App privacy
Privacy Policy — XBT - Smart Trading Suite
The app has no user accounts, shows no ads, and contains no analytics or tracking SDKs. Your trading records stay entirely on your device. The only information you can ever send us is the TradingView username you type in yourself if you subscribe to Pro Indicators — described in section 7.
1. What the app does
XBT - Smart Trading Suite unifies seven tools in one app: a home hub, Markets (session hours & alarms), an economic Calendar, News, a Risk calculator, a Trading Journal and a Trading Academy — plus an optional Pro Indicators subscription that unlocks access to invite-only TradingView scripts.
2. What we collect about you
Nothing, by default. The app has no login, no user profile, and no server that stores your data. We do not collect your name, email address, device identifiers, advertising ID, location or contacts. We do not build a profile of you and we do not sell or share personal data — because we never receive any.
The single exception is the optional Pro Indicators flow in section 7, where you deliberately type a TradingView username so that we can grant you access to the scripts you paid for.
3. Market data, calendar and news (network use)
To show market status, the economic calendar and news headlines, the app requests data
over HTTPS from a proxy service operated for the XBT ALGO apps
(https://forex-proxy.xbtalgo.workers.dev). The proxy holds the third-party
data-provider API key so that the key never ships inside the app, and the app never contacts
the data vendors directly.
These requests carry only what any web request carries (e.g. your IP address and a standard user agent, as seen by the proxy/CDN). They do not include your identity, your trades, your settings, or any content you enter. The proxy is used solely to fetch public market/news data and is not used to profile you.
Offline, Markets, Calendar and News fall back to the last data cached on your device; Risk, Journal and Academy work fully offline regardless.
4. Your trading journal is 100% local
Everything you enter in the Journal — trades, notes, tags, emotions, screenshots, statistics, rules, checklist and goals — is stored only on your device (a local SQLite database and the app's private storage). It is never uploaded, and there is no cloud backup.
Export (CSV / JSON) and import (MetaTrader CSV, crypto-exchange CSV, JSON backup) happen entirely on-device through the Android system file picker; files go only where you choose to send them. If you delete the app or use "Delete all journal data", that data is gone — we hold no copy.
5. News & event text; article reading
Economic-event names are localized by a built-in offline term dictionary shipped inside the app — no text is sent anywhere for this and nothing is downloaded.
News headlines can be translated by Google ML Kit's on-device translation when your app language is not English. The translation runs entirely on your phone; no headline text is sent to any translation service. Doing so requires a one-time language-model download (~30 MB) from Google's servers, which the app only performs after you enable the feature; that transfer contains no information about you.
Full article bodies are not translated by the app. Opening an article
opens an in-app browser tab (Chrome Custom Tab on Android / SFSafariViewController
on iOS) — or your default browser if you turn "Open articles in app" off — on the publisher's
own website, subject to that site's and your browser's own privacy terms.
6. Notifications
With your permission (POST_NOTIFICATIONS) the app can show local notifications: market open/close and session-overlap alarms, high-impact economic-event alerts, a daily morning briefing and breaking-news alerts. These are scheduled and generated on your device; no push service and no device tokens are used. To re-arm scheduled notifications after a reboot the app uses RECEIVE_BOOT_COMPLETED. Scheduling is inexact — no exact-alarm permission is requested.
7. Subscriptions and Pro Indicators — the one place data is sent
The app offers an optional Pro Indicators subscription, sold as an in-app purchase. Two things are worth being precise about:
7.1 Payment
Payment is processed entirely by Google Play (or the Apple App Store on iOS) under their own privacy policies. We never see or receive your card, bank or billing details. The app only receives an anonymous purchase token from the store.
7.2 TradingView access
The indicators are invite-only TradingView scripts, and TradingView provides no API to grant access automatically — so access is granted manually by us. To make that possible, after subscribing you type your TradingView username in the app. That username, together with the store's purchase token, the platform (android/ios) and the product id, is sent over HTTPS to our Cloudflare Worker, which:
- verifies with Google/Apple that the subscription is genuine and active (so that access can't be claimed without paying);
- stores a record — your TradingView username, platform, product id and timestamp — so we know whom to add on TradingView, and whether access is pending or granted;
- sends us an internal operator notification that a new access request arrived.
The TradingView username you provide is a user ID you choose to give us. We use it for one purpose only: adding and removing you on the invite-only scripts, and answering your support requests about that access. It is not used for marketing, is not sold or shared with anyone, and is deleted on request or when your access is revoked after the subscription ends. Do not enter a username you do not want us to see — never enter a password; we never ask for your TradingView password and could not use one.
If you never subscribe, none of this happens and nothing is ever sent. When the subscription products are not yet live in the store, the Pro Indicators section simply shows a "coming soon" state and collects nothing at all.
8. Permissions
- INTERNET — fetch market/news data via the proxy (and the Pro Indicators requests above).
- POST_NOTIFICATIONS — show the alerts described above (Android 13+).
- RECEIVE_BOOT_COMPLETED — restore scheduled notifications after the device restarts.
- com.android.vending.BILLING — required by Google Play for the in-app subscription.
The notification and background-work libraries add standard technical entries (VIBRATE, WAKE_LOCK, FOREGROUND_SERVICE, ACCESS_NETWORK_STATE) that control scheduling behaviour and give no access to your data. The app requests no location, no storage, no camera/contacts and no exact-alarm permission. File access is through the system file picker (SAF) only.
9. Ads and tracking
There are no ads and no third-party analytics or tracking SDKs in the app.
10. Children
The app is a general-audience finance tool and is not directed at children.
11. Not financial advice
Nothing in the app — including indicator output, sentiment or calculator results — is investment advice. See the risk disclaimer and the Terms of Use.
12. Changes
If this policy changes, the updated version will be published at this URL and dated at the top.
13. Contact
Questions about privacy, or a request to delete a TradingView username we hold: support@xbtalgo.com