Short, because we keep very little.
Your watchlist, your portfolio and your light or dark choice are kept in your own browser. Files you import into the portfolio are read in your browser and never uploaded.
We use Google Analytics to count visits: which pages are opened, roughly where from, on what kind of device and browser, and the site that sent you. It sets its own cookies (named _ga) to tell one visit from the next. It never sees your watchlist, your portfolio or your account. Google’s own policy covers what it does with this; a browser’s tracking protection or an ad blocker turns it off.
Alerts need our server to know what to check and where to send. For each device that turns one on, we keep a random id the device made, stored only in a scrambled form (a hash), when the device first turned alerts on, and the push subscription your browser gives us. For each rule we keep the scrip, the kind of alert, and the price for the kinds that have one. For a price we also keep the time you set it, as your device sent it and as we corrected it for your device’s clock, and the day the rule first reached us. We keep the day the rule last alerted, the note we show while it is paused, and the last day we could not check it. For an alert on a saved screen, we keep the name you gave the screen and its conditions. If you turn on the digest, we keep the symbols of the scrips you hold and watch, without how many you hold or what you paid, and remove them as soon as you turn it off. The digest also notes which My Day warnings you turned off, so it leaves them out too. We also keep the day we last sent that device an alert. Never your quantities, costs, portfolio names or watchlist names, and no account is needed. On the alerts page, “Delete my alerts from the server” removes all of it at once.
We keep your email address, your name and the link to your profile photo if Google gives us them, an id Google uses for your account, when you joined and last signed in, your watchlist and, only if you turn it on, your portfolio. We keep them so you can sign in and see the same watchlist and portfolio on every device. No password and no contacts. The photo itself stays with Google; we keep only its link, and it changes when you change it there.
If you add a passkey, we keep its public half (which cannot be used to sign in on its own), the name you gave it, and when you added and last used it. Your fingerprint, face or screen lock never leaves your device. You can remove a passkey on your account page, and they are deleted with the account.
Two small cookies keep you signed in: one for 15 minutes at a time, renewed quietly, and one for up to 30 days after your last visit, and 90 days at most. Another stops other websites from acting in your name. There are no advertising cookies.
Signing in does not send your portfolio anywhere. It stays in your browser only, until you choose “Keep my portfolio in my account” on the portfolio page.
If you turn that on, we keep a copy of your portfolio with your account, so the same one shows on each device you sign in on: the names of your portfolios, every transaction you saved (scrip, date, type, quantity, price, fees and tax), your stops and targets, and the suggestions you turned down. The files you import are still read in your browser; only the transactions you save from them are kept. Turn it off at any time on the portfolio page, and choose whether to delete the copy in your account too. Your browser keeps its own copy either way.
On our own server. A copy is backed up every night, locked with a key only we hold, to Cloudflare’s storage. Sign-in emails are sent through Zoho Mail. If you sign in with Google, Google knows you signed in to Bull Yatra.
On your account page you can download everything we hold about you, including any portfolio kept in your account, or delete your account, which deletes that portfolio copy too. Deleting asks you to have signed in within the last few minutes, so a phone left unlocked cannot wipe your account. The account is deleted seven days after you ask, and we email you when you do; signing in before then cancels it. Nightly backups taken before that still hold a copy for up to 30 days, after which they expire.
Write to info@bullyatra.com.