Legal · v2026-07-17
Privacy Policy
We collect account, KYC, and funding data needed to operate the network. See what we store and why.
What we collect
- Account: name, handle, email, phone (if used to sign in), avatar, location you choose to show.
- Authentication: sessions and OAuth tokens stored by our auth layer; Google profile email when you use Google sign-in.
- KYC: legal name, date of birth, address, ID metadata, and SSN last-4 when you complete financing or transfer tiers. Full SSN is never stored.
- Funding: encrypted Plaid Item tokens, masked account numbers, and balances you link. Bank passwords are never seen by Stradale.
- Usage: product events needed to operate watchlists, messages, and fraud controls.
Why we use it
To authenticate you, run the marketplace and ownership graph, verify proof of funds, meet legal obligations (CIP / travel rule where applicable), and improve the product. We do not sell personal data.
Processors
Google (sign-in), Resend or equivalent (email OTP), Plaid (bank linking), and our database/hosting providers. Each receives only what is needed for that function.
Retention & rights
Account data is kept while your account is active. KYC and funding records may be retained longer where law requires. You may request access or deletion of account data subject to legal holds. Contact privacy@stradale.invalid (placeholder until production mailbox).
Changes
Material privacy changes bump version 2026-07-17. Signed-in users see a minimized re-consent prompt when a new version applies.
Also see our Terms of Use.