Legal
Privacy Policy
This policy describes our privacy practices in connection with TickerLayer.
Introduction
This Privacy Policy explains how TickerLayer (“we,” “us”) collects, uses, and shares information in connection with the TickerLayer websites, APIs, WebSocket services, dashboards, connectors, and related features (collectively, the “Services”).
Effective date: see the top of this page. Contact: [email protected].
Information we collect
Account and sign-in data: your email address, a password hash held by our authentication provider, and account identifiers. If you sign in with a third-party identity provider where we offer it, we receive the basic profile information that provider shares, such as your email address and name. We also hold metadata about your API keys, such as when they were created or regenerated; the key itself is stored in a form we cannot read back.
Billing data: when you buy a plan by card, our payment processor collects your card details directly; we do not receive or store full card numbers. We receive the transaction status, amount, currency, billing period, invoice records, and limited card metadata such as brand and last digits. When you pay by cryptocurrency, our cryptocurrency payment processor handles the transaction and we receive the payment status, amount, and transaction identifiers, which may include a wallet address.
Pay-per-call data: if you use pay-per-call access, we process the wallet address that paid, the amount, the transaction reference, and the resource requested. Blockchain transactions are recorded on a public network that we do not control and cannot alter.
Connector, agent, and MCP data: when you connect a third-party client, chat assistant, or AI agent to your account, we record the client identifier, the permissions you granted, the tokens issued, and the requests made through that connection, such as the endpoint or tool called, the symbol, and the time. We do not receive the content of your conversations with the assistant beyond the requests it sends to us.
Product interactions: search terms typed into the public symbol directory, symbol lists pasted into the coverage checker and which entries were not covered, symbol or market requests you submit, consultation and contact form submissions, and your cookie and theme preferences.
Attribution data: the campaign parameters or referring site that first brought you to our website, kept in a first-party cookie and associated with your account if you sign up.
Usage and technical data: request logs, timestamps, IP addresses, device and browser type, error diagnostics, and security signals needed to operate, secure, and improve the Services.
Support communications: information you send when you contact us by email, through a form, or through the support chat where it is available.
How we use information
To provide, maintain, and secure the Services; to authenticate users, connectors, and agents; to enforce plan allowances, rate limits, and entitlements.
To process payments, issue invoices and receipts, send renewal reminders, and keep the records that tax and accounting law require.
To detect, prevent, and respond to fraud, abuse, chargebacks, or security incidents.
To understand which markets and symbols people look for, so we can decide what coverage to add next, and to understand which channels bring users to the Services.
To communicate operational notices such as email verification, key creation, renewal reminders, and service changes, and, where permitted, onboarding guidance and product updates. You can opt out of non-operational emails at any time.
To comply with law and defend our legal interests.
Retention
We keep account data for as long as your account exists and for a limited period afterwards to meet legal, accounting, and security obligations. Billing and invoice records are kept for as long as tax and accounting law require. Request and tool-call logs are kept for a limited operational window unless we need them longer to investigate abuse or a security incident. Search terms and coverage-check lists are kept in aggregate for product planning.
Blockchain records of pay-per-call payments are permanent by the nature of public networks and are outside our control.
Your choices and rights
Depending on your location, you may have rights to access, correct, delete, port, or object to certain processing, or to lodge a complaint with a supervisory authority. To exercise rights, contact us at the email above. We may need to verify your request.
You can request deletion of your account from your account settings or by email. Deletion removes your account and keys; we retain only what law or open billing matters require.
You can revoke a connector or agent at any time by disconnecting it in the client or from your dashboard, regenerate an API key from your dashboard, change cookie choices from the Cookie settings link in the footer, and unsubscribe from non-operational emails using the link in the email.
International transfers
Our providers may process data in countries other than yours. Where we transfer personal data across borders, we implement appropriate safeguards as required by applicable law.
Children
The Services are not directed to children under 16 (or the age required in your jurisdiction), and we do not knowingly collect personal information from children.
Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version on this page and update the effective date.