Legal
Privacy policy
Last updated 26 September 2026
A trading journal holds some of the most personal numbers you have. This policy says what Vector collects, why, who helps us process it, and what you can do about it. The short version: we collect what it takes to run your journal, we never sell it, and it stays yours.
Who is responsible
Vector Journal (“Vector”) is responsible for your personal data under this policy. Questions or requests: support@myvectorjournal.com.
What we collect
Your account
- Your email address, and a password stored only as a secure hash by our authentication provider.
- If you sign in with Google, the name and email address Google shares with us.
- Your settings, such as your timezone (read from your device) and whether you have seen the guided tour.
Your journal
- Your trading accounts and everything you log, sync or import: trades, prices, sizes, results, notes, journal entries, screenshots, setups, rules, mistakes, emotions, goals and prop-firm rules.
- Answers written for you by the AI features, and your conversations with the AI coach.
What you choose to share
- Your display name, which the members of your communities see, and which appears on a trade card when you choose to show it. You can change it in Settings.
- What you post in a community — messages, charts, reactions and trade cards — which that community's members can see. Leaving a community keeps what you posted there, under your name; you can delete your own messages, and deleting a community deletes everything in it.
- A trade you share by link: the card, with the figures and the chart you chose, which anyone with the link can open until you turn it off. We count how many times it is opened, and nothing about who opened it.
Broker sync
- For auto sync: your broker's server name and account number. Your investor password is sent to MetaApi, which runs the terminal; we do not store it.
- For the Expert Advisor: a scrambled fingerprint (hash) of the key we issue — not the key itself.
- A record of each sync: when it ran, and how many trades it brought in.
Billing
- Your plan, its status and your billing dates. Payments are handled by Paddle, our merchant of record; we never see or store your card details.
- How many AI credits you have used, and what each AI call cost us.
Technical
- Cookies that keep you signed in, and a setting in your browser that remembers your chosen theme. We use no advertising cookies and no third-party analytics or tracking.
- Server logs kept by our hosting provider, such as IP addresses and request times, used to run and secure the service.
Why we use it
- To run your journal — storing your trades and calculating your statistics. This is the service you signed up for.
- To bill you for a plan, through Paddle.
- To answer you when you use an AI feature or write to us.
- To keep Vector secure and working, and to prevent abuse.
- To tell you about your account — sign-in links, password resets and important changes. We do not send marketing email without asking.
We never sell your data, and never use it for advertising.
Who processes it for us
We use a small number of service providers, each only for the job below:
- Supabase — our database, sign-in and file storage (hosted in Singapore).
- Microsoft Azure — hosting for the Vector application.
- Paddle — payments, tax and receipts, as merchant of record.
- Anthropic — the AI model behind the AI features. Only when you use one, the parts of your journal it needs (and, for chart reading, your screenshots) are sent to produce the answer.
- MetaApi — runs the MetaTrader terminal for auto sync, if you choose to use it.
- Google — sign-in, if you choose to sign in with Google.
Some of these providers are in other countries than you. Where your data leaves your country, we rely on the provider's contractual safeguards for international transfers.
How long we keep it
We keep your data while your account is open. You can delete your journal data from Settings at any time, and you can ask us to close your account and delete everything. Deleted data leaves our backups as they roll over. Billing records are kept for as long as tax law requires.
How it is protected
- Data is encrypted in transit and at rest.
- Every row in the database is locked to its owner, so another account cannot read your trades — unless you share one. A trade card shows the figures you chose from one trade, never the rest of your journal.
- Screenshots are kept in private storage and shown through links that expire. A chart you share is a separate copy: visible to a community's members, or public for as long as its link is on.
More on this, and on broker sync, on the broker sync and security page.
Your rights
Depending on where you live, you can ask us to:
- give you a copy of your data, or export it yourself from the Trades page;
- correct data that is wrong;
- delete your data and close your account;
- restrict or object to how we use it.
Email support@myvectorjournal.com and we will answer within 30 days. You can also complain to the data protection authority where you live.
Children
Vector is not for anyone under 18, and we do not knowingly collect their data.
Changes
If we change this policy in a way that matters, we will tell you by email or in the app before the change applies.