Privacy Policy
Pulsar is a personal-research tool for market analysis and signal tracking. This page explains what data it collects, why, and what you can do about it. It's written to describe what the app actually does, not generic legal boilerplate.
What we collect
If you create a Pulsar account, we store:
- Email and name — for login and account recovery.
- Password — never stored in plain text; only a salted bcrypt hash.
- Watchlist, portfolio, and alert data you enter — symbols, quantities, and cost basis you type in yourself. This is self-reported for your own tracking; Pulsar never connects to an exchange account or wallet to read your real holdings.
- Telegram chat ID — only if you choose to link Telegram for alerts or the bot. Linking is optional and reversible.
- Messages you send the AI assistant (Telegram or in-app, where enabled) — sent to a third-party AI provider to generate a reply, see below.
Page visits — when you load the homepage, About, or this page, Pulsar logs your IP address, coarse country-level location (derived from IP, not GPS), the page you loaded, and a timestamp. This isn't an analytics/ad-tracking script (see "What we don't do" below) — it's a first-party log used for basic traffic visibility and to identify and block abusive traffic. It isn't linked to your Pulsar account even if you're logged in, isn't shared with any third party, and is automatically deleted after 90 days.
What we don't do
- No ad tracking, no analytics scripts, no third-party trackers on this site.
- We never sell or rent your data to anyone.
- We don't request or store exchange API keys, wallet keys, or payment details — Pulsar has no trading or payment functionality.
Third parties involved in running Pulsar
Certain features necessarily route data through outside services to work at all:
- Market data (prices, candles) comes from public exchange and market-data APIs — no personal data is sent to them, only the asset symbols you're looking up.
- News headlines come from a third-party news API, queried by asset symbol only.
- Email delivery (alerts, verification codes) is handled by a transactional email provider (SendGrid) — it sees your email address and the message content, nothing else.
- Telegram delivers bot messages and alerts if you link your account; a Cloudflare Worker relays messages between Pulsar and Telegram's servers.
- AI features (natural-language Q&A, photo/document analysis) send your message — and, if you send one, an image or document — to a third-party AI provider (Groq, Google Gemini, or OpenAI, depending on configuration) to generate a response. Only what you actually send is transmitted; Pulsar doesn't share your account or portfolio data with the AI provider unless you ask it a question that references it.
Your data, your control
You can delete your account at any time from your profile — this permanently removes your account, watchlist, portfolio, alerts, and Telegram link from Pulsar's database. It doesn't retract messages already sent to third parties (e.g. an email already delivered, or a past AI conversation already processed by the AI provider), since those aren't Pulsar's to erase after the fact.
Session login uses a secure, HttpOnly cookie — it isn't readable by page scripts and isn't shared with any third party.
Children
Pulsar isn't directed at children and isn't knowingly used by anyone under 13.
Changes to this policy
If what Pulsar collects or how it's used changes meaningfully, this page will be updated and the date above will change accordingly.
Contact
Questions about your data, or a request to access/delete it outside the in-app option above? Reach out at alerts.pulsar@gmail.com.