permissions, principle of least privilege
- Monitoring: Real-time security alerts, intrusion detection
- Backups: Daily encrypted backups with 30-day retention
- Audits: Regular security assessments and penetration testing
3.3 Data Encryption
We encrypt:
Data Type |
Encryption Method |
Storage |
Passwords |
Bcrypt (one-way hash) |
Database |
OAuth Tokens |
Laravel Encrypted Cast |
Database |
API Keys |
Laravel Encrypted Cast |
Database |
Payment Data |
N/A (Stripe handles) |
Stripe |
File Uploads |
TLS in transit |
S3/Local |
4. Data Sharing and Disclosure
4.1 We Do NOT Sell Your Data
We will never sell your personal information to third parties.
4.2 Third-Party Service Providers
We share data with trusted service providers who help us operate:
Service |
Purpose |
Data Shared |
Stripe |
Payment processing |
Email, subscription details |
Google Gemini AI |
Chart analysis |
Chart images, trading data |
TikTok |
Social media posting |
Generated cards, captions |
Telegram |
Notifications |
User ID, chat ID, messages |
AWS/Hosting |
Infrastructure |
All platform data |
4.3 Legal Requirements
We may disclose your information if required to:
- Comply with legal process (subpoena, court order)
- Enforce our Terms of Service
- Protect rights, property, or safety of Algomind, users, or public
- Prevent fraud or security threats
4.4 Business Transfers
If we are acquired or merge with another company, your data may be transferred as part of the transaction. We will notify you before your data is transferred and becomes subject to a different privacy policy.
5. Cookies and Tracking
5.1 Cookies We Use
- Essential Cookies: Required for login, session management, CSRF protection
- Analytics Cookies: Track usage patterns (anonymized)
- Preference Cookies: Remember your settings and preferences
5.2 Cookie Management
You can control cookies through your browser settings. Note that disabling cookies may limit functionality.
6. Your Privacy Rights
6.1 Access and Portability
You have the right to:
- Access your personal data
- Download your data in machine-readable format (JSON, CSV)
- Request a copy of all data we have about you
6.2 Correction and Update
You can update your information anytime through:
- Account settings in the platform
- API endpoints for profile updates
- Contacting support@algomind.com
6.3 Deletion (Right to Be Forgotten)
You can request deletion of your account and data. We will:
- Delete your account within 30 days
- Permanently remove personal data
- Retain anonymized analytics data
- Keep records required by law (e.g., tax records for 7 years)
6.4 Opt-Out
You can opt out of:
- Marketing Emails: Click unsubscribe link
- Analytics: Contact support@algomind.com
- Notifications: Manage preferences in account settings
6.5 Consent Withdrawal
You can withdraw consent for:
- Social media account connections (disconnect in settings)
- Data processing for marketing purposes
- Third-party data sharing (where applicable)
7. Data Retention
7.1 Active Accounts
We retain your data as long as your account is active and for the following periods after account closure:
- Account Data: 30 days after deletion request
- Trading History: 90 days (for support and dispute resolution)
- Payment Records: 7 years (legal requirement)
- Logs: 90 days
- Backups: 30 days (then permanently deleted)
7.2 Anonymized Data
We may retain anonymized, aggregated data indefinitely for:
- Analytics and research
- Service improvement
- Statistical analysis
8. International Data Transfers
8.1 Data Location
Your data may be transferred to and stored in countries outside your residence. We ensure adequate protection through:
- Standard Contractual Clauses (EU)
- Privacy Shield Framework (where applicable)
- Equivalent data protection standards
8.2 GDPR Compliance (EU Users)
If you're in the European Union, you have additional rights under GDPR:
- Right to access, rectification, erasure
- Right to data portability
- Right to restrict processing
- Right to object to processing
- Right to lodge a complaint with supervisory authority
8.3 CCPA Compliance (California Users)
California residents have rights under CCPA:
- Know what personal information is collected
- Know if personal information is sold or disclosed
- Access personal information
- Request deletion of personal information
- Opt-out of sale (we don't sell data)
9. Children's Privacy
Our Service is not intended for users under 18. We do not knowingly collect information from children. If we discover we have collected data from a child, we will delete it immediately.
If you believe a child has provided us with personal information, contact us at support@algomind.com.
10. Third-Party Links
Our Service may contain links to third-party websites (TikTok, Telegram, Stripe). We are not responsible for their privacy practices. Please review their privacy policies.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via:
- Email to your registered address
- Notification in the platform
- Updated "Last Modified" date at the top
Continued use after changes constitutes acceptance of the updated policy.
12. Your Choices Summary
Action |
How to Do It |
Update profile info |
Account settings |
Download your data |
Contact support@algomind.com |
Delete your account |
Account settings → Delete Account |
Unsubscribe from emails |
Click unsubscribe link in email |
Disconnect social media |
Social Media → Disconnect Account |
Opt-out of analytics |
Contact support@algomind.com |
File a complaint |
Contact data protection authority |
13. Data Breach Notification
In the event of a data breach that affects your personal information, we will:
- Notify you within 72 hours of discovery
- Describe the breach and data affected
- Explain steps we're taking to mitigate harm
- Provide recommendations to protect yourself
- Notify relevant authorities as required by law
14. Contact Us
For questions, concerns, or requests regarding this Privacy Policy or your data, contact us:
- Email: support@algomind.com
- Privacy Officer: privacy@algomind.com
- Address: [Your Business Address]
15. Data Protection Officer
Our Data Protection Officer can be reached at:
Important: This Privacy Policy should be read in conjunction with our Terms of Service. By using Algomind, you agree to both documents.