Privacy Policy

Privacy Policy

Your privacy is important to us. This policy explains how dollarcostaverage.ai collects, uses, discloses, and protects your personal information.

Last updated: February 15, 2026

1. Information We Collect

1.1 Information You Provide

  • Identity: Full legal name, date of birth, SSN or ITIN, and government-issued ID.
  • Contact: Email address, phone number, and residential address.
  • Financial: Employment status, income, net worth, investment experience, funding sources, and bank account details (via Plaid).
  • Investment preferences: Recurring investment configurations, symbols, amounts, schedules, and notification preferences.

1.2 Information Collected Automatically

  • Device & browser: IP address, browser type, OS, device identifiers, screen resolution.
  • Usage data: Pages viewed, features used, click patterns, session duration.
  • Performance: Page load times, errors, and application metrics.

1.3 Information from Third Parties

We receive identity verification results, bank account details, and brokerage account status from our third-party service providers (see Section 3).

2. How We Use Your Information

  • Create and manage your account and brokerage account through Alpaca;
  • Execute recurring investments and process securities transactions;
  • Verify identity and comply with KYC/AML regulations;
  • Link and verify bank accounts for ACH funding;
  • Send transactional notifications about order executions and account updates;
  • Provide customer support and respond to inquiries;
  • Improve our platform, diagnose issues, and enhance user experience;
  • Comply with legal and regulatory requirements;
  • Detect, prevent, and address fraud and security issues.

3. Third-Party Services

We integrate with the following services to provide our platform. Each has its own privacy policy governing their use of your data.

Alpaca Securities LLC

Brokerage partner that holds your securities account and executes trades. We share personal and financial information to open/maintain your account and execute orders. Subject to FINRA and SEC regulations.

Plaid Inc.

Securely links your bank accounts for ACH funding. Plaid collects bank credentials directly — we never see or store them — and provides account/routing numbers for transfers.

Clerk

Authentication and user management. Processes your email, name, and auth credentials for sign-in, sign-up, and session management.

Resend

Transactional email provider. We share your email and name to deliver order confirmations, notifications, and service communications.

Twilio

SMS notification services. If you opt in, we share your phone number for execution alerts. You may opt out at any time via notification preferences.

Sentry

Error tracking and monitoring. May collect technical info (browser type, OS, IP, stack traces). We do not intentionally send PII to Sentry.

4. Data Security

We implement industry-standard security measures including:

  • Encryption of data in transit using TLS 1.2 or higher;
  • Encryption of sensitive data at rest;
  • Secure authentication via Clerk with multi-factor authentication support;
  • Regular security assessments and code reviews;
  • Need-to-know access controls for employee access to personal data;
  • Sensitive data (SSN, government IDs) transmitted directly to Alpaca and not stored on our servers.

While we strive to protect your information, no electronic transmission or storage method is 100% secure. We cannot guarantee absolute security.

5. Data Retention

We retain personal information for as long as your account is active or as needed to provide services. We may also retain information for legal compliance, dispute resolution, and agreement enforcement. Transaction records are retained for a minimum of seven (7) years per securities regulations.

6. Your Rights

Depending on your jurisdiction, you may have the following rights:

Access

Request a copy of your personal information.

Correction

Request correction of inaccurate or incomplete data.

Deletion

Request deletion, subject to legal retention requirements.

Portability

Request data in a structured, machine-readable format.

Opt-out

Opt out of marketing communications and non-essential notifications.

Restrict processing

Request limitation of processing in certain circumstances.

To exercise any of these rights, contact us at privacy@dollarcostaverage.ai. We will respond within 30 days.

7. Cookie Policy

  • Essential cookies: Required for authentication, security, and core functionality. Cannot be disabled.
  • Analytics cookies: Help us understand usage patterns to improve the experience. May be set by third-party services.

We do not use advertising or marketing cookies. We do not sell your data to third-party advertisers.

8. Children's Privacy

dollarcostaverage.ai is not intended for individuals under 18. We do not knowingly collect personal information from children. If we become aware of such collection, we will delete that information promptly.

9. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated at least 30 days before taking effect via email or a prominent notice on our platform.

Contact

Privacy inquiries: privacy@dollarcostaverage.ai
General support: support@dollarcostaverage.ai