Privacy Policy

Last updated: 2026-08-13 Effective: 22 May 2026
Plain-language privacy policy, not legal advice. intent: trade is operated by Tilorah Core LLC, a Florida limited liability company. This policy applies specifically to the intent: trade product. Other Tilorah Studio products may have their own privacy policies.

This policy describes what data we collect when you use intent: trade, why we collect it, who we share it with, and how you can exercise your rights over it.

Short version, in three sentences: Your trade data is yours. We use industry-standard encrypted storage and we do not sell or share your data with anyone for marketing or AI training. We collect only what we need to run the Service, process your subscription, and provide the AI features you use.

1. What we collect and why

CategoryWhatWhy
Account Email address, account-creation timestamp, sign-in timestamps, and authentication method (email/password, Google, or Apple) To authenticate you through Supabase, calculate the app-granted 14-day trial from account creation, and sync your data across devices. Supabase processes email/password credentials and Google/Apple identity tokens. Tilorah does not receive your Google or Apple password.
App preferences Theme setting and language preference To remember your display and language choices across sessions and devices. Language may also be stored locally on your device.
Trade content Trade entries, screenshots, chart images, notes, tags To show you back to yourself — this is the product.
Subscription Subscription tier, billing source (Stripe, Google Play, or Apple), billing period and expiry, provider subscription or purchase identifiers, payment status, and AI top-up balance To grant paid features and preserve consumable AI credits bought before top-up sales ended, keep entitlements tied to your account, prevent duplicate or replayed purchases, and handle refunds, cancellations, and support.
Diagnostics & telemetry Error and crash logs, a small set of in-app diagnostic events (e.g. a failed import), basic device info (browser, OS), and a pseudonymous device/session identifier. On iOS, Sentry also receives fixed diagnostic event names, app stage, platform, version/build, and sampled startup performance timing; it does not receive trade content, account identifiers, URLs, error messages, or stack traces. To detect and fix bugs and keep the app reliable. Most telemetry runs on our own first-party, self-hosted service; the minimal iOS crash and startup diagnostics described here are processed by Sentry.
Historical referrals Your prior personal invite code and any one-time link created between accounts before the referral program ended To preserve prior referral records and detect abuse of the former referral program. We do not grant new referral credits.
Beta signup Email address, intent: trade user ID, signup date, platform, and language To record your voluntary request for beta access and contact or invite you. The basis is your consent when you submit the beta form. Supabase processes and stores this record; it is retained until you are invited, withdraw consent, or delete your account.
Support Email content when you write to hello@tilorah.co To answer your question.

What we do not collect: we do not use advertising services, run advertising or tracking pixels, collect your IP address for marketing, embed third-party advertising trackers, or collect data from social-media buttons. Diagnostic telemetry records fixed event names and technical build context rather than the contents of your trades. Most stays on our own servers (Supabase); the minimal iOS diagnostic subset described above is sent to Sentry. None is sold, used for advertising, or used to track you across apps or websites.

Bug-report screenshots (optional): if you choose to attach a screenshot to an in-app bug report, it may contain your trade data. The image is uploaded over an encrypted connection to private storage, is used only to investigate your report, is never shared, sold, or used for training, and is automatically deleted within 30 days. The app never captures your screen on its own — only an image you deliberately pick.

Bug-report diagnostics: when you submit an in-app bug report we also attach a short technical diagnostics summary to help us reproduce the issue: your platform and app version, the screen you were on, your viewport size and language, and a truncated list of recent in-app error types (the error name and code location only — never the error message text or console output). We collect only this fixed set of fields, and a filter removes anything that looks personal from them — no login tokens, no email addresses, no trade amounts or account numbers, and no free-text content. Because it is attached to the report you sent, it is linked to your account, used only to investigate your report, never sold or shared for advertising or training, and deleted on the same schedule as the report (within 30 days).

2. Payment processing

Web purchases (tilorah.co)

We use Stripe, Inc. ("Stripe") as our payment processor for subscriptions and for one-time AI top-up packs bought on our website before top-up sales ended. New AI top-up packs are not offered. Tilorah Core LLC is the seller of the Service. We are responsible for billing, taxes, and refunds, and Stripe processes payments on our behalf. We never see or store your full card number. When you purchase a subscription on the website, or when you previously purchased a top-up pack, the following information is collected by Stripe directly:

Stripe uses this information to process your payment, issue receipts, and prevent fraud. Stripe's privacy policy applies to their handling of this information: stripe.com/privacy

Information Stripe shares with us:

Stripe does not share your full card details, billing address, or IP address with us.

In-app purchases (iOS / Android)

Standard and Grand subscriptions are processed through Apple's App Store using StoreKit on iOS and through Google Play Billing on Android. New AI top-up packs are not offered on either platform, while credits from prior App Store or Google Play purchases remain usable with an active Standard or Grand plan. Your payment details go to Apple or Google, never to us. We may use RevenueCat, Inc. or another billing service for some store purchases to validate a receipt and manage entitlements. Where RevenueCat is used, it receives the store receipt and a pseudonymous account identifier (your intent: trade user ID), not your name, email, or card data. RevenueCat's privacy policy: revenuecat.com/privacy. Apple and Google handle payment information under their own privacy policies.

3. Subscription management

For website purchases, Stripe creates a subscription or payment record tied to your signed-in account (or the purchase email where applicable). For app purchases, Apple or Google provides the store transaction and the applicable validation service or server verification updates the entitlement. We sync the resulting account state to our database (Supabase, Singapore region). We store the subscription tier, billing source, billing period and expiry, provider identifiers, receipt or transaction status, refund events, and any existing AI-credit balance. When you delete your account, its entitlement and AI-credit balance are deleted with it. Separate receipt, refund, transaction, and related subscription records that we or our payment processors must retain for accounting, tax, fraud prevention, or dispute handling follow the Section 7 subscription-record schedule: retained for 7 years after account deletion and then deleted or de-identified, unless a longer period is required by law.

This means:

4. AI providers

The Service uses third-party AI providers — currently OpenAI (GPT-4o / GPT-4o-mini) — to generate the AI Output you request (chart analysis, AI Insights). Image and text data you submit is transmitted to these providers over encrypted connections.

Our AI providers operate under data-processing agreements that:

We do not sell or share your Content with any third party for marketing, advertising, or training purposes.

5. Cross-border data flows

intent: trade is operated from the United States. Your data is processed in the following locations:

If you are a resident of Thailand: by using the Service, you consent to the transfer of your personal data to the United States and Singapore for the purposes described in this Privacy Policy. We rely on standard contractual clauses or equivalent mechanisms with our processors. You may withdraw this consent at any time by deleting your account, after which we will delete your personal data within 90 days, except where retention is required by law or for the resolution of disputes.

If you are a resident of the European Economic Area or the United Kingdom: data transfers outside the EEA / UK are made under standard contractual clauses approved by the European Commission, or equivalent safeguards.

6. How we share data

We share data only with the third parties needed to operate the Service:

We do not sell your personal data. We do not share your data with advertisers, data brokers, or marketing partners.

We may disclose data when required by law (e.g., a valid subpoena or court order) or to protect the rights, property, or safety of our users, the public, or Tilorah Core LLC. Where lawful, we will give you notice before disclosure.

7. Data retention

On account deletion, we remove your trade content and personal data within 90 days, except for the categories above retained by law.

8. Your rights

You have the following rights regarding your personal data. To exercise any of them, email hello@tilorah.co with the subject line "Data request" and your account email. We respond within 30 days.

Residents of California, the EEA, the UK, and Thailand have specific additional rights under their local laws (CCPA, GDPR, UK GDPR, PDPA) — these are honored under the same process.

9. Cookies and tracking

The Service uses local storage (IndexedDB) and necessary cookies for sign-in sessions and language preference. We do not use advertising or cross-site tracking cookies, and the pricing page (sub.html) embeds no marketing pixels. Our first-party telemetry and the minimal iOS Sentry diagnostics described in Section 1 capture fixed crash, diagnostic, and startup-performance event names (never the contents of your trades). They are never shared with advertisers or used to track you across other sites or apps.

10. Children

The Service is not intended for children under 18. We do not knowingly collect personal data from anyone under 18. If you believe we have collected data from a child under 18, contact us and we will delete it promptly.

11. Security

We use industry-standard practices to protect your data: TLS in transit, encryption at rest at our hosting providers, row-level security policies in our database (your account can only see its own data), Supabase authentication by email/password, Google, or Apple, and minimal employee access on a need-to-know basis. Supabase handles password credentials and identity-provider tokens; Tilorah does not receive your Google or Apple password.

No system is perfectly secure. If we discover a security incident affecting your personal data, we will notify you within the timeframes required by applicable law.

12. Changes to this policy

We may update this policy from time to time. Material changes will be announced by email or in-app notice at least 30 days before they take effect. Non-material changes (typo fixes, clarifications) take effect on posting. The "Last updated" date at the top of this page always reflects the most recent change.

13. Contact

Tilorah Core LLC
Privacy contact: hello@tilorah.co
Web: tilorah.co

นโยบายความเป็นส่วนตัว — สรุป

อัปเดตล่าสุด: 2026-08-13 มีผล: 22 พฤษภาคม 2026
นี่คือสรุป ไม่ใช่คำแนะนำทางกฎหมาย intent: trade ดำเนินการโดย Tilorah Core LLC บริษัทรับผิดจำกัดในรัฐฟลอริดา ประเทศสหรัฐอเมริกา

นโยบายฉบับเต็มเป็นภาษาอังกฤษ ที่ tilorah.co/trade-journal/privacy-policy.html — ภาษาอังกฤษเป็นเอกสารหลักที่ใช้ตีความข้อพิพาท

สรุป 3 ประโยค: ข้อมูลการเทรดของคุณเป็นของคุณ เราใช้การจัดเก็บแบบเข้ารหัสตามมาตรฐานอุตสาหกรรม และไม่ขายหรือแบ่งปันข้อมูลของคุณให้ใครเพื่อการตลาดหรือฝึก AI เราเก็บเฉพาะข้อมูลที่จำเป็นต่อการให้บริการ ดำเนินการชำระเงิน และให้บริการฟีเจอร์ AI ที่คุณใช้

เก็บอะไรและทำไม

สิ่งที่เราไม่เก็บ: ไม่มี analytics tracking pixel, ไม่เก็บ IP สำหรับการตลาด, ไม่มี advertising tracker, ไม่มี social-media tracker ข้อมูลวินิจฉัยของ iOS ที่ส่งไปยัง Sentry ไม่ใช้เพื่อโฆษณาหรือติดตามผู้ใช้ข้ามแอปหรือเว็บไซต์

ภาพหน้าจอในรายงานปัญหา (ไม่บังคับ): หากคุณเลือกแนบภาพหน้าจอกับรายงานปัญหาในแอป ภาพอาจมีข้อมูลการเทรดของคุณ ภาพถูกส่งผ่านการเชื่อมต่อที่เข้ารหัสไปยังพื้นที่จัดเก็บส่วนตัว ใช้เพื่อตรวจสอบรายงานของคุณเท่านั้น ไม่แชร์ ไม่ขาย ไม่ใช้ฝึกโมเดล และถูกลบอัตโนมัติภายใน 30 วัน แอปไม่เคยจับภาพหน้าจอเอง — เฉพาะภาพที่คุณเลือกแนบเท่านั้น

ข้อมูลวินิจฉัยในรายงานปัญหา: เมื่อคุณส่งรายงานปัญหาในแอป เราจะแนบสรุปข้อมูลทางเทคนิคสั้น ๆ เพื่อช่วยให้เราจำลองปัญหาได้: แพลตฟอร์มและเวอร์ชันแอป หน้าจอที่คุณอยู่ ขนาดหน้าจอและภาษา และรายการประเภทข้อผิดพลาดล่าสุดแบบย่อ (เฉพาะชื่อข้อผิดพลาดและตำแหน่งในโค้ดเท่านั้น — ไม่รวมข้อความข้อผิดพลาดหรือข้อความในคอนโซล) เราเก็บเฉพาะชุดข้อมูลที่กำหนดไว้นี้ และมีตัวกรองที่ตัดข้อมูลส่วนบุคคลออก — ไม่มีโทเคนเข้าสู่ระบบ ไม่มีอีเมล ไม่มีจำนวนเงินเทรดหรือหมายเลขบัญชี และไม่มีข้อความอิสระ เนื่องจากแนบมากับรายงานที่คุณส่ง ข้อมูลนี้จึงเชื่อมโยงกับบัญชีของคุณ ใช้เพื่อตรวจสอบรายงานของคุณเท่านั้น ไม่ขายหรือแชร์เพื่อโฆษณาหรือฝึกโมเดล และถูกลบตามกำหนดเดียวกับรายงาน (ภายใน 30 วัน)

การชำระเงิน

การซื้อผ่านเว็บไซต์ (tilorah.co): ดำเนินการโดย Stripe, Inc. สำหรับการสมัครและแพ็ก Top-up แบบซื้อครั้งเดียวที่ซื้อก่อนยุติการขาย ไม่มีการเสนอขายแพ็ก Top-up AI ใหม่ โดย Tilorah Core LLC เป็นผู้ขายบริการ และ Stripe ทำหน้าที่ประมวลผลการชำระเงินแทนเรา เราไม่เห็นและไม่เก็บหมายเลขบัตรเต็มของคุณ Stripe ส่งให้เราเฉพาะข้อมูลที่จำเป็นต่อการผูกบัญชีและยืนยันการซื้อ เช่น อีเมล แพ็กเกจหรือรายการซื้อ สถานะการสมัคร และรหัสอ้างอิง ดูนโยบายของ Stripe ที่ stripe.com/privacy

การซื้อภายในแอป (iOS / Android): การสมัคร Standard และ Grand ดำเนินการผ่าน App Store ด้วย StoreKit บน iOS และผ่าน Google Play Billing บน Android ไม่มีการเสนอขายแพ็ก Top-up AI ใหม่บนทั้งสองแพลตฟอร์ม แต่เครดิตจากการซื้อผ่าน App Store หรือ Google Play ก่อนหน้ายังใช้ได้เมื่อ Standard หรือ Grand ยังใช้งานอยู่ ข้อมูลการชำระเงินของคุณส่งให้ Apple หรือ Google ไม่ส่งมาที่เรา เราอาจใช้บริการ RevenueCat, Inc. หรือบริการอื่นในบางรายการเพื่อยืนยันใบเสร็จและจัดการสิทธิ์ RevenueCat จะได้รับใบเสร็จและรหัสบัญชีแบบนิรนาม (รหัสผู้ใช้ intent: trade ของคุณ) แต่ไม่รับชื่อ อีเมล หรือข้อมูลบัตร

AI

ฟีเจอร์ AI ใช้บริการของ OpenAI (GPT-4o / GPT-4o-mini) ภาพและข้อความถูกส่งผ่านการเข้ารหัส ผู้ให้บริการเหล่านี้มีสัญญาที่ห้ามนำข้อมูลของคุณไปฝึกโมเดล และต้องลบข้อมูลภายในเวลาที่กำหนด

การส่งข้อมูลข้ามประเทศ — สำคัญสำหรับผู้ใช้ในไทย

ข้อมูลของคุณถูกประมวลผลที่:

หากคุณเป็นผู้พำนักในประเทศไทย การใช้บริการของคุณถือเป็นการให้ความยินยอมในการส่งข้อมูลส่วนบุคคลของคุณไปยังสิงคโปร์และสหรัฐอเมริกา ตามวัตถุประสงค์ที่ระบุในนโยบายฉบับนี้ คุณสามารถถอนความยินยอมได้ทุกเมื่อโดยลบบัญชีของคุณ และเราจะลบข้อมูลส่วนบุคคลของคุณภายใน 90 วัน (ยกเว้นข้อมูลที่กฎหมายกำหนดให้เก็บรักษา)

เราไม่ขายข้อมูลของคุณ

เราไม่ขายข้อมูลส่วนบุคคลของคุณ ไม่แบ่งปันให้ผู้โฆษณา data broker หรือพาร์ทเนอร์การตลาด เราอาจเปิดเผยข้อมูลตามที่กฎหมายกำหนด (เช่น หมายศาล) เท่านั้น

สิทธิ์ของคุณ (PDPA)

ภายใต้ พ.ร.บ. คุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) คุณมีสิทธิ์: เข้าถึงข้อมูล, แก้ไข, ลบ, โอนย้าย, คัดค้านการประมวลผล, ถอนความยินยอม ส่งอีเมลมาที่ hello@tilorah.co พร้อมหัวเรื่อง "Data request" เราจะตอบกลับภายใน 30 วัน

ระยะเวลาเก็บข้อมูล

ความปลอดภัย

เราใช้แนวทางมาตรฐานอุตสาหกรรม: TLS ในการส่งข้อมูล, การเข้ารหัสที่จัดเก็บ, row-level security (บัญชีของคุณเห็นเฉพาะข้อมูลของตัวเอง), และการยืนยันตัวตนผ่าน Supabase ด้วยอีเมล/รหัสผ่าน Google หรือ Apple โดย Tilorah ไม่ได้รับรหัสผ่าน Google หรือ Apple ของคุณ หากเกิดเหตุการณ์ด้านความปลอดภัยที่กระทบข้อมูลของคุณ เราจะแจ้งคุณภายในเวลาที่กฎหมายกำหนด

สำหรับเด็ก

บริการนี้ไม่ได้ออกแบบสำหรับเด็กอายุต่ำกว่า 18 ปี เราไม่เก็บข้อมูลส่วนบุคคลจากผู้ที่อายุต่ำกว่า 18 โดยรู้เห็น

การเปลี่ยนแปลงนโยบาย

หากเราปรับนโยบายในประเด็นสำคัญ จะแจ้งล่วงหน้าอย่างน้อย 30 วันผ่านอีเมลหรือในแอป

ติดต่อ

Tilorah Core LLC
เรื่องความเป็นส่วนตัว: hello@tilorah.co
tilorah.co

ข้อกำหนดด้านภาษา: ฉบับภาษาอังกฤษเป็นนโยบายความเป็นส่วนตัวฉบับหลัก ฉบับภาษาไทยฉบับนี้เป็นการแปลโดยสรุปเพื่อความสะดวกในการอ่าน ในกรณีที่มีข้อขัดแย้ง ให้ใช้ฉบับภาษาอังกฤษเป็นเอกสารตีความ