Privacy Policy
Privacy Policy
Your privacy is important to us. This policy explains how dollarcostaverage.ai collects, uses, discloses, and protects your personal information.
Last updated: February 15, 2026
1. Information We Collect
1.1 Information You Provide
- Identity: Full legal name, date of birth, SSN or ITIN, and government-issued ID.
- Contact: Email address, phone number, and residential address.
- Financial: Employment status, income, net worth, investment experience, funding sources, and bank account details (via Plaid).
- Investment preferences: Recurring investment configurations, symbols, amounts, schedules, and notification preferences.
1.2 Information Collected Automatically
- Device & browser: IP address, browser type, OS, device identifiers, screen resolution.
- Usage data: Pages viewed, features used, click patterns, session duration.
- Performance: Page load times, errors, and application metrics.
1.3 Information from Third Parties
We receive identity verification results, bank account details, and brokerage account status from our third-party service providers (see Section 3).
2. How We Use Your Information
- Create and manage your account and brokerage account through Alpaca;
- Execute recurring investments and process securities transactions;
- Verify identity and comply with KYC/AML regulations;
- Link and verify bank accounts for ACH funding;
- Send transactional notifications about order executions and account updates;
- Provide customer support and respond to inquiries;
- Improve our platform, diagnose issues, and enhance user experience;
- Comply with legal and regulatory requirements;
- Detect, prevent, and address fraud and security issues.
3. Third-Party Services
We integrate with the following services to provide our platform. Each has its own privacy policy governing their use of your data.
Alpaca Securities LLC
Brokerage partner that holds your securities account and executes trades. We share personal and financial information to open/maintain your account and execute orders. Subject to FINRA and SEC regulations.
Plaid Inc.
Securely links your bank accounts for ACH funding. Plaid collects bank credentials directly — we never see or store them — and provides account/routing numbers for transfers.
Clerk
Authentication and user management. Processes your email, name, and auth credentials for sign-in, sign-up, and session management.
Resend
Transactional email provider. We share your email and name to deliver order confirmations, notifications, and service communications.
Twilio
SMS notification services. If you opt in, we share your phone number for execution alerts. You may opt out at any time via notification preferences.
Sentry
Error tracking and monitoring. May collect technical info (browser type, OS, IP, stack traces). We do not intentionally send PII to Sentry.
4. Data Security
We implement industry-standard security measures including:
- Encryption of data in transit using TLS 1.2 or higher;
- Encryption of sensitive data at rest;
- Secure authentication via Clerk with multi-factor authentication support;
- Regular security assessments and code reviews;
- Need-to-know access controls for employee access to personal data;
- Sensitive data (SSN, government IDs) transmitted directly to Alpaca and not stored on our servers.
While we strive to protect your information, no electronic transmission or storage method is 100% secure. We cannot guarantee absolute security.
5. Data Retention
We retain personal information for as long as your account is active or as needed to provide services. We may also retain information for legal compliance, dispute resolution, and agreement enforcement. Transaction records are retained for a minimum of seven (7) years per securities regulations.
6. Your Rights
Depending on your jurisdiction, you may have the following rights:
Access
Request a copy of your personal information.
Correction
Request correction of inaccurate or incomplete data.
Deletion
Request deletion, subject to legal retention requirements.
Portability
Request data in a structured, machine-readable format.
Opt-out
Opt out of marketing communications and non-essential notifications.
Restrict processing
Request limitation of processing in certain circumstances.
To exercise any of these rights, contact us at privacy@dollarcostaverage.ai. We will respond within 30 days.
7. Cookie Policy
- Essential cookies: Required for authentication, security, and core functionality. Cannot be disabled.
- Analytics cookies: Help us understand usage patterns to improve the experience. May be set by third-party services.
We do not use advertising or marketing cookies. We do not sell your data to third-party advertisers.
8. Children's Privacy
dollarcostaverage.ai is not intended for individuals under 18. We do not knowingly collect personal information from children. If we become aware of such collection, we will delete that information promptly.
9. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated at least 30 days before taking effect via email or a prominent notice on our platform.
Contact
Privacy inquiries: privacy@dollarcostaverage.ai
General support: support@dollarcostaverage.ai