The marketing website
This website does not provide accounts, forms, advertising analytics, tracking cookies or behavioural profiling. Our hosting provider may process ordinary request information such as IP address, browser details and timestamps to deliver and protect the site.
The mobile application
Holdings, preferences and the latest valid spot-price snapshot are stored locally using SQLite-backed storage. Troy Ledger does not currently enable account identity, cloud portfolio upload, advertising analytics, monitoring or notifications.
Product analytics
The current mobile app build does not enable product analytics. Troy Ledger does not send holding identifiers, portfolio values, notes, storage locations, photographs or other holding content to analytics providers.
Spot-price requests
The app may contact a configured spot-price service to retrieve current prices. Portfolio records, notes, storage locations and photographs are not included in those price requests. The price service and network providers may still receive ordinary connection metadata.
Purchases and subscriptions
Troy Ledger uses RevenueCat to provide monthly, yearly and lifetime TroyLedger Pro access. RevenueCat and the App Store or Google Play may process an anonymous purchase identifier, product and transaction information, subscription status, entitlement status and ordinary technical request information needed to provide and restore purchases. Troy Ledger does not send holdings, portfolio values, notes, storage locations or photographs with purchase requests.
Device security
Troy Ledger offers a free optional App lock that asks the operating system to verify the device owner with Face ID, Touch ID, fingerprint or a device credential. Biometric templates remain with the operating system; Troy Ledger receives only whether authentication succeeded and stores only the local enabled setting. Protected content is covered when the app becomes inactive and requires authentication after launch or backgrounding.
Portfolio storage is not application-level encrypted. App lock is an access gate layered on device passcode protection and operating-system storage encryption, not a separate encryption layer. Someone who can authenticate as the device owner may be able to access the local portfolio.
Deleting data
Individual holdings can be deleted from their detail screen. The Settings & privacy screen also provides a confirmed action to delete all holdings from that device. Removing the application may remove its local data according to the platform's behaviour.
Contact
Questions about this privacy notice can be sent to hczdev1@gmail.com.
Draft for owner and legal review before production publication.