Policy CenterFinTrendBeacon Privacy Policy
Effective date: May 30, 2026
FinTrendBeacon (the "Service") is operated by its owner (the "operator") and complies with applicable privacy laws. This Privacy Policy explains how personal data is processed and how users can exercise their rights.
1. Purposes of processing
The operator processes personal data to manage sign-up, login, email verification, social login, account linking, password changes, and account deletion; to provide articles, tools, trade journaling, portfolio and ledger features, market information, notifications, and user settings; to provide AI-assisted features such as image recognition, summaries, and translation; to handle support, incident response, announcements, and disputes; to maintain security, access control, logging, and quality; to provide advertising and measure its performance; and to comply with applicable law.
2. Personal data processed
The operator may process account and authentication data (email address, password or authentication method, display name, email verification status, user identifier, login provider, provider identifier, linked email, and login times); service usage records (trade journals, portfolios, ledgers, attachments, settings, and timestamps); support messages; AI request and response data (submitted images and text, recognition results, model identifiers, and usage counts); and automatically collected data (IP address, user agent, access time, request path, error logs, device and app information, analytics events, advertising identifiers, ad interaction data, and consent status).
3. Google OAuth and Google API Services user data
When a user signs in with Google or links a Google account, the Service may process Google user data through Google API Services.
Data accessed: The Service accesses only the Google user data authorized on the Google consent screen. The Service uses the openid, email, and profile scopes for login and account linking, which may include the Google account identifier, email address, email verification status, and basic profile information.
Data usage: The operator uses Google user data only for sign-up, login, account linking, user identification, authentication, account security, abuse prevention, and support identity checks. The operator does not use Google user data for advertising, retargeting, credit evaluation, lending, data sale, data brokerage, resale, or AI model training.
Data sharing: The operator may process Google user data through authentication and infrastructure providers as needed to run the Service. The operator does not sell Google user data and does not share it except for legal compliance, security incident response, user consent, or processing needed to provide the Service.
Data storage and protection: The operator protects Google user data with encryption in transit, least-privilege access control, protected authentication data, no plaintext password storage, restricted database and cloud access, and log monitoring.
Data retention and deletion: Google user data is retained only while account linking or the Service requires it. When a user requests unlinking, account deletion, or data deletion, the operator deletes or de-identifies the data except where retention is required by law. Users may request deletion through account settings or the support contact.
Limited Use: The use and transfer of information received from Google API Services to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
4. Retention periods
Account data is retained until account deletion. Service content is retained until the user deletes it or the purpose is fulfilled, subject to backup, dispute handling, and service integrity needs. Support, account change, and abuse-prevention records may be retained for up to 3 years or the period needed for dispute handling. Access logs and security logs may be retained for at least 3 months or the period required by law. Where laws require a specific retention period, that period applies.
5. Third-party disclosure
The operator does not disclose personal data to third parties except with user consent or where required by law. Data may be disclosed when lawfully requested by authorities, when urgently necessary to protect life, body, or property, or when the user chooses external service linking or social login.
6. Processors and international processing
The operator may use the following providers to process personal data: Amazon Web Services for cloud servers, databases, storage, authentication, and security; OpenAI for AI image recognition, summaries, and translation; Google for Google Sign-In, analytics, advertising (Google AdSense on the website and Google AdMob in the mobile app), and consent management; and Apple for Apple Sign-In and account linking. Processing locations may vary depending on each provider infrastructure and policies.
7. Destruction of personal data
When the retention period expires or the purpose is fulfilled, the operator destroys personal data without undue delay. Electronic files are deleted so they cannot be recovered. Data that must be retained by law is stored separately and is not used for other purposes.
8. User rights
Users may request access, correction, deletion, suspension of processing, withdrawal of consent, or account deletion through account settings or the support contact. The operator verifies the requester and handles requests within the period required by applicable law.
9. Security measures
The operator applies least-privilege access control, authentication, encryption, protected transmission, no plaintext password storage, restricted database and cloud access, logging, monitoring, incident response procedures, and administrative safeguards for personnel who process personal data.
10. Cookies, advertising identifiers, and behavioral information
The operator shows advertising through Google AdSense on the website and Google AdMob in the mobile app, including mediation partners. Google and its advertising partners use cookies and advertising identifiers to serve and measure ads, and to serve personalized ads where the user consents or where permitted by law. Third-party vendors, including Google, may use cookies to serve ads based on prior visits to this and other websites and apps. The operator and these providers process cookies, advertising identifiers, and usage information for service improvement, statistics, advertising, and ad measurement. Users can review and control personalized advertising through Google Ads Settings at https://adssettings.google.com, through operating system and browser settings, and through device advertising controls. More information is available on the Google page about how Google uses information from sites and apps that use its services at https://policies.google.com/technologies/partner-sites. The operator does not use sensitive data for personalized advertising.
11. Sensitive data and unique identifiers
The operator generally does not request government identification numbers or sensitive data such as health, beliefs, or political opinions. Users should not enter or upload such data into the Service or its AI features.
12. Children
The Service is generally intended for users aged 14 or older. Users under 14 need consent from a legal representative.
13. Privacy contact
Privacy questions and requests can be sent to contact@fintrendbeacon.com.
14. Changes to this Privacy Policy
The operator may revise this Privacy Policy when laws, services, processors, processed data, retention periods, or safeguards change. Important changes will be announced before they take effect through the Service, the website, or other reasonable means.
Public URL: https://fintrendbeacon.com/policy/privacy-policy
Privacy Policy
v2026.05.30Effective date 2026-05-30