Privacy Policy
Last updated: August 2026
Zyvo Tracker ("Zyvo", "we", "us") provides a portfolio tracking and analytics application. This policy explains what data we collect, why, and how it's handled.
Information we collect
- Account information: your email address, used for authentication and account access via Supabase Auth.
- Portfolio data: the transactions, holdings, and positions you enter manually, import via CSV, or sync automatically if you choose to connect a brokerage account.
- Preferences: display currency, theme, and other in-app settings.
- Billing information: if you subscribe to Zyvo Pro, payments are processed directly by Stripe. Zyvo does not receive or store your card details.
Broker connections are optional
Connecting a brokerage account is never required to use Zyvo. If you choose to connect one, we use SnapTrade to establish a read-only connection — Zyvo never receives or stores your brokerage password, and the connection cannot place trades or move funds. Disconnecting a broker entirely happens automatically when you delete your Zyvo account. We don't currently offer a way to disconnect a single broker while keeping your account and other connections active — if you need that, contact contact@zyvotracker.com.
Third-party services we use
We rely on the following providers to operate Zyvo. Each only receives the minimum data needed to perform its function:
- Supabase — authentication and database hosting for your account and portfolio data.
- Stripe — subscription billing. Handles your payment details directly; we never see your card number.
- SnapTrade — optional brokerage account connections (read-only).
- Finnhub, Yahoo Finance, Binance — market price data. These requests only include public ticker symbols, never your personal or account information.
- PostHog — product analytics. Identifies your account by user ID and email address so we can understand feature usage; does not receive your portfolio, transaction, or financial data.
- Sentry — error tracking, so we can find and fix bugs. May incidentally capture technical details about your device/browser when an error occurs.
- Frankfurter — historical currency exchange rates. Called directly from your browser, so Frankfurter receives your IP address and the currency pair/date requested — never your account information.
Your rights
- Access & export: export your full transaction history as CSV at any time from within the app.
- Deletion: delete your account and associated data at any time from Settings in the app, or via our account deletion page if you're not signed in. Billing records are retained as required by law; everything else is removed.
- Correction: you can edit or remove any transaction you've entered directly in the app.
Data security
All data is transmitted over encrypted connections (TLS/HTTPS). Authentication is handled by Supabase Auth; passwords are never stored in plain text.
Cookies
Zyvo uses only the minimal cookies/local storage required to keep you signed in and remember your preferences, plus first-party analytics identifiers from PostHog (see above). We do not use advertising or cross-site tracking cookies.
Changes to this policy
If we make material changes to this policy, we'll update the date at the top of this page. Continued use of Zyvo after changes take effect constitutes acceptance of the updated policy.
Contact
Questions about this policy or your data? Email contact@zyvotracker.com.