Privacy Policy
Last updated: August 15, 2026 · Version 1.0
1. Who we are
Rellio Journal ("we", "us") operates the Rellio Journal trading journal service and acts as the data controller for the personal data described in this policy. You can reach our privacy team at shop47us@gmail.com.
2. How and why we use it (legal bases)
Contract performance: to create your account, operate the journal, compute metrics and provide support.
Legitimate interests: to secure the Service, prevent abuse, and improve product quality using aggregated usage data.
Legal obligation: tax, accounting and responses to lawful requests.
Consent: optional marketing emails and non-essential cookies, withdrawable at any time.
3. AI processing
To generate discipline feedback and mentor insights we send relevant journal data to our AI provider. Data sent for these features is processed to return your result and is not used by us to train public models.
3a. Your trading data is private to you
Everything you record about your trading activity — your risk profile and trading contract (capital, maximum risk per trade, minimum reward-to-risk, daily stop and trade limits), your trades, long-term positions, notebook entries, pre-trade checklists and AI mentor conversations — is visible to you alone. Our staff and administrators cannot view this content: our internal tools expose only basic account details (name, email, phone, registration date) and subscription status, strictly for support, billing and abuse prevention. Aggregated, non-identifying counts may be used for service statistics. Access beyond this happens only where you explicitly ask us for help with a specific item, or where we are legally compelled.
4. Sharing and sub-processors
We do not sell your personal data. We share it only with service providers acting on our instructions: cloud hosting and database, authentication, AI inference, market data and news, payment processing, email delivery and error monitoring. Each is bound by a data processing agreement.
5. International transfers
Our providers may process data outside your country, including in the United States and the European Union. Where required, transfers are covered by Standard Contractual Clauses or an equivalent lawful transfer mechanism.
6. Retention
We keep account and journal data for as long as your account is active. After deletion we remove or irreversibly anonymize personal data within 30 days, except records we must keep for legal, tax or dispute-resolution purposes (typically up to 7 years).
7. Your rights
Depending on your location (GDPR/UK GDPR, CCPA/CPRA and similar laws), you have the right to access, correct, delete, restrict or object to processing, to data portability, to withdraw consent, and to opt out of the "sale" or "sharing" of personal information (we do neither). Exercise any right at shop47us@gmail.com; we respond within 30 days. You may also lodge a complaint with your local supervisory authority.
8. Security
We use encryption in transit, encrypted storage, row-level access controls so each user can only reach their own records, and least-privilege access for staff. No system is perfectly secure; we will notify you and the relevant authority of a qualifying breach without undue delay.
9. Cookies
We use strictly necessary cookies and local storage for authentication and preferences, plus limited analytics to understand feature usage. You can block cookies in your browser, although sign-in will not function without the essential ones.
10. Children
The Service is not intended for anyone under 18. We do not knowingly collect data from children; if we learn we have, we delete it.
11. Changes and contact
We may update this policy; material changes will be posted here with a new "Last updated" date. Contact: shop47us@gmail.com.
