Privacy Policy

Last updated: February 10, 2026

1. Introduction

Stratium ("Company," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our automated copy trading platform ("Service"), including our website, Telegram bot, and web dashboard.

By using the Service, you consent to the data practices described in this policy. If you do not agree, please discontinue use of the Service immediately.

2. Information We Collect

2.1 Information You Provide

  • Telegram Account Data: Telegram user ID, username, first name, and last name (when authenticating via Telegram)
  • Email Address: When authenticating via email magic link or Google OAuth
  • Google Account Data: Name and email address (when authenticating via Google)
  • Solana Wallet Address: Public wallet address when authenticating via Solana wallet
  • Trading Preferences: Scaling factors, notification settings, and other configurations you set

2.2 Information Generated by the Service

  • Wallet Data: A non-custodial Solana wallet is generated for you upon registration. The private key is encrypted using AES-256 encryption before storage.
  • Trade Records: Details of all trades executed through the Service, including token addresses, amounts, timestamps, and transaction signatures
  • Portfolio Data: Token balances, P&L calculations, and performance metrics derived from on-chain data
  • Strategy Assignments: Which trading strategies are assigned to your account and their configurations

2.3 Automatically Collected Information

  • Usage Data: Pages visited, features used, and interaction patterns within the dashboard
  • Device Information: Browser type, operating system, and screen resolution
  • Log Data: IP addresses, access times, and referring URLs for security and debugging purposes

3. How We Use Your Information

We use the collected information for the following purposes:

  • Service Delivery: To operate, maintain, and provide the automated copy trading functionality
  • Authentication: To verify your identity and manage your account access
  • Trade Execution: To execute trades on your behalf based on strategy signals
  • Analytics and Reporting: To provide you with portfolio performance data, P&L analytics, and trade history
  • Notifications: To send trade alerts, deposit confirmations, and service updates via Telegram or the dashboard
  • Service Improvement: To analyze usage patterns and improve the platform's features and performance
  • Security: To detect and prevent fraud, abuse, and unauthorized access
  • Compliance: To comply with legal obligations and respond to lawful requests

4. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption at Rest: Private keys are encrypted using AES-256-GCM before storage. We never store unencrypted private keys.
  • Encryption in Transit: All communications between your device and our servers use TLS 1.2+ encryption
  • Access Controls: Strict role-based access controls limit who can access sensitive systems and data
  • Infrastructure Security: Our services are deployed on Railway with environment-level isolation, secure environment variables, and automated deployments
  • Session Security: Authentication sessions use cryptographically signed tokens with configurable expiration

While we strive to protect your data, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but commit to promptly addressing any security incidents.

5. Data Sharing and Disclosure

We do not sell, rent, or trade your personal information. We may share your data only in the following circumstances:

  • Blockchain Transactions: Trade transactions are broadcast to the Solana blockchain, which is a public, immutable ledger. Wallet addresses and transaction details are publicly visible on-chain.
  • Service Providers: We use third-party infrastructure providers (Railway, Redis, PostgreSQL hosting) that may process your data as part of service delivery. These providers are bound by their own privacy policies and security practices.
  • Legal Requirements: We may disclose your information if required by law, regulation, legal process, or governmental request.
  • Safety and Rights: We may share information to protect the safety, rights, or property of Stratium, our users, or the public.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction.

6. Data Retention

We retain your data for as long as your account is active or as needed to provide the Service. Specific retention periods:

  • Account Data: Retained while your account is active. Deleted within 30 days of account deletion.
  • Encrypted Private Keys: Permanently deleted immediately upon account deletion.
  • Trade History: Retained for 90 days after account deletion for compliance purposes, then permanently deleted.
  • Log Data: Retained for up to 90 days for security and debugging purposes.
  • Blockchain Data: On-chain transaction data is permanent and immutable; it cannot be deleted from the Solana blockchain.

7. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your personal data (subject to retention requirements)
  • Portability: Request your data in a structured, machine-readable format
  • Objection: Object to certain processing of your data
  • Restriction: Request restriction of processing in certain circumstances

To exercise any of these rights, please contact us via our Telegram bot or website. We will respond to your request within 30 days.

8. Cookies and Local Storage

The Service uses cookies and local storage for the following purposes:

  • Authentication: Session cookies to maintain your logged-in state
  • Preferences: Local storage to remember your dashboard settings and onboarding state
  • Security: CSRF tokens and other security-related cookies

We do not use third-party advertising or tracking cookies. You may disable cookies in your browser settings, but this may affect the functionality of the Service.

9. Children's Privacy

The Service is not intended for individuals under the age of 18 (or the age of majority in your jurisdiction). We do not knowingly collect personal information from minors. If we discover that we have collected data from a minor, we will promptly delete it.

10. International Data Transfers

Your data may be processed and stored in servers located outside your country of residence. By using the Service, you consent to the transfer of your data to these locations. We ensure that appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via Telegram or through the dashboard. The "Last updated" date at the top of this page indicates when the policy was last revised. Your continued use of the Service after changes constitutes acceptance of the updated policy.

12. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us:

  • Telegram: @stratiumsol_bot
  • Website: stratiumsol.com