Last updated: 30 April 2026
Open Folio Pro ("we", "us", "our") is an Australian investment portfolio tracking service. This Privacy Policy explains how we collect, use, and protect your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
Email address, collected when you sign up via Supabase Auth.
Trade records, dividend payments, crypto holdings, superannuation balances and contributions that you manually enter or import via CSV. This data is entered voluntarily by you.
If you connect a broker or exchange via API key, we store your API key and API secret in our database. These are protected by row-level security so only you can access them. They are not end-to-end encrypted at rest.
Standard server logs (IP address, browser type, pages visited) collected automatically by our hosting provider (Vercel). This data is used solely for security and performance monitoring.
We do not sell your personal information or financial data to third parties. We do not use your financial data for advertising.
Your data is stored in Supabase's Australian (Sydney) data centre. We use row-level security (RLS) to ensure each user can only access their own data. Access to the production database is restricted to authorised personnel only.
Despite these measures, no system is completely secure. You are responsible for keeping your account credentials and API keys confidential. If you suspect unauthorised access, contact us immediately and revoke any connected API keys at the source exchange.
We retain your data for as long as your account is active. If you delete your account, all associated personal data and financial records are permanently deleted from our systems within 30 days. Stripe may retain billing records as required by law.
Under the Privacy Act 1988 you have the right to:
To exercise any of these rights, email us at privacy@openfoliopro.com.
We use only functional cookies necessary to maintain your login session. We do not use tracking cookies, advertising cookies, or analytics cookies beyond Vercel's standard server-side logging.
The Service is not directed at children under 18. We do not knowingly collect personal information from anyone under 18.
We may update this policy from time to time. Material changes will be notified by email. Continued use of the Service after changes are posted constitutes acceptance.
Privacy enquiries: privacy@openfoliopro.com