Privacy
VibeTrading has no sign-up, no password and no email address. One feature — strategy rules — identifies you, and it does so by wallet address. This page says exactly what that means and what else we hold.
What we do not collect
There is no registration, so there is no name, email address, password or profile. We do not ask for identity documents, phone numbers, payment details or exchange credentials, because the app has no feature that uses any of them. We do not set advertising cookies and we do not run third-party ad trackers.
What is collected
Aggregate traffic statistics
The site uses Vercel Analytics to count page views and see which pages get used. It is configured without cookies and does not build a profile or follow you across other sites. We see totals, not people.
Chat messages
When you type a question to the assistant, that text is sent to our server and on to Groq, which runs the language model that answers it. Please do not put anything sensitive or personally identifying into the chat box — there is no reason the app needs it, and treating it as a private channel would be a mistake.
So the assistant can talk about the chart you are looking at, each question also carries the pair, timeframe and time window on your screen, plus what our own detectors found in it — levels, patterns, candle shapes, indicator readings. That is market data, not data about you. The last few exchanges in the conversation are sent along for context; they live in your browser and are gone when you close the tab. We do not store chat on our server.
Your wallet address, if you build strategy rules
Strategy rules are private to whoever created them, so that feature needs to know who is asking. Connecting a wallet and signing a message proves you control an address, and we store that address alongside your rules. We ask your wallet for one signature and nothing else: we request no token approvals, we cannot move anything, and signing in authorises no transaction or spending.
If you connect from a phone, the connection is relayed through WalletConnect’s servers, which see your wallet address and this app’s name in order to pair the two. The signature request itself goes to your wallet, not to them.
Be clear-eyed about what an address is, though. It is not anonymous. It is a durable identifier, it is the same address everywhere you use it, and anyone — including us — can look up its entire transaction history on a public blockchain. If that address is linked to your identity anywhere else, it is effectively linked here too. It is also personal data in several jurisdictions, and we treat it as such. If you would rather not make that connection, use a wallet you keep for this purpose, or do not use strategy rules — the charts and analysis need no wallet at all.
Ordinary server logs
Our server and the platforms in front of it keep the usual technical logs — IP address, timestamp, requested URL, user agent — for reliability and abuse prevention. This is standard for any website and we do not use those logs to identify individuals.
What we store
Mostly market data: candles fetched from the public market API, and chart annotations recorded against a trading symbol. None of it is attached to a person, because we have no concept of a person — there are no accounts to attach it to.
The exception is strategy rules. If you arm one, we store the rule you built and the history of times it fired, on our server, so it can keep being evaluated while your browser is closed. Each rule is stored against the wallet address that created it, and only that address can read, change or delete it. That is a deliberate change from how this feature first shipped, when rules were grouped under a random identifier the browser generated — an identifier anyone could copy and use, which is why it is gone.
Signing in leaves a session token in your browser's local storage. It lasts seven days, it only permits reading and editing your own rules, and signing out or clearing site data removes it.
Who else is involved
- Binance public market data API — where price candles come from. Requests are made by our server, not your browser, so your browser is not talking to them directly.
- Groq — runs the language model behind the chat assistant. Receives the text of your chat messages.
- Vercel — hosts the website and provides the cookieless analytics described above.
- Google Cloud Platform — hosts the backend server and database, on Compute Engine in the asia-south1 region.
Each of these processes data under its own privacy terms. We do not sell data to anyone, and we do not share it beyond what is needed to make the app work.
How long things are kept
Market data and annotations are kept for as long as they are useful for analysis. Strategy rules and their fire history are kept until you delete the rule, which also deletes its history. Server logs are kept for a short operational period and then rotate away. Sign-in challenges live for five minutes and are discarded the moment they are used.
Your rights
Depending on where you live you may have rights to access, correct or delete personal data held about you. If you have never armed a strategy rule, the honest answer is that we hold nothing to look up. If you have, the data is your wallet address and the rules under it: you can delete any rule from the panel at any time, which removes it and its fire history. To have the address itself removed, or if you believe we hold anything else about you, write to dev@vibetrading.club and we will deal with it.
Children
This site is not intended for anyone under 18 and we do not knowingly collect information from children.
Changes
If this policy changes we will update the date at the top. The team is small enough that we will not pretend to run a formal notification process.
Contact
VibeTrading is operated by Varun Singh while the company is being incorporated. Privacy questions go to dev@vibetrading.club.