Privacy Policy
We collect what we need to give you an account and run the service, and nothing else. We do not sell your data, we do not share it for advertising, and there is no tracking of any kind on this website.
Last updated 23 August 2026.
Who is responsible
Sharpe Terminal is the controller of the personal data described here. You can reach us at support@sharpeterminal.org with any question about your data or this policy.
What we collect
- Account details — your email address, the name you choose to be shown as, your language preference, and your password. Your password is stored only in an encrypted, one-way form; nobody can read it back, including us.
- What you create in the app — watchlists, portfolios, research notes, alerts and custom indices.
- Your preferences, so the app looks the same on every machine you use it on.
- Limited usage statistics — how often each feature is opened. These are totals only; we do not build a timeline of your activity, and you can switch the counting off and delete what has been counted from within the app.
- Security records — failed sign-in attempts and the IP address they came from. This is how we stop people guessing passwords. Successful sign-ins are not recorded.
Why we use it, and on what basis
- To give you the account and the service you signed up for, and to let you recover access when you forget your password — this is necessary to perform our contract with you (GDPR Article 6(1)(b)).
- To keep accounts secure and the service working — our legitimate interest in protecting you and other users (Article 6(1)(f)).
- To meet obligations the law places on us, such as keeping records of payments (Article 6(1)(c)).
We do not carry out profiling, and no decision affecting you is made automatically.
Cookies
This website uses only the cookies it needs to work: one to keep you signed in, one to protect forms against misuse, and a short-lived one that remembers which address you are in the middle of confirming. There is no analytics, no advertising, and no third-party tracking, which is why you are not being asked to consent to anything.
Who else sees your data
We do not sell, rent or trade personal data, and we do not share it for marketing. We use a small number of service providers to run the service, and they may process your data only on our instructions:
- An email delivery provider, for confirmation and password-reset messages. It sees your email address and the contents of that message — never a password.
- A mail provider in Norway, which hosts our support inbox and therefore holds whatever you choose to write to us.
- A cloud storage provider, used for secure backups.
- A payment provider, which takes your payment and issues your receipts if you subscribe. You type your billing address and card details into their pages, not ours, so we never see the card at all; they also get your email address. What we keep is their reference numbers for you and your subscription, which plan you are on, whether it is running and when the current period ends — no amounts, no invoices, no card details and no address.
We may also disclose data if the law requires it.
Where your data is processed
We choose providers that process data within the EU/EEA or Norway wherever we can. If you would like to know exactly where a particular part of your data is held, write to us and we will tell you.
How long we keep it
- Your account and everything in it: for as long as you have an account. When you delete your account, it all goes with it, and any subscription is cancelled at the same moment.
- Security records of failed sign-ins: 30 days.
- One-time codes: minutes, and they can only be used once.
- Records the law requires us to keep, such as the receipts for payments you have made: for as long as the law requires. These are held by our payment provider, and deleting your account does not delete them — nobody is allowed to delete them.
What we do not do
We do not read the content you create. Your watchlists, portfolios, notes, alerts and custom indices are yours, and they are not used to advertise to you, sold to anyone, or shared with other users.
Your rights
Under the GDPR you have the right to access your data, to receive a copy of it, to have it corrected, to have it deleted, to object to or restrict certain processing, and to withdraw consent where you have given it.
You can do most of this yourself, at any time, inside the app: see what is held about you, download a copy of it, turn off usage counting, and delete your account for good. For anything else, write to support@sharpeterminal.org and we will answer within one month.
If you are not satisfied with how we have handled your data, you have the right to complain to your national data protection authority. In Norway that is Datatilsynet.
Security
We take appropriate technical and organisational measures to protect your data, including encryption in transit, encrypted storage of passwords, and limiting access to what is necessary to run the service.
Children
This service is not intended for children, and we do not knowingly collect data from anyone under 16.
Changes to this policy
If we change this policy we will update the date at the top of this page, and we will tell you by email if the change is significant.