Legal
Privacy policy
Last updated 24 August 2026
Introduction
PolyCognition operates an AI trading agent platform for Indian equity markets. This policy explains what we collect, why we collect it, how long we keep it, and what you can ask us to do with it.
Using the platform means accepting the practices described here. If you do not accept them, please stop using it.
Information we collect
What you give us
- Account details: name, email address and password.
- Broker connection: when you link a Dhan trading account we receive an access token that lets our agents operate inside that account. We never receive or store your Dhan password.
- The capital limit and risk parameters you configure.
- Anything you send us directly, such as support email.
What we record automatically
- Usage: pages opened, features used, timestamps and session length.
- Device: browser, operating system and screen size.
- IP address and the approximate location it resolves to.
- The full activity log our agents produce while acting on your behalf.
How we use it
- To run the platform and its trading agents.
- To place orders through your connected Dhan account, within the parameters you have configured.
- To improve the scanning, signal and risk logic.
- To send account notifications: order confirmations, alerts and system status.
- To detect and stop fraud, unauthorised access and other security incidents.
- To meet legal and regulatory obligations.
Sharing and third parties
We do not sell personal information. We share data with:
- Dhan. Order instructions and account queries go to Dhan through their API, because that is how a trade reaches the exchange.
- Supabase. Authentication, the database and backend services run on Supabase-hosted infrastructure, so your account record lives there.
- Analytics. Anonymised usage data may be shared with analytics services.
- Legal requests. We disclose information where a law, regulation, court order or government request requires it.
Security
Traffic is encrypted in transit with TLS, sensitive credentials are encrypted at rest, and access is controlled by role. Broker access tokens are never exposed to client-side code.
No transmission or storage method is completely secure. We work to protect your data but cannot guarantee it against every possible attack.
Cookies and local storage
We use cookies and browser storage for your authentication session and to remember preferences such as your appearance setting. These are required for the platform to work. We use no third-party advertising cookies.
Retention
Account data is kept while the account is active. Trading logs and activity history are kept for at least five years to meet financial record-keeping requirements. You can ask us to delete your account and its data, subject to those retention obligations.
Your rights
Depending on where you live, you may be able to:
- See the personal data we hold about you.
- Have inaccurate data corrected.
- Have your data deleted, within the retention limits above.
- Object to or restrict some processing.
- Withdraw consent where processing relies on it.
Age
PolyCognition is not for anyone under 18, and we do not knowingly collect data from minors. If you believe a minor has given us personal data, contact us and we will delete it.
Changes
We may update this policy. Changes appear on this page with a new date at the top. Continuing to use the platform after a change means accepting the revised policy.
Contact
Questions about this policy or our data practices go to privacy@polycognition.com.
