← Back to ChartRecap

Privacy Policy

Last updated: August 19, 2026

Overview

ChartRecap is a personal trading journal and charting tool. This policy explains what we collect, why, and your choices. We collect the minimum needed to run the product and never sell your data.

What we collect

  • Account: your email address (via email/password or Google sign-in) and an account id.
  • Your content: trades, journal entries, chart snapshots, layouts, and notes you create.
  • Integrations you connect: brokerage data via SnapTrade or the moomoo importer, used only to import your trades.
  • Technical: basic logs and request metadata needed for security and reliability.
  • Product analytics & session replay: we use Amplitude to understand how the app is used and to improve it. This includes usage events (pages viewed, features used) and session replay (a reconstruction of your on-screen interactions, which can be connected to your account through the events recorded alongside it, though the recording itself holds no account id). That connection is made by a pseudonymous account id — an internal identifier, never your email or your name — so that we can tell whether the same person used a feature more than once. When you sign out, that link is reset on your device, so later activity in that browser is not attributed to your account. To protect your financial information, session replay runs in a privacy-first mode that masks all on-screen text by default — your P&L, balances, and trade details are recorded as masked placeholders, not readable values — and your capture token and form inputs are excluded entirely.

How we use it

To provide the app's features (journaling, analytics), to authenticate you, and to keep the service secure.

Where it lives

Data is stored with our infrastructure providers: Supabase (database, authentication, file storage) and Vercel (hosting). Each user's data is isolated and access-controlled.

These are the other companies that process your data on our behalf, and exactly what each one receives:

  • Anthropic, reached through the Vercel AI Gateway — your chart captures and trade numbers are sent to a Claude model to produce AI grades and recaps. The two send different things: a setup grade sends one chart image (the setup) plus that trade's direction, entry, stop and target prices, R-multiple, P&L, its setup tag and your plan-check rules; a recap sends two chart images (setup and outcome) plus those numbers and the exit price. This happens when you ask for a critique or recap, and also automatically: on a paid plan, when a broker sync imports a trade that matches a chart you captured, that trade is graded without a further prompt from you.
  • Stripe — subscription checkout and billing. Card details are entered on Stripe's own pages and are never sent to or stored by us; we hold only a customer and subscription id.
  • Resend — sending transactional email (sync summaries, billing notices, account mail), which means your email address and the contents of those messages.
  • SnapTrade — brokerage connections, when you link one.
  • Amplitude — product analytics and session replay, including the pseudonymous account id described above.
  • Cloudflare — a bot check on the sign-in and sign-up forms.

Trades you choose to share

If you create a share link for a trade, that page is public and can be indexed by search engines — anyone with the link can open it without an account. It shows the trade's symbol, direction, entry and exit prices, position size, entry and exit times, P&L and R-multiple, the chart image you captured for it, your notes only if you chose to include them when creating the link, and your AI grade, its short reason and detected patterns only if you chose to include them. For an options trade it also shows the strike, call/put and expiry, and the strike and call/put additionally appear in the page title, so they can surface in search results and link previews.

The same link also serves a downloadable image card for posting to social media, showing the same trade facts and your chart. The card publishes no AI output at all — not your grade, not the critique, not detected patterns or price levels — and neither does the link preview that appears when you paste the link into a chat or social app. A card someone has downloaded, and a preview a chat app has cached, cannot be taken back; the page can, by revoking the link, which is why only the page can carry your grade.

The written critique is never published anywhere, on any surface, whatever you choose — not the observations, the risk note, the suggested fixes, the biggest miss, or whether the setup was judged valid. Only the letter grade, its short reason and the detected patterns can ever appear, and only on the page, and only if you turn them on.

Nothing is published until you create a link. Revoking the link stops both the page and the card being served.

Sharing

We do not sell your data. We share data only with the service providers above as needed to operate the app, and when required by law.

Your choices

You can edit or delete your trades, journal entries, and snapshots at any time, disconnect brokers, and revoke import tokens. You can permanently delete your account and all associated data yourself at any time from Settings → Delete account. To opt out of product analytics and session replay, use the toggle in Settings or contact us.

Contact

Questions? Email support@chartrecap.app.

ChartRecap is provided for informational and journaling purposes only and is not financial advice.