Last updated: March 27, 2026
This Privacy Policy describes how Treil ("we", "our", or "us") collects, uses, and protects your personal information when you use our automated trading platform and related services.
We collect the following categories of personal information when you create an account and use our platform:
Account information: your name, email address, and authentication credentials (including Google OAuth tokens when you sign in with Google).
Trading preferences: your selected trading pairs, strategy configurations, risk parameters, timeframe settings, and paper trading balances.
Usage data: pages visited, features used, backtest runs, and general interaction patterns with the platform.
We do not collect or store your exchange API secret keys in plaintext. All sensitive credentials are encrypted using AES-256-GCM before storage.
We use your information for the following purposes:
Account management: to create and maintain your account, authenticate your identity, and provide customer support.
Trading bot operation: to execute your configured trading strategies, run scanner analyses, manage positions, and deliver real-time notifications about trading activity.
Platform improvement: to analyze usage patterns and improve the reliability and performance of our services.
Communications: to send you important service updates, security alerts, and (with your consent) marketing communications.
Your data is stored in a PostgreSQL database hosted on Neon, a cloud database provider with enterprise-grade security standards.
All sensitive configuration data (API keys, tokens) is encrypted at rest using AES-256-GCM encryption. Authentication tokens are signed with JWT and expire after a defined period.
We use HTTPS for all data transmission between your browser and our servers. Our API infrastructure is hosted on Fly.io with isolated runtime environments.
While we implement industry-standard security measures, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security of your data.
We integrate with the following third-party services to provide our platform:
Bybit Exchange: when you connect your Bybit account, we use the Bybit v5 API to fetch market data and (if configured) execute trades on your behalf. Your interaction with Bybit is also subject to their privacy policy.
Stripe: we use Stripe to process subscription payments. Your payment information is handled directly by Stripe and is never stored on our servers. Stripe's privacy policy governs their handling of your payment data.
Google OAuth: if you choose to sign in with Google, we receive your name and email address from Google. We do not access any other Google account data.
Resend: we use Resend for transactional email delivery. Your email address is shared with Resend solely for the purpose of sending you platform communications.
We use minimal cookies and local storage for essential platform functionality:
Authentication tokens stored in local storage to maintain your login session.
Theme and UI preferences to preserve your display settings across visits.
We do not use third-party advertising trackers, analytics cookies, or social media tracking pixels. We do not sell or share your data with advertisers.
You have the following rights regarding your personal data:
Access and export: you may request a copy of all personal data we hold about you by contacting us at [email protected].
Correction: you may update your account information at any time through the Settings page.
Deletion: you may request complete deletion of your account and all associated data. Upon request, we will permanently remove your data from our systems within 30 days.
Opt-out: you may disable non-essential notifications and communications through the Settings page at any time.
We retain your account data for as long as your account is active. Trading history and backtest results are retained for analytical purposes while your account exists.
If you request account deletion, all personal data is permanently removed within 30 days. Anonymized, aggregated usage statistics may be retained for platform improvement purposes.
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable regulations. We will notify you of material changes via email or a prominent notice on the platform.
Your continued use of Treil after any changes indicates your acceptance of the updated policy.
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at [email protected].