Privacy Policy
At MyTradeMate, privacy isn't a feature—it's our foundation. This policy explains how we protect your data by never collecting it in the first place.
Our Zero-Collection Guarantee
We do not collect, store, transmit, or sell any personal data, usage analytics, or behavioral information. Your portfolio data, API keys, and insights are encrypted with AES-256 and stored exclusively on your device. Not even we can access your information.
1. Information We Do NOT Collect
MyTradeMate operates on a strict zero-collection principle. We do not collect:
- Personal Information: No names, email addresses, phone numbers, or any personally identifiable information (PII).
- Portfolio Data: Your cryptocurrency holdings, transaction history, balances, and profit/loss calculations remain entirely on your device.
- API Keys: Exchange API keys are encrypted with AES-256 and stored locally. We never transmit or store them on any server.
- Usage Analytics: No Google Analytics, Firebase Analytics, Mixpanel, or any third-party analytics tools.
- Behavioral Data: We don't track how you use the app, which features you access, or how long you spend in the app.
- Device Information: No device IDs, advertising identifiers (IDFA/AAID), IP addresses, or hardware specifications.
- Location Data: We do not request or collect geolocation information.
- Biometric Data: Face ID and Touch ID authentication is handled entirely by your device's operating system. We never see or store your biometric data.
- Crash Reports: We do not use crash reporting services like Crashlytics or Sentry.
2. How Local AI Processing Works
MyTradeMate uses 26 TensorFlow Lite models to analyze your portfolio and provide educational insights. All AI processing happens entirely on your device:
- On-Device Computation: All 26 AI models (20 active + 6 legacy) run locally using your phone's CPU/GPU. No data is sent to external servers for processing.
- Pattern Recognition: LSTM and CNN models analyze candlestick patterns and price trends without internet connectivity.
- Technical Indicators: All 76 indicators (25 candlestick patterns + 51 technical indicators) are calculated locally across 5 timeframes (5m, 15m, 1h, 4h, 1D).
- Risk Scoring: Risk assessments and volatility analysis are performed on your device using locally stored price data.
You can verify this by inspecting network traffic with tools like Charles Proxy or mitmproxy. You will see only API calls to cryptocurrency exchanges for price data—no telemetry or analytics requests.
3. Data You Provide to Us
The only information you may voluntarily provide to MyTradeMate is:
- Waitlist Email: If you join our waitlist via the
mailto:link on our website, your email is sent directly to us (mytrademate.app@gmail.com). We use this solely to notify you when the app launches. We do not share, sell, or use your email for marketing beyond launch notifications. - Support Inquiries: If you contact us for support, we may temporarily store your email and message to resolve your issue. This data is deleted after your inquiry is resolved.
Important: Your email is never linked to your app usage, portfolio data, or any other information. We cannot and do not correlate waitlist emails with in-app activity.
4. How Your Data is Secured
Even though we don't collect your data, we implement strong security measures to protect what's stored on your device:
4.1 Encryption
- AES-256 Encryption: All sensitive data (API keys, portfolio holdings, transaction history) is encrypted with AES-256, the same military-grade encryption used by governments and financial institutions.
- Local Storage: Encrypted data is stored in your device's secure storage (iOS Keychain or Android Keystore).
- No Cloud Backup: MyTradeMate does not use iCloud, Google Drive, or any cloud backup services. Your data remains exclusively on your device.
4.2 Authentication
- Biometric Authentication: Access to MyTradeMate is protected by Face ID (iOS) or Touch ID/Fingerprint (Android). These biometric systems are managed by your device's operating system—we never access or store your biometric data.
- Device-Level Security: If you lose your device, your data is protected by device-level encryption and biometric locks.
4.3 API Key Security
- Read-Only Keys: We recommend using read-only API keys that cannot execute trades or withdrawals.
- Never Transmitted: API keys are never sent to MyTradeMate servers (because we don't have servers). They're only used to fetch price data directly from exchanges.
- User Responsibility: You are responsible for securing your API keys. We recommend using API key rotation and IP whitelisting features provided by your exchange.
5. Third-Party Services
MyTradeMate connects to cryptocurrency exchanges solely to fetch real-time price data. These connections are necessary for the app to function:
- Exchange APIs: The app makes direct API calls to cryptocurrency exchanges (e.g., Binance, Coinbase) to retrieve market prices. These exchanges may log API requests according to their own privacy policies.
- No Data Sharing: We do not share your data with exchanges. API calls are initiated by your device using your API keys.
- No Analytics SDKs: We do not integrate Google Analytics, Facebook Pixel, or any third-party tracking or advertising SDKs.
6. Children's Privacy
MyTradeMate is not intended for users under the age of 18. We do not knowingly collect information from children. If you are under 18, do not use this app or provide any information to us. Cryptocurrency trading carries significant financial risk and is not suitable for minors.
7. GDPR & CCPA Compliance
Because we do not collect personal data, MyTradeMate is compliant with the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA) by design:
7.1 GDPR Rights
Under GDPR, you have the right to:
- Access: We have no data to provide.
- Rectification: We have no data to correct.
- Erasure: Simply delete the app from your device.
- Data Portability: All data is already on your device.
- Object to Processing: We don't process your data.
7.2 CCPA Rights
Under CCPA, California residents have the right to:
- Know: We collect no personal information to disclose.
- Delete: We have no data to delete.
- Opt-Out of Sale: We do not sell personal information.
8. International Users
MyTradeMate is available worldwide. Because all processing occurs on your device, there are no cross-border data transfers, data localization concerns, or jurisdictional privacy issues. Your data never leaves your device, regardless of where you are located.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. If we make material changes, we will notify users via:
- An in-app notification (if technically feasible without tracking)
- A prominent notice on our website
The "Last Updated" date at the top of this policy indicates when it was last revised. Continued use of MyTradeMate after changes constitutes your acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or how MyTradeMate handles your data (or rather, doesn't), please contact us:
Email: mytrademate.app@gmail.com
We typically respond within 48 hours.
11. Verification
We encourage technically savvy users to verify our zero-tracking claims:
- Network Monitoring: Use Charles Proxy, mitmproxy, or Wireshark to inspect network traffic. You'll see only API calls to exchanges—no analytics, telemetry, or tracking requests.
- Source Code: While MyTradeMate is not open-source, we welcome security researchers to audit the app. Contact us for details.
- Third-Party Audits: We plan to commission independent security and privacy audits in the future.