Privacy Policy
Effective date: April 19, 2026
This Privacy Policy describes how Stonk Lab ("Stonk Lab," "we," "us," or "our") collects, uses, and shares information when you use Aurora (the "Service") at stonklab.ai, aurora.stonklab.ai, and related subdomains.
1. Information We Collect
Information you provide
- Account information: email address and password (stored hashed) when you register.
- Payment information: if you subscribe to a paid plan, billing details are collected and stored by our payment processor, Stripe. We do not store full card numbers on our servers.
- User content: paper trades, watchlists, portfolio configurations, notes, and preferences you create inside the Service.
- Communications: messages you send us by email or through the Service.
Information collected automatically
- Usage data: pages viewed, features used, clicks, and session timestamps.
- Device and connection data: IP address, browser type, operating system, and device identifiers.
- Cookies and similar technologies: we use cookies for authentication (keeping you logged in) and essential Service functionality. We do not use third-party advertising trackers.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service.
- Authenticate your account and secure it against unauthorized access.
- Process subscription payments and send billing-related communications.
- Send transactional emails (welcome, receipts, trial reminders, password resets, alerts you've opted into).
- Respond to support requests and communicate with you about the Service.
- Detect, prevent, and address technical issues, fraud, and abuse.
- Comply with legal obligations.
3. How We Share Your Information
We do not sell your personal information. We share information only with the service providers needed to operate the Service:
- Stripe — payment processing and subscription management.
- Amazon Web Services (AWS) — application hosting, database, and backups.
- SendGrid (Twilio) — transactional email delivery.
- Cloudflare — DNS, network security, and static site hosting.
- SnapTrade (when enabled by you) — brokerage account linking for Enterprise users.
We may also disclose information if required by law, subpoena, or to protect the rights, property, or safety of Stonk Lab, our users, or others.
4. Data Retention
We retain account information for as long as your account is active. If you delete your account, we delete or anonymize personal information within 90 days, except where we are required to retain it for legal, tax, or accounting purposes (for example, payment records). Performance and prediction data are stored indefinitely in aggregate form for model evaluation.
5. Data Security
We use industry-standard safeguards to protect your information, including TLS encryption in transit, encrypted storage at rest, hashed passwords, and access controls. No system is perfectly secure, and we cannot guarantee absolute security.
6. Your Rights
Depending on where you live, you may have rights regarding your personal information, including the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate information.
- Request deletion of your account and personal information.
- Export your data in a portable format.
- Opt out of non-essential communications.
To exercise any of these rights, email us at aurora@stonklab.ai. We will respond within 30 days.
7. Children
The Service is not directed to children under 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will delete it.
8. International Users
Aurora is operated from the United States. If you access the Service from outside the U.S., your information will be transferred to, stored, and processed in the U.S., where data protection laws may differ from those in your country.
9. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or by posting a notice in the Service. The "Effective date" at the top of this page indicates when it was last revised.
10. Contact
Questions about this Privacy Policy? Email aurora@stonklab.ai.