Privacy Policy

Last updated: December 22, 2025

1. Introduction

Propfit ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our prop trading payout verification service.

Our service helps traders verify their payouts from proprietary trading firms by securely connecting to their bank accounts through Plaid, a trusted financial technology provider.

2. Information We Collect

2.1 Account Information

  • Email address
  • Encrypted password (we never store plaintext passwords)
  • Account preferences and settings

2.2 Financial Data via Plaid

When you connect your bank account through Plaid, we receive:

  • Transaction history (date, amount, merchant/counterparty name, description)
  • Account identifiers and balances
  • Institution name and account type

Important: We do not receive or store your bank login credentials. Plaid handles all authentication directly with your financial institution using bank-level encryption.

2.3 Verification Data

  • Detected payout transactions from prop trading firms
  • Verification snapshots and cryptographic signatures
  • Badges earned based on payout history

3. How We Use Your Information

  • Payout Verification: We analyze your transaction data to identify and verify payouts from known prop trading firms (FTMO, Topstep, Apex, etc.).
  • Credential Generation: We create cryptographically signed verification snapshots that prove your payout history.
  • Badge Awards: We calculate and award badges based on your verified payout activity.
  • Account Management: We use your email to communicate important account information and, if you opt in, send newsletters.
  • Service Improvement: We may use aggregated, anonymized data to improve our detection algorithms and service quality.

4. Plaid Integration

We use Plaid Inc. to connect to your financial institutions. When you link your bank account:

  • You authenticate directly with your bank through Plaid's secure interface
  • Plaid retrieves your transaction data and shares it with us according to your consent
  • Your bank credentials are encrypted and stored only by Plaid, never by Propfit

For more information about Plaid's privacy practices, please visit Plaid's Privacy Policy.

5. Data Sharing and Disclosure

We do not sell your personal information. We may share data in the following circumstances:

  • Public Verification Pages: If you create a shareable verification snapshot, the information you choose to make public (according to your privacy settings) will be viewable by anyone with the link.
  • Service Providers: We share data with Plaid to provide the bank connection service.
  • Legal Requirements: We may disclose information if required by law or to protect our rights and safety.

6. Data Security

We implement robust security measures to protect your data:

  • Passwords are hashed using Argon2id, the industry-leading algorithm
  • Plaid access tokens are encrypted using AES-128 encryption
  • All data transmission uses TLS/HTTPS encryption
  • Verification snapshots are cryptographically signed using Ed25519
  • We implement rate limiting and account lockout protections

7. Your Privacy Controls

You have control over your data and how it's shared:

  • Display Name: Choose to display a custom name or remain anonymous on public pages
  • Amount Visibility: Choose whether to show exact payout amounts or ranges
  • Firm Names: Choose whether to display prop firm names publicly
  • Date Granularity: Show exact dates or just months
  • Revocation: Revoke any verification snapshot at any time
  • Account Deletion: Request complete deletion of your account and data

8. Data Retention

We retain your data for as long as your account is active. Transaction data is synced periodically and retained to maintain your verification history. You may request deletion of your account and associated data at any time by contacting us.

9. Children's Privacy

Our service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by email or through a notice on our website.

11. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us at privacy@propfit.io.