Skip to content

Політика конфіденційності

Оновлено: квітень 2026

Що ми збираємо

When you use SboxFolio, we collect the following information:

  • Steam ID — automatically provided during Steam OpenID authentication
  • Email address — only collected when signing in via Google OAuth or Discord OAuth
  • Display name and avatar URL — provided by your OAuth provider
  • Portfolio data — items you add, quantities, buy prices, buy dates, and personal notes
  • Language preference — your selected language for the interface

Чого ми не збираємо

We explicitly do NOT collect:

  • Passwords — we never store your password. Authentication is handled via OAuth providers.
  • Payment information — we do not process or store payment data of any kind
  • Steam credentials — we only receive your Steam ID during authentication
  • Browsing history or personal documents — we do not track your browsing behavior
  • Tracking or analytics data — we do not use analytics services

Як використовуються дані

We use your data solely for:

  • Portfolio tracking and display in your account
  • Price calculations and P&L analysis
  • Optional public portfolio sharing (only if you enable this feature)

We do not sell, trade, or share your data with third parties. We do not use your data for advertising or marketing purposes.

Файли cookie

SboxFolio uses only a single session cookie for authentication, provided by Auth.js. This cookie contains an encrypted JWT token that maintains your login session. We do not use tracking cookies, analytics cookies, or any other cookies for data collection. You can disable cookies in your browser, but this will prevent you from staying signed in.

Послуги третіх сторін

SboxFolio relies on the following third-party services:

  • Neon — PostgreSQL database hosting (encrypted at rest)
  • Vercel — web hosting and CDN
  • Steam API — market prices and authentication
  • Google OAuth & Discord OAuth — user authentication

Each service has its own privacy policy. We recommend reviewing them to understand how they handle your data.

Збереження даних

We retain your data as long as your account exists. If you delete your account, all associated data will be permanently removed from our systems within 30 days. This includes portfolio data, preferences, and all personally identifiable information.

Видалення даних

You can request the complete deletion of your account and all associated data at any time. To do so, contact us on Telegram: @ProstoXleb. We will process your request within 30 days and confirm deletion once complete.

Безпека

We take security seriously:

  • HTTPS everywhere — all connections are encrypted in transit
  • Encrypted JWT sessions — session tokens are signed and encrypted
  • No plaintext passwords — we never store passwords. Authentication is delegated to OAuth providers
  • Database encryption — data stored in Neon PostgreSQL is encrypted at rest

Зміни

We may update this Privacy Policy at any time. Changes will be posted on this page with an updated "Last updated" date. Continued use of SboxFolio following any changes constitutes your acceptance of the new policy.

Контакт

If you have questions about this Privacy Policy or your data, please contact us on Telegram: @ProstoXleb