Privacy Policy

PipsFund:Focus

Effective date: 2026-09-26

This policy explains how this application handles information and how to contact us about privacy.

Information we process

PipsFund:Focus stores the trades you enter, including opening date and time, long or short direction, signed result in pips, concentration rating, and optional trading session, in the app's local database and in a PostgreSQL database hosted for the service on Railway. Your profile name, base currency, session choices, and warning preferences are stored locally on your device and are not sent to this service. The app creates a random installation token and keeps it in the device Keychain; the server stores its installation identifier and a bcrypt hash of the secret, not the secret itself. The service also receives ordinary network request information, such as IP address, request time, and technical headers, through Railway infrastructure. We do not require an account or ask for a password or email address in the app.

How we use information

Trade data is used to synchronize your records, calculate win rates and concentration by day and hour, identify productive trading windows, show historical weak-period warnings, and create the analysis you request. Local profile settings tailor the interface and session filters. The installation token limits access to one installation's server data. Request information is processed to deliver and protect the service and diagnose failures.

Service providers and sharing

Railway hosts the application service and PostgreSQL database and processes service traffic and infrastructure logs on our behalf. Apple provides the operating system facilities used for local storage, device backup if enabled, Keychain protection, and the share sheet. If you export a CSV, the destination you choose through the iOS share sheet receives the file under that destination's terms. We do not add analytics, advertising, email delivery, or social sign-in providers, and we do not sell trade data.

Data retention

Trade records remain in local storage and on the server until you delete them in the app. Deleting one trade removes its trade details from the server but leaves a minimal installation-scoped deletion marker so an offline retry does not restore it. The delete-all action removes the installation's server trades, deletion markers, installation identifier, and secret hash and clears local trade data. A later empty sync can register the same installation token again without restoring deleted trades. Local profile settings remain until you edit them or remove the app. Device backups, if enabled, may also contain the app's local database and settings; deleting data in the app does not erase an earlier device backup. Railway may retain infrastructure logs or backups according to its own operating practices; we do not claim a specific retention period or immediate removal from backups. A CSV you exported remains wherever you saved or shared it until you remove it there.

Deleting your information

Use Settings > Delete all trades to erase the app's local trades and request deletion of all trades and deletion markers for this installation on the server. The service also removes its credential record; a later automatic sync can register the same token again for an empty installation. You can delete individual trades from the Trade Log. If the device is offline, the app queues server deletion until it reconnects. Removing the app may remove local data but does not itself send a server deletion request; if the Keychain token is lost, server data cannot be recovered through a login and may no longer be reachable from the app. Contact jack.ed.tarsh@icloud.com with privacy questions or deletion concerns; do not email your secret token.

Permissions and your choices

The app shows weak-period warnings in the trade entry screen and does not request notification permission. No location, contacts, camera, microphone, or tracking permission is required. Exporting a CSV uses the standard iOS share sheet only when you choose to export. You can stop sharing an export by not selecting a destination; files already saved or shared must be removed at that destination.

Your privacy rights

You can view, edit, export, and delete your trade records in the app. For privacy questions or requests, contact jack.ed.tarsh@icloud.com. Because there are no accounts, we may be unable to identify or access an installation's records after its secret is lost, and we will not disclose records to someone who cannot establish control of that installation. Applicable privacy rights depend on your location.

Security

The app communicates with the deployed service over HTTPS. The random installation secret is held in the iOS Keychain, and the server checks a bcrypt hash before it reads or changes that installation's records. Server queries are scoped to the authorized installation, and the database is accessible to the application through Railway's private service connection. No method of storage or transmission is guaranteed perfectly secure.

Children’s privacy

PipsFund:Focus is intended for adult traders and is not directed to children. We do not knowingly seek children's personal information. If you believe a child has entered data, contact jack.ed.tarsh@icloud.com.

Changes to this policy

We may update this policy if the app, service, or data practices change. The current version and effective date will be posted at this public page. Material changes will be reflected in the app or on this page before the revised practices are used.