Table of Contents
The short version: We process your tradebook file to generate your Mirror Score and insights. We delete the file immediately after. We never sell your data. We don't show ads. Your trade data is yours.
1 Who We Are
Trade Mirror ("we", "us", "our") is a mobile application that analyses trading behaviour from broker-exported tradebooks to provide users with psychological insights, a Mirror Score, and personalised recommendations.
This Privacy Policy applies to the Trade Mirror mobile application, website at ai-trademirror.com, and all related services (collectively, the "Service").
Our registered contact address is in Rajasthan, India. You can reach us at support@ai-trademirror.com.
2 Information We Collect
We collect the following types of information when you use Trade Mirror:
Account Information
- Mobile phone number (for OTP-based authentication)
- Email address (optional, for receiving PDF reports)
- Name (optional, for personalisation)
- Date of account creation and the self-declaration confirming you are 18 years or older
Tradebook File (Uploaded by You)
- The CSV, Excel, or PDF file you upload from your broker — containing your trade history
- This file is processed immediately and deleted. See Section 4 for full details.
Usage and Analytics
- App usage events (screens visited, buttons tapped, report generated) — collected via PostHog analytics, anonymised
- Device type, operating system version, app version
- Session duration and frequency of use
Payment Information
- Payments are processed by Razorpay. We do not store card numbers, bank account numbers, or UPI IDs. We receive only a transaction reference ID and payment status.
Support Communications
- If you contact us via email, we store the content of that communication to help resolve your issue.
3 How We Use Your Information
We use the information we collect to:
- Provide the Service — analyse your tradebook and generate your Mirror Score, trader personality type, and structured insights
- Deliver your report — email your PDF report to the address you provide at payment
- Send relevant notifications — about your reports, weekly letters (PRO users), badges earned, and app updates. You can opt out of non-essential notifications at any time in app settings.
- Improve the product — aggregated, anonymised usage data helps us identify what works and what to build next. This data cannot identify you individually.
- Prevent abuse — detecting duplicate tradebook submissions and enforcing our 90-day resubmission policy
- Legal compliance — maintaining records required by Indian law
We do not use your data for advertising, behavioural profiling for third-party purposes, or any automated decision-making that affects you negatively.
4 Your Tradebook — Special Handling
🗑 Your tradebook file is deleted from our servers immediately after analysis is complete. We do not store your raw trade data. Ever.
When you upload a tradebook file:
- The file is securely transmitted to our servers over HTTPS
- Our analysis engine reads the file and computes your Mirror Score and insights
- The file is permanently deleted from our servers
- We store only the output of the analysis — your score, personality label, and insight summaries — not the underlying trade records
Your individual trade entries (instrument names, quantities, prices, timestamps) are never stored in our databases. If you delete your account, all stored outputs (scores and insights) are also permanently deleted.
Duplicate detection: To enforce our 90-day resubmission limit, we store a cryptographic fingerprint (hash) of your tradebook metadata — not the actual trade data. This hash cannot be reversed to reveal your trades.
5 Data Sharing and Third Parties
We do not sell, rent, or trade your personal information. We share data with the following service providers only to the extent necessary to operate Trade Mirror:
- Firebase (Google) — authentication (phone OTP, Google Sign-In), cloud storage (PDF reports), and push notifications. Data is processed under Google's Privacy Policy.
- Razorpay — payment processing. Your payment data is governed by Razorpay's Privacy Policy.
- Railway — cloud infrastructure hosting our backend. Processes data within secure, access-controlled environments.
- PostHog — product analytics. We send anonymised event data only. No personally identifiable information (PII) is sent to PostHog.
- Sentry — error monitoring. Crash reports may contain device metadata; no trade or financial data is included.
We may disclose your information if required to do so by law, court order, or governmental authority in India. We will notify you where legally permitted to do so.
6 Data Retention
- Tradebook files: Deleted immediately after analysis (see Section 4)
- Mirror Scores and insights: Retained as long as your account is active. Deleted when you delete your account.
- PDF reports: Stored in Firebase Storage, accessible from your History. Deleted when you delete your account or the specific report.
- Account information: Retained while your account is active. You may request deletion at any time.
- Payment records: Retained for 7 years as required by Indian financial regulations (Income Tax Act, GST Act).
- Support communications: Retained for 2 years from the date of last communication.
7 Security
We implement appropriate technical and organisational measures to protect your data:
- All data transmitted between your device and our servers is encrypted using HTTPS (TLS 1.2+)
- Authentication is managed through Firebase — we never store passwords
- Phone number authentication uses OTP (one-time password) sent via SMS
- Our backend API enforces rate limiting, CORS restrictions, and security headers
- Access to production systems is restricted to authorised personnel only
- We use Sentry for real-time error and anomaly monitoring
While we take all reasonable precautions, no method of internet transmission or storage is 100% secure. We encourage you to use a strong, unique password and protect access to your phone.
8 Children's Privacy
Trade Mirror is intended exclusively for users who are 18 years of age or older. This is both a legal requirement and a product requirement — trading in Indian markets requires the user to be an adult.
During account registration, all users must confirm via a mandatory self-declaration checkbox that they are 18 years or older. The date and time of this confirmation is stored in our systems.
If we become aware that a user under 18 has created an account, we will immediately delete the account and all associated data. If you believe a minor has registered, please contact us at support@ai-trademirror.com.
9 Your Rights
As a user of Trade Mirror, you have the following rights:
- Access — Request a copy of the personal data we hold about you
- Correction — Request correction of any inaccurate data
- Deletion — Request deletion of your account and all associated data. You can do this from the app (Profile → Settings → Delete Account) or by emailing us.
- Portability — Request your Mirror Score history and insights in a machine-readable format
- Withdraw consent — Opt out of non-essential notifications at any time in app settings
To exercise any of these rights, email support@ai-trademirror.com. We will respond within 30 days.
10 Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will:
- Update the "Last updated" date at the top of this page
- Send a push notification to all active app users
- For significant changes, request re-acknowledgement within the app
Your continued use of Trade Mirror after changes are posted constitutes acceptance of the updated policy.
11 Contact & Grievance Officer
For any privacy-related concerns, data requests, or complaints, you may contact us at:
⚖ Grievance Officer
As required under the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, we have designated a Grievance Officer: