Privacy Policy

Effective Date: 27 May 2026
Last Updated: 27 May 2026

Below is our privacy policy, it outlines how we use your data but the bottom line is we will never sell or trade your data.

This Privacy Policy explains how Gainsy (“Gainsy”, “we”, “our”, or “us”) collects, uses, stores, and protects your personal information when you use:

(collectively, the “Services”).

By using the Services, you agree to the collection and use of information in accordance with this Privacy Policy.


Who We Are

Gainsy provides software tools that help users upload and manually enter trading transaction data in order to calculate capital gains and related tax information.

If you have any questions about this Privacy Policy or your personal data, you may contact us at:

Email: [email protected]


Information We Collect

We may collect and process the following categories of information.

- Account Information

When you create an account, we may collect:

  • Name

  • Email address

  • Login credentials and authentication identifiers

  • Account preferences and settings

Authentication is handled through Auth0.

- Trading and Financial Data

To provide our Services, users may upload or manually enter trading transaction information, including:

  • Asset names and symbols

  • Buy and sell transactions

  • Dates and times of trades

  • Quantities and prices

  • Fees and transaction costs

  • Capital gains and losses calculations

  • Tax-related calculation outputs

We do not provide financial advice, investment advice, or tax advice.

- Payment Information

Payments are processed securely through Stripe. We do not store full payment card details on our systems.

Stripe may collect:

  • Billing name and address

  • Payment method details

  • Transaction information

  • Subscription and invoice records

- Technical and Usage Information

We may automatically collect:

  • IP address

  • Browser type and version

  • Device information

  • Operating system

  • Log data

  • Usage analytics

  • Session information

  • Cookies and similar technologies

- Communications

If you contact us, we may collect:

  • Email correspondence

  • Support requests

  • Feedback and survey responses


How We Use Your Information

We use personal data for the following purposes:

  • To provide and maintain the Services

  • To calculate capital gains and related tax outputs

  • To authenticate users and secure accounts

  • To process payments and subscriptions

  • To communicate with users about accounts or support requests

  • To improve and develop the Services

  • To monitor usage and prevent fraud or abuse

  • To comply with legal obligations

  • To enforce our terms and policies


Legal Bases for Processing (UK GDPR)

Where UK data protection laws apply, we rely on the following legal bases:

Contractual Necessity

Processing is necessary to provide the Services you request.

Legitimate Interests

We process information for legitimate business interests, including:

  • Improving our platform

  • Securing our Services

  • Preventing fraud

  • Analysing usage and performance

Legal Obligations

We may process information to comply with applicable laws and regulations.

Consent

Where required, we rely on your consent for specific processing activities such as optional marketing communications.


Authentication and Third-Party Services

- Auth0

We use Auth0 to manage authentication, login security, and account access.

Auth0 may process authentication-related information such as:

  • Email address

  • Login activity

  • Device and IP information

  • Security and authentication metadata

Your use of authentication features may also be subject to Auth0’s privacy practices.

- Stripe

We use Stripe to process payments and manage subscriptions.

Stripe processes payment information directly and securely. We do not store complete payment card details.

Your payment information is subject to Stripe’s privacy practices and security procedures.

- Other Service Providers

We may use trusted third-party providers for:

  • Cloud hosting

  • Data storage

  • Analytics

  • Monitoring and error reporting

  • Email delivery

  • Customer support

These providers only receive information necessary to perform services on our behalf.


Data Sharing

We do not sell your personal data.

We may share information:

  • With service providers acting on our behalf

  • With payment and authentication providers

  • Where required by law or legal process

  • To protect our legal rights or prevent fraud

  • In connection with a merger, acquisition, or business transfer

  • With your consent or at your direction


Data Retention

We retain personal data only for as long as necessary to:

  • Provide the Services

  • Comply with legal obligations

  • Resolve disputes

  • Enforce agreements

  • Maintain legitimate business records

Retention periods may vary depending on the type of information and applicable legal requirements.


Security

We implement reasonable technical and organisational measures designed to protect personal information against:

  • Unauthorised access

  • Disclosure

  • Alteration

  • Loss

  • Misuse

However, no method of electronic transmission or storage is completely secure, and we cannot guarantee absolute security.


International Transfers

Your information may be processed or stored in countries outside the United Kingdom.

Where international transfers occur, we take appropriate safeguards to protect personal data in accordance with applicable data protection laws.


Your Rights

Depending on your location and applicable law, you may have the right to:

  • Access your personal data

  • Correct inaccurate information

  • Request deletion of your data

  • Restrict or object to processing

  • Request data portability

  • Withdraw consent where processing is based on consent

  • Lodge a complaint with a supervisory authority

To exercise your rights, contact us at [email protected].


Cookies and Tracking Technologies

We may use cookies and similar technologies to:

  • Keep users signed in

  • Improve functionality

  • Analyse traffic and usage

  • Remember preferences

  • Enhance security

You can manage cookie preferences through your browser settings.

If required by law, we will request consent before placing non-essential cookies.


Children’s Privacy

The Services are not directed to an individual under the age of 18.

We do not knowingly collect personal information from children.

If we become aware that personal information from a child has been collected unlawfully, we will take appropriate steps to delete it.


Changes to This Privacy Policy

We may update this Privacy Policy from time to time.

Any changes will be posted on this page with an updated “Last Updated” date.

Where required by law, we will notify users of material changes.


Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal information, contact:

Gainsy
Website: www.gainsy.co.uk
Application: app.gainsy.co.uk
Email: [email protected]


Disclaimer

Gainsy provides software tools for informational and calculation purposes only.

Nothing in the Services constitutes:

  • Financial advice

  • Investment advice

  • Tax advice

  • Legal advice

  • Accounting advice

Users are responsible for reviewing and verifying all calculations and obtaining professional advice where appropriate.