Last updated 29 July 2026
What we collect
- Account details. When you sign in with Google we receive your email address, name and profile picture. We do not receive your Google password.
- What you tell us during setup. Your display name, goals and target amounts, risk preference, whether you are in paper or real mode, and the limits you set.
- Your conversations. Messages you send and the replies you receive.
- Activity. Proposals, approvals, declines, paper trades, real orders, daily portfolio snapshots, and the reasoning behind every decision.
- Connected account credentials. If you connect a brokerage or exchange, the API key, secret and any passphrase you provide, so we can read balances and place orders you approve.
Who we share it with
- OpenRouter and the AI model providers it routes to. Your messages and a summary of your portfolio context are sent to OpenRouter, which forwards them to the AI model provider running that request — currently Anthropic. This is core to how the product works: if you use the chat, its contents go to those providers for processing. We configure OpenRouter to route only to providers that do not retain your data or train on it, and we may change which model provider we use.
- Supabase hosts our database and handles authentication. Vercel hosts and serves the application.
- Your broker or exchange.When you connect an account, we call that venue's API on your behalf using the credentials you supplied.
- Market data providers. We request prices from public market-data services. These requests contain ticker symbols, not information about you.
We do not sell your personal information, and we do not share it with advertisers.
How your credentials are stored
Exchange and brokerage credentials are stored in our database so that balance reads and approved orders can be carried out. Access is restricted to the application. We deliberately do not claim more than that here. If you would rather not store credentials at all, paper mode requires no connected account.
How long we keep things
Most records last as long as your account. There is one important exception: the decision records described in our disclosures are deliberately immutable and are retained for seven years. They cannot be edited or deleted, including by us — the database rejects the attempt. That design is the reason we can explain any past recommendation, and it means a request to erase your data cannot remove those specific records within that window.
What you can do
- Export. Download your profile, connected accounts, goals, agent activity and portfolio history as JSON from your settings at any time. Chat history and individual trade records are not in that export yet; email us and we will send them.
- Disconnect. Remove any connected account at any time, which deletes the stored credentials for it.
- Delete. Ask us to close your account and delete your data, subject to the seven-year record-keeping exception above.
- Correct. Ask us to fix anything inaccurate.
Cookies
We use cookies that keep you signed in. We do not use advertising or cross-site tracking cookies. We use bot-protection on sign-in and on the chat endpoint to prevent automated abuse.
Children
Vestya is not intended for anyone under 18 and we do not knowingly collect their information.
Changes
If we change this policy materially we will say so here and update the date above rather than changing it quietly.
Contact
Questions or requests: hello@vestya.capital.