Privacy Policy

What we collect, what we deliberately cannot collect, and how long any of it lives.

Last updated 25 August 2026

Draft pending legal review. Accurate about the system’s behaviour, but not yet reviewed by counsel, and the data controller details are not final.

What we collect

DataWhyKept
Email addressSign-in, receipts, alerts about your serverWhile your account exists
Broker login and server nameTo connect the terminalWhile the account is connected
Broker password, sealedTo start the terminal on your serverWhile the account is connected
API key hashesTo authenticate requestsUntil you revoke the key
Activity logSo you can see what your code did12 months
Payment recordsBilling, and our tax obligationsAs long as the law requires

Your broker password

We hold it only in a form we cannot open. Your browser encrypts it to a key held by your own server before it ever reaches us, and unsealing needs both that server’s private key and an unwrap key held here. Neither of us alone can read it. See Security for the mechanism.

What we do not collect

  • Card numbers — those go straight to our payment processor and never reach us.
  • Your strategy code, or anything about it beyond the requests it makes.
  • Tracking across other sites. There is no advertising network on this product.

Who else sees it

Our payment processor, for billing. Our infrastructure provider, which hosts the servers. Our email provider, for the messages we send you. Each sees only what it needs to do that job. We do not sell personal data, and there is no arrangement under which we could.

Your rights

You can ask for a copy of your data, ask us to correct it, or ask us to delete it. Deleting your account removes your credentials and your server; we keep billing records where the law requires it. Mail privacy@vestro.io and we will respond within 30 days.

Changes

Material changes are announced by email before they take effect. Data controller identity, registered address and supervisory authority to be confirmed before launch.