Security & Privacy

Your security is our top priority. Here's exactly how we protect your data.

Read-Only API Access

We only request read-only permissions. CryptoShield cannot trade, withdraw, or modify your exchange accounts in any way.

Encryption at Rest

All API keys and sensitive data are encrypted using AES-256 encryption. Keys are never stored in plaintext.

Secure Infrastructure

Hosted on enterprise-grade cloud infrastructure with SOC 2 compliance, DDoS protection, and 99.99% uptime SLA.

No Data Selling

We never sell, share, or monetize your trading data. Your portfolio information stays private.

Threat Model & Mitigations

API Key Compromise

Read-only keys cannot execute trades or withdrawals. Keys are encrypted and access-logged.

Data Breach

All sensitive data encrypted at rest. Database access requires MFA and is audit-logged.

Man-in-the-Middle

All connections use TLS 1.3. Certificate pinning on mobile apps.

Account Takeover

2FA required for all accounts. Session tokens expire after 24 hours.

Data Retention Policy

We only keep data as long as necessary. You can request deletion at any time.

Data TypeRetentionPurpose
Portfolio snapshots90 daysHistorical analysis and alerts
Alert history1 yearAudit trail and pattern recognition
API keys (encrypted)Until deletedAccount functionality
Usage analytics2 yearsProduct improvement

Delete My Data

You can request complete deletion of your account and all associated data at any time. Email privacy@cryptoshield.io or use the "Delete Account" option in Settings.

Legal Disclosures

Not Financial Advice

CryptoShield provides informational tools and risk indicators only. Nothing on this platform constitutes financial, investment, legal, or tax advice. Always do your own research and consult with qualified professionals before making financial decisions.

No Guarantee of Loss Prevention

While we strive to provide accurate and timely alerts, CryptoShield cannot guarantee prevention of financial losses. Risk indicators are probabilistic estimates based on available data. Market conditions can change rapidly, and our analysis may contain errors or experience delays.

Service Limitations

CryptoShield is not a custodian, broker, or trading platform. We do not hold, trade, or transfer any cryptocurrency on your behalf. We are not registered as a financial advisor, broker-dealer, or investment advisor in any jurisdiction.

Jurisdiction

CryptoShield services are provided from [Jurisdiction]. Users are responsible for ensuring their use of the platform complies with applicable local laws and regulations. Service may not be available in all jurisdictions.

Security Questions?

If you have security concerns or want to report a vulnerability, please contact us.