This policy explains what Tidelight handles when you research markets, use the community, connect Bitget, or ask the Tide guide for help.
This policy covers the Tidelight website and its research, paper trading, live Bitget connection, and research community features. Third-party websites linked from Tidelight have their own privacy terms. Tidelight is a research product; Bitget is a separate exchange.
We use account data to sign you in and secure your workspace; research data to deliver briefs, simulations and history; community data to publish posts, deliver messages and enforce safety controls; and trading credentials only for the Bitget connection and orders you choose. We process technical records to operate, troubleshoot and protect the service. We do not represent AI generated material as verified fact or personalized investment advice.
Supabase supports authentication, database records and media storage. Vercel hosts the application and processes requests. Research and support prompts may go to Bitget’s Qwen gateway or Google Gemini when configured; their handling is subject to their own terms. Market data and user-confirmed orders can be sent to Bitget. Public source URLs may be fetched from their publishers. An optional AgentKey research data connection, when enabled, may route selected research requests to AgentKey and its data providers. We do not claim these providers never retain prompts or use them for model training; check their policies before entering sensitive material.
Content you publish to the community is available to other visitors. We do not publish your Bitget credentials, private briefs, direct messages, account email, or trade balances as community content.
You can manage your profile and research preferences in Settings, remove watchlist entries in Watchlist, and disconnect Bitget in Trading. Public studio usage totals are off until you enable them on your community profile. Turning them off hides the aggregate counts; it does not delete the underlying private activity. Be mindful that others may copy public posts before you remove them. Your browser stores local appearance preferences and essential sign-in state.
Account-owned tables use access policies to separate users’ private records. Bitget credentials are encrypted before storage; the browser does not receive stored secrets back. Live orders require an explicit confirmation and a recent authenticator check. These controls reduce risk but cannot guarantee absolute security. Use a dedicated Bitget key with only the permissions needed, and revoke it in Bitget if you suspect exposure.
We keep account-linked records while needed for the feature, security or applicable obligations. Individual watchlist entries, community posts and Bitget connections can be removed through their product controls. Deleting a post does not necessarily remove media that was already copied or cached elsewhere. A scheduled cleanup removes eligible community media no longer referenced by a post after seven days; this describes a cleanup rule, not a guarantee that all uploads disappear seven days after posting. Some authentication, security, backup and provider logs can remain for a limited period under their respective systems and obligations. There is currently no in-app account deletion or full export control; see the request guidance below.
Depending on where you live, you may ask to access, correct, export, object to or restrict processing of, or delete personal data, and raise a concern with your data protection authority. Nigerian users can consult the Nigeria Data Protection Commission. You can make many corrections in Settings, and remove supported items in the relevant workspace. For a wider privacy request, use the project contact channel identified in the repository; do not post identity documents or private account details in a public issue. The project owner must publish a dedicated confidential contact channel before this policy is treated as final.
We may update this policy as features or providers change. The dated version above will be updated, and significant changes will be called out in the product. Tidelight’s verified legal entity and confidential privacy contact are pending owner publication. Until then, this document describes the product’s current data handling and should be reviewed before production use.