Pnl
Privacy Policy
Privacy Policy
Privacy Policy
Effective Date: October 27, 2025

Company: Breiterman LLC, License No. 2541409.01, Sharjah Media City (Shams Free Zone), United Arab Emirates
Contact: support@pnlapp.co

1. Scope and ApplicabilityThis Privacy Policy governs the collection use processing storage and disclosure of Personal Data by PnL App referred to as the Company we us or our in connection with the PnL App mobile application and any related services features or functionalities collectively the Service.

This Privacy Policy applies to all users visitors and individuals who access or use the Service regardless of geographic location.

By accessing or using the Service the user acknowledges that they have read understood and agreed to the terms of this Privacy Policy.

If the user does not agree with this Privacy Policy they must discontinue use of the Service immediately.

2. DefinitionsFor the purposes of this Privacy Policy the following definitions apply.
Personal Data means any information relating to an identified or identifiable natural person including but not limited to information that can directly or indirectly identify such person.

Processing means any operation or set of operations performed on Personal Data whether or not by automated means including collection recording organization structuring storage adaptation retrieval consultation use disclosure transmission dissemination alignment restriction erasure or destruction.

User means any individual who accesses or uses the Service including registered and unregistered users where applicable.

Controller means the entity that determines the purposes and means of the Processing of Personal Data.

Processor means any entity that processes Personal Data on behalf of the Controller.

Applicable Data Protection Laws means all laws and regulations relating to data protection privacy and information security that apply to the Processing of Personal Data including the General Data Protection Regulation GDPR where applicable.

3. Categories of Personal Data CollectedThe Company may collect and process the following categories of Personal Data.

3.1 Personal Data Provided Directly by UsersEmail address
Username or display name
Authentication credentials or access tokens
Profile information including optional profile image
Communications submitted through customer support
Responses to surveys questionnaires or feedback forms

3.2 Personal Data Generated Through Use of the ServiceTrading records including profit and loss data trade frequency and historical performance metrics
Journal entries notes reflections and emotional inputs voluntarily provided by the user.
Community interactions including posts comments reactions and other user generated content.
Service usage data including feature interactions timestamps and activity logs.

3.3 Technical and Device DataDevice identifiers and device type
Operating system app version and language settings.
Time zone information.
Crash reports performance metrics and diagnostic data.

4. Legal Basis for ProcessingThe Company processes Personal Data only where a valid legal basis exists in accordance with Applicable Data Protection Laws including GDPR where applicable.
The legal bases relied upon include the following.

Performance of a contract
Processing is necessary for the performance of a contract to which the user is a party including the provision operation and maintenance of the Service and related functionalities.

Consent
Processing is based on the user freely given specific informed and unambiguous consent including but not limited to optional profile information surveys feedback and non essential communications.
Users may withdraw consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.

Legitimate interests
Processing is necessary for the purposes of the legitimate interests pursued by the Company or a third party including service improvement analytics security fraud prevention and platform integrity.
Such processing is conducted only where these interests are not overridden by the fundamental rights and freedoms of the user.

Legal obligation
Processing is necessary for compliance with applicable legal or regulatory obligations including record keeping reporting and lawful requests by public authorities.

5. Purposes of ProcessingThe Company processes Personal Data for the following purposes.
  1. To create authenticate and manage user accounts
  2. To provide operate and maintain the core features of the Service
  3. To store analyze and display trading records performance metrics and statistical summaries
  4. To generate personalized insights behavioral analytics and self reflection tools
  5. To deliver discipline reminders mental wellness prompts and educational feedback
  6. To operate monitor and moderate community features and user generated content
  7. To communicate with users regarding service updates security notices and support requests
  8. To improve the Service including functionality usability reliability and performance
  9. To detect prevent and address technical issues fraud misuse or violations of terms
  10. To comply with applicable laws regulations and legal processes
The Service does not provide financial investment advice brokerage services or trading recommendations.
All outputs insights analytics and feedback are provided solely for informational educational and personal development purposes.

6. Automated Processing and ProfilingThe Service may use automated processing techniques including profiling as defined under Applicable Data Protection Laws.
Automated processing may include analysis of user activity behavior trading patterns and engagement data for the following purposes.
  • To generate personalized statistics summaries and insights
  • To tailor content reminders and mental wellness features to user behavior
  • To improve Service functionality and user experience
  • To support platform security and misuse detection
  • No automated processing carried out by the Service produces legal effects or similarly significant effects on users.
  • Users are not subject to decisions based solely on automated processing that materially affect their rights or obligations.
  • Where required by law users may request additional information regarding automated processing and may exercise their rights in accordance with this Privacy Policy.

7. Data RetentionThe Company retains Personal Data only for as long as necessary to fulfill the purposes for which it was collected as outlined in this Privacy Policy and as required by Applicable Data Protection Laws.

Retention periods are determined based on the following criteria.
The duration of the user relationship with the Service
The necessity of the data for providing the Service
Compliance with legal regulatory accounting or reporting obligations
The establishment exercise or defense of legal claims
User account related Personal Data is retained for the duration of the active account.
Upon account deletion request Personal Data will be deleted or irreversibly anonymized without undue delay unless continued retention is required by law.
Certain data may be retained for a limited period after account termination where required for:
  1. Compliance with legal obligations
  2. Resolution of disputes
  3. Enforcement of agreements
  4. Prevention of fraud or abuse
Retention practices are reviewed periodically to ensure compliance with applicable laws.
8. Data Sharing and DisclosureThe Company does not sell rent or trade Personal Data.
Personal Data may be shared or disclosed only in the following circumstances.
With service providers acting as data processors who perform services on behalf of the Company including cloud hosting data storage analytics customer support and payment processing
When required by applicable law regulation court order or governmental authority
To protect and defend the rights property or safety of the Company users or others
In connection with a merger acquisition restructuring or sale of assets subject to appropriate safeguards
With the explicit consent of the user
All service providers are contractually obligated to process Personal Data solely on documented instructions from the Company and to implement appropriate technical and organizational measures to protect such data.
Only the minimum amount of Personal Data necessary for the specific purpose is disclosed.

9. International Data TransfersPersonal Data may be transferred to processed and stored in countries other than the country in which the user resides.
Where such transfers occur the Company ensures that appropriate safeguards are implemented in accordance with Applicable Data Protection Laws including where required
Standard contractual clauses approved by relevant authorities
Equivalent legal mechanisms providing an adequate level of data protection
Users acknowledge that data protection laws in other jurisdictions may differ from those in their country of residence.
The Company takes reasonable steps to ensure that Personal Data remains protected in accordance with this Privacy Policy regardless of where it is processed.

10. User RightsSubject to Applicable Data Protection Laws users have the following rights with respect to their Personal Data.
The right to access Personal Data held about them
The right to request correction of inaccurate or incomplete Personal Data
The right to request deletion of Personal Data where legally permitted
The right to restrict or object to certain processing activities
The right to data portability where applicable
The right to withdraw consent at any time where processing is based on consent
The right to lodge a complaint with a competent data protection authority

Users may exercise their rights by submitting a request through the Service or by contacting the Company using the contact details provided in this Privacy Policy.
The Company may request verification of identity before processing such requests.
Requests will be handled within the timeframes required by Applicable Data Protection Laws.

11. Data SecurityThe Company implements appropriate technical and organizational measures designed to protect Personal Data against unauthorized access loss misuse alteration or disclosure.
Security measures include but are not limited to.
Encryption of data where appropriate
Secure servers and infrastructure
Access controls and authentication mechanisms
Limitation of internal access to Personal Data on a need to know basis
Regular monitoring testing and review of security practices
While the Company takes reasonable steps to protect Personal Data no method of transmission or storage is completely secure.
The Company cannot guarantee absolute security of Personal Data.

12. Children PrivacyThe Service is not intended for individuals under the age of 18.
The Company does not knowingly collect or process Personal Data from individuals under the age of 18.
If the Company becomes aware that Personal Data of a minor has been collected such data will be deleted without undue delay.
Parents or legal guardians who believe that a minor has provided Personal Data may contact the Company to request removal.

13. Changes to This Privacy PolicyThe Company may update this Privacy Policy from time to time to reflect changes in legal requirements regulatory guidance or Service practices.
When material changes are made the Company will provide notice through the Service or by other appropriate means.
Continued use of the Service after the effective date of an updated Privacy Policy constitutes acceptance of the revised policy.

14. Contact InformationFor questions requests or concerns regarding this Privacy Policy or the processing of Personal Data users may contact the Company at.
Email support@pnlapp.co
Service name PnL App
Made on
Tilda