Privacy Policy

Version 1 · Effective 2026-07-13

1. Overview

This Privacy Policy explains what personal data Pro-nio processes when you use the Service, why we process it, and the choices you have. It is a description of our data-processing practices, not a marketing document.

We process the minimum data needed to operate an automated trading platform reliably and securely.

2. Data we process

Account data: your email address and authentication credentials (passwords are stored only as salted hashes, never in plain text).

Configuration data: the bots, strategies, and parameters you create, and metadata about the runs and orders they produce.

Exchange credentials: the API key material you connect, stored encrypted at rest.

Operational data: security logs, audit events, and diagnostic information needed to run the Service and investigate abuse.

3. How we use your data

We use your data to authenticate you, to run the bots you configure, to place and reconcile orders on the exchange, to provide support, to secure the platform, and to meet legal and record-keeping obligations.

We do not sell your personal data, and we do not use your trading configuration to trade against you.

4. Exchange credentials

Your exchange API secret is encrypted at rest using authenticated encryption and is never returned to your browser after it is saved. Decryption happens only inside the execution engine at the moment an order needs to be placed.

We never log decrypted key material at any log level.

5. Data sharing

We share data with the exchange you connect (to place your orders), with infrastructure and communication providers strictly to operate the Service, and with authorities where legally required.

Each processor receives only the data needed for its function.

6. Data retention

We retain account and configuration data while your account is active. When you close your account your profile is anonymized and connected keys are revoked.

Certain financial and audit records may be retained after closure where retention is required by law or needed to resolve disputes.

7. Security

We apply defense-in-depth: encryption at rest for secrets, encrypted transport, tenant isolation so one user's data is never exposed to another, rate limiting, and audit logging of sensitive actions.

No system is perfectly secure; you also play a part by protecting your credentials and scoping your API keys correctly.

8. Your choices and rights

You can view and change your configuration, revoke connected exchange keys, and close your account at any time. Depending on your jurisdiction you may have additional rights to access, correct, or delete personal data.

You can exercise these choices from your settings or through the in-app support channel.

9. Changes to this Policy

We may update this Policy. Material changes are published with a new version and effective date, and we may ask you to acknowledge the update before continuing.

10. Contact

Privacy questions can be raised through the in-app support channel.