Privacy Policy
Last updated: May 28, 2026
This Privacy Policy explains what data Axiom ("Axiom," "we," "us") collects, why we collect it, how we store it, and the choices you have. Axiom is a bring-your-own-key (BYOK) software tool — you connect your own brokerage and AI accounts, and you remain in control of them at all times. We never take custody of your funds and we never sell your data.
1. Who We Are
Axiom is an AI-assisted stock screener and automated trading software tool. It analyzes market data and, when you enable automation, places orders on a brokerage account that you own and connect via your own API keys. Axiom is operated by an independent solo developer. Contact for privacy requests: privacy@your-domain.com (replace with your support address before launch).
2. Data We Collect
We collect only what is needed to run the product. Specifically:
- Account & authentication data (via Clerk). When you sign up, our authentication provider Clerk processes your email address, name (if provided), authentication method, session tokens, and login metadata. Axiom reads your Clerk user ID and email to associate your settings and subscription with your account. We do not store your password — Clerk handles credentials directly.
- Payment data (via Stripe). Subscriptions are billed through Stripe. Stripe collects and processes your payment-card details, billing address, and transaction history. Axiom never sees or stores full card numbers; we receive only a Stripe customer/subscription ID and subscription status (active, canceled, tier) needed to unlock paid features.
- Brokerage & data-source API keys (BYOK). To trade or pull data on your behalf, you provide your own API keys (e.g., Alpaca Markets, and optionally Financial Modeling Prep, Polymarket, or others). These keys are encrypted at rest and are used only to make requests you authorize. See Section 4.
- Trading & usage data. We store the trading configuration you choose (strategy, confidence preset, risk controls), the signals generated for you, and a log of orders the tool placed or attempted on your connected account — so you can review history and so features like analytics and the position assistant work.
- Technical data. Standard server and hosting logs (IP address, browser/user-agent, timestamps, error traces) generated by our host, Vercel, for security, debugging, and abuse prevention.
3. How We Use Your Data
- To authenticate you and keep your account secure.
- To process subscription payments and provision the features of your tier.
- To generate AI analysis and, where you enable it, place the trades you authorize on your own account.
- To show you your history, analytics, and position explanations.
- To operate, debug, secure, and improve the service.
- To communicate with you about your account, billing, or material changes to the service.
We do not sell your personal data. We do not share it with advertisers or data brokers. We do not use your trading data to trade for our own account or to build products sold to third parties.
4. Your API Keys & Brokerage Access
Axiom operates on a BYOK model. The brokerage and data-source keys you provide are your credentials for your accounts. We:
- Encrypt your keys at rest using authenticated encryption (AES-256-GCM).
- Use them only to perform actions you have configured and authorized (fetching data, placing orders you enabled).
- Never transfer, lend, or take custody of your funds — orders execute inside your own brokerage account.
- Let you revoke access at any time by removing the keys in Settings or revoking them at the provider (e.g., Alpaca).
You are responsible for the security of the underlying brokerage account and for any permissions you grant the API keys (for example, whether a key allows live trading). We recommend using paper-trading or least-privilege keys until you are comfortable.
5. AI Processing (Anthropic)
AI analysis is performed by Anthropic's Claudemodels. To generate signals and position explanations, we send Anthropic the relevant market data, your conviction inputs, and (for the position assistant) a summary of your open positions and their stored theses. We do not send Anthropic your brokerage API keys, your payment details, or your password. Per Anthropic's API terms, API inputs and outputs are not used to train their models.
6. Cookies & Local Storage
Axiom uses cookies and browser local storage for essential functionality only:
- Authentication cookies set by Clerk to keep you signed in.
- Local storage for your interface preferences (theme, trading-mode selection, disclaimer/onboarding acceptance, selected broker).
We do not use third-party advertising or cross-site tracking cookies. Disabling essential cookies will prevent sign-in from working.
7. Sub-Processors & Hosting
We rely on a small set of vetted service providers to operate Axiom:
- Vercel — application hosting and serverless functions.
- Clerk — authentication and user management.
- Stripe — subscription billing and payment processing.
- Supabase — encrypted database for your settings, signals, and trade logs.
- Anthropic — AI model inference.
- Data providers you choose to connect (e.g., Alpaca, Financial Modeling Prep, Polymarket).
Each provider processes data under its own privacy terms and only for the purposes described here.
8. Data Retention
We retain your account data for as long as your account is active. Trade logs and signals are retained so you can review historical performance. When you delete your account, we delete or anonymize your personal data and encrypted API keys within 30 days, except where we must retain limited records to meet legal, tax, or fraud-prevention obligations (for example, Stripe billing records).
9. Your Rights
You can, at any time:
- Access and export the data associated with your account.
- Correct inaccurate account information.
- Delete your API keys from Settings, immediately revoking the tool's access to your brokerage.
- Delete your account, which removes your personal data and stored keys (see Section 8).
- Cancel your subscription (see the Terms of Service).
To exercise any of these rights, use the in-app controls or email privacy@your-domain.com. Depending on your jurisdiction (e.g., GDPR/UK GDPR, CCPA/CPRA), you may have additional rights, including the right to object to processing or lodge a complaint with a supervisory authority.
10. Children
Axiom is not directed to anyone under 18, and trading products require adult age and legal capacity. We do not knowingly collect data from minors.
11. Changes to This Policy
We may update this Privacy Policy as the product evolves. Material changes will be reflected by an updated "Last updated" date and, where appropriate, an in-app notice. Continued use after an update constitutes acceptance of the revised policy.