Data, cookies, and ads

Privacy

This notice explains the information ChartNothing uses for dashboards, accounts, connected feeds, billing, and optional content advertising.

Current Dashboard Data

Anonymous dashboard configuration is stored in the browser URL. Anyone with a shared dashboard link can see the symbols, columns, and timeframe in that link.

Accounts

Account authentication is provided through Amazon Cognito. Saved dashboards, feeds, templates, and billing records are restricted to the signed-in owner unless that owner creates an explicit scoped share. The Account workspace provides self-service data export and account deletion controls.

Export And Deletion

Account exports include owner-visible ChartNothing records but exclude provider secrets, scoped tokens, device tokens, and Stripe identifiers. Account deletion requires an active subscription to be canceled and ended first, then removes product records, provider secrets, native quota records, the Stripe customer when present, and the Cognito sign-in. Payment lifecycle evidence may be retained for fraud, tax, accounting, and legal obligations; ChartNothing removes its account-owner reference from that retained evidence.

First-Party Product Analytics

ChartNothing counts a small allowlisted set of product steps using a random per-tab session identifier in session storage. The backend stores only a one-way hash, broad route family, allowlisted semantic page name, product step, account-state category, and timestamp for up to 90 days. Query strings, wallet addresses, prompts, payloads, email addresses, arbitrary paths, and third-party advertising identifiers are not accepted. Global Privacy Control and Do Not Track disable this collection in the browser.

Ads And Consent

ChartNothing does not place display ads on dashboard, account, feed, admin, or checkout surfaces. Content pages may use a certified consent flow before eligible advertising is enabled.