Privacy policy
Written from the actual schema rather than from a template. Every table and cookie named here exists; nothing is listed that we do not hold.
Last updated
Who is responsible
Tiruvi Desk operates this platform and decides what is collected and why — the Data Fiduciary, in the language of India's Digital Personal Data Protection Act, 2023. Contact details are in the Terms of Service.
What we store, and where
Three places, with different properties. Knowing which is which is most of understanding this policy.
- Your browser only
- The trading journal — every imported fill, every round trip, every note. Stored in
localStorageundertiruvidesk.journal.v1. It is never uploaded, never backed up by us, and we cannot recover it. Pattern scan results live here too, undertiruvidesk.scans.v1. - Our database (Neon, Postgres)
- Watchlist entries, saved screens and their rules, option structures, backtest runs and their trades, your subscription and payment records, and — if you connect a broker — an encrypted broker session token. All keyed to your account.
- Third parties
- Clerk holds your identity. Razorpay holds your payment instrument. Neither passes us more than we list below.
The journal, specifically
This is the one place your own money appears, and it is deliberately the one thing we do not have. It is read from your browser, computed in your browser, and rendered in your browser.
The single exceptionis the AI assistant. If you ask it a question about your journal, the relevant trades are sent with that request so it has something to answer from. They are used for the length of that one request and are not written to any database of ours. They do reach Google's Gemini API as part of the request — see the third-party list below.
Clearing your browser storage deletes the journal permanently. Export it first if you want a copy; the export re-imports cleanly.
Account and identity
Identity is handled by Clerk. We never see or store your password. From Clerk we read your user id, email address, name if you provided one, and account creation and last-active timestamps — used to sign you in, attribute your data, and show the operator a subscriber list.
Payments
Payments are processed by Razorpay. Card numbers, UPI IDs, CVVs and bank credentials never touch our servers— they are entered in Razorpay's own checkout and stay with them.
What Razorpay reports back to us, and what we keep:
- Payment and order identifiers, so a payout can be traced to a plan
- Amount, currency, status, and the method used (card, UPI, netbanking)
- The email address and contact number you gave at checkout
- An error description, when a payment fails
These are financial records. We keep them after an account closes, because tax and accounting obligations require it — see retention below.
Your broker connection
Connecting ICICI Direct Breeze is optional and gives this platform read-only market data access. It cannot place orders, read your holdings, read your funds, or see your positions — the client has no methods for any of that and a runtime allowlist blocks those endpoints.
The session token is encrypted with AES-256-GCM before it is stored, using a key held in our environment rather than in the database, so a database dump contains ciphertext. It is scoped to your account alone, expires at midnight IST with the broker session itself, and Disconnect deletes it immediately.
Who else sees your data
Each of these receives only what its function requires.
- Clerk
- Identity and authentication. Holds your email, name and sessions. Their privacy policy.
- Razorpay
- Payment processing. Holds your payment instrument and contact details. Their privacy policy.
- Neon
- Database hosting. Holds everything in the middle column above, encrypted at rest. Their privacy policy.
- Vercel
- Application hosting. Processes requests and keeps operational logs. Their privacy policy.
- Google (Gemini)
- Only when you use an AI feature. Receives your request text, and — for a journal question — the trades sent with it, or for a chart scan, the image. Images are not stored by us. Their privacy policy.
- ICICI Direct (Breeze)
- Only if you connect a broker. Sees the market-data requests made with your session. Their privacy policy.
Market data providers — Yahoo Finance for fundamentals, publisher RSS feeds for news — are fetched by our servers on a schedule for the whole platform. Those requests carry nothing about you.
What we do not do
- We do not sell or rent personal data to anyone.
- We do not run advertising or share data with ad networks.
- We do not build profiles for any purpose other than running the product.
- We do not use your journal, screens or backtests to train any model, ours or anyone else's.
How long we keep things
- Account data
- Until you delete your account, then removed within 30 days.
- Watchlists, screens, backtests
- Until you delete them, or until your account is deleted.
- Broker session tokens
- Until midnight IST the day they were issued, or until you disconnect.
- Payment records
- Kept after account deletion, as tax and accounting law requires. Retained no longer than those obligations demand.
- Operational logs
- Held by Vercel on their retention schedule, typically weeks rather than months.
Your rights
Under the DPDP Act 2023 you may ask for a summary of the personal data we hold, ask for it to be corrected or completed, ask for it to be erased, and nominate someone to exercise these rights if you cannot.
Security
Broker tokens are encrypted at rest. Payments are verified by HMAC signature before anything is recorded. Every entitlement is checked on the server, on each request, rather than trusted from the browser. Traffic is HTTPS-only and the application sends a content security policy, HSTS, and framing and referrer restrictions.
No system is perfectly secure. If you find a vulnerability, please report it before disclosing it publicly — see the Terms.
Age
This platform is not intended for anyone under 18, and we do not knowingly collect data from children. Trading in Indian securities requires a demat account, which requires majority in any case.
Changes to this policy
The date at the top is the authority on when this last changed. A change that materially affects what we collect or who receives it will be notified in the application before it takes effect.