Privacy Policy

Last updated: January 2026

Information We Collect

When you use our software services, we may collect the following types of information:

  • Account connection metadata: Information related to authorizing access to your brokerage accounts via OAuth. We do not store your brokerage login credentials.
  • Usage logs: Information about how you interact with our software, including features used, timestamps, and technical diagnostics.
  • Contact information: Email address and any information you provide when contacting us.

Brokerage Account Data

When you connect a brokerage account (such as Charles Schwab), we access the following data via read-only API permissions:

  • Account positions and balances
  • Transaction history
  • Basic account identifiers

This data is used solely to provide visualization and analytics features within our software. We do not place trades, move funds, or take any action in your account.

How We Use Your Information

We use the information we collect to:

  • Provide and maintain our software functionality
  • Respond to your inquiries and provide support
  • Improve and develop our products
  • Comply with legal obligations and protect our rights

Information Sharing

We do not sell your personal information or brokerage data. We do not share your data with third parties for marketing purposes. We do not redistribute or resell market data or account information.

We may share information with service providers only as necessary to operate our services. These providers are bound by confidentiality obligations and process data only as needed to provide their services.

Service Providers

We use the following service providers to operate our software:

  • Cloud infrastructure: Amazon Web Services (AWS)
  • Error monitoring: Sentry

These providers process data only as necessary to deliver their services and are contractually prohibited from using your data for other purposes.

Data Retention

We retain account connection data and usage logs for as long as your account is active. Upon account disconnection or termination, we delete your brokerage data within 30 days.

You may request deletion of your data at any time by contacting us at contact@leadingtone.io. Upon request, we will delete your personal information within 30 days, except where retention is required by law.

Security

We implement appropriate technical and organizational measures to protect your information:

  • All data is encrypted in transit using TLS 1.2+
  • Data at rest is encrypted using AES-256
  • Infrastructure hosted on SOC 2 compliant providers (AWS)
  • OAuth tokens stored securely and never exposed to client applications

No method of transmission over the internet is 100% secure, but we follow industry best practices to minimize risk.

Your Rights

You may request access to, correction of, or deletion of your personal information. You may also revoke authorization to access your connected accounts at any time through your brokerage provider.

Contact

For questions about this privacy policy or to exercise your rights, please contact us at contact@leadingtone.io.