Skip to main content

Privacy Policy

Effective date: April 29, 2026

Introduction

Welcome to DYOR.net (the "Site"), a financial analysis platform focusing on cryptocurrencies. We are committed to protecting your personal information and your right to privacy. If you have any questions or concerns about our policy, please contact us at privacy@dyor.net.

This Privacy Policy applies to all information collected through our website and/or any related services, sales, marketing or events (we refer to them collectively in this Privacy Policy as the "Services").

1. Data Controller

DYOR.net is the data controller responsible for your personal data. We are committed to complying with applicable data protection regulations, including the EU General Data Protection Regulation (GDPR).

Contact: privacy@dyor.net
Address: DYOR.net — 61 rue de Lyon, 75012 Paris, France

2. Information We Collect

We collect personal data that you voluntarily provide to us when registering on the Site, expressing an interest in obtaining information about us or our products and services, or otherwise contacting us.

  • Identity data: Email address, username, full name, postal address (when provided for billing).
  • Authentication data: Hashed password, Google OAuth ID, GitHub OAuth ID (when you sign in via OAuth).
  • Payment data: If you choose to subscribe to our premium features, we collect data necessary to process your payment. Payment instrument details are handled exclusively by the payment processor (Stripe). We do not store your credit card numbers.
  • Usage data: Preferences, watchlists, strategies, alerts, paper trading portfolios, observations, scores.
  • Communication data: Telegram chat IDs (when you connect Telegram), Firebase push tokens, support requests and messages.
  • AI interaction data: AI analysis history (coin, timeframe, content of generated analyses).

3. Legal Basis for Processing

We process your personal data on the following legal bases:

  • Consent: Marketing emails, push notifications, functional cookies. You can withdraw your consent at any time.
  • Performance of a contract: Account creation, subscription management, providing the service.
  • Legitimate interest: Security (session cookies, CSRF protection), service improvement, fraud prevention.
  • Legal obligation: Retention of billing data for tax and accounting purposes.

4. How We Use Your Information

We use the information we collect or receive for legitimate business purposes including:

  • To facilitate account creation and the logon process.
  • To send you marketing and promotional communications (only with your explicit consent, and you can opt-out at any time).
  • To send administrative information to you (service updates, security alerts, support messages).
  • To fulfill and manage your orders and subscriptions.
  • To deliver alerts and notifications you have configured.
  • To provide AI-powered analysis features.
  • To comply with legal and regulatory requirements.

5. Third-Party Processors

We only share information with your consent, to comply with laws, to provide you with services, to protect your rights, or to fulfill business obligations. We share data with the following third parties:

Provider Purpose
Google (OAuth)Authentication (OAuth login)
GitHub (OAuth)Authentication (OAuth login)
Firebase (FCM)Push notifications delivery
TelegramAlert and chat notifications
StripePayment processing
OpenAI / AnthropicAI-powered analysis
CoinMarketCap / CoinGeckoMarket data (prices, coin info)
Binance, Bybit, OKX, KuCoin, Kraken, Bitget, HTXMarket data (prices, klines, volumes)

6. Cookies and Tracking

We use cookies and similar technologies to ensure the proper functioning of our site. For detailed information about the cookies we use, please see our Cookie Policy.

We do not use third-party analytics or advertising trackers. Fonts are served locally to avoid data transfers to external providers.

7. Data Retention

We retain your personal information only for as long as necessary for the purposes set out in this Privacy Policy, unless a longer retention period is required or permitted by law.

  • Account data: Retained for the lifetime of your account.
  • Billing and purchase records: Retained for 10 years (legal obligation for tax and accounting).
  • AI analysis history: Retained for 6 months, then automatically deleted.
  • Email logs: Retained for 12 months, then automatically deleted.
  • Temporary data: Verification codes, password reset tokens, and email change requests are deleted within 48 hours.
  • Unverified accounts: Deleted after 30 days.

8. Your Rights (GDPR)

Under the General Data Protection Regulation, you have the following rights regarding your personal data:

  • Right of access (Art. 15): You can export all your data at any time from your Privacy & Data settings.
  • Right to rectification (Art. 16): You can update your personal information from your account settings.
  • Right to erasure (Art. 17): You can permanently delete your account and all associated data from your Privacy & Data settings. Billing records will be anonymized for legal retention.
  • Right to data portability (Art. 20): You can download your data in a machine-readable format (ZIP of JSON files).
  • Right to object (Art. 21): You can opt out of marketing communications at any time via the unsubscribe link in our emails or from your account settings.
  • Right to withdraw consent: Where processing is based on consent, you can withdraw it at any time without affecting the lawfulness of processing before withdrawal.