// LEGAL
PRIVACY POLICY
Last updated: June 2026 · Compliant with Malaysia PDPA 2010
Your privacy matters to us. This policy explains what data we collect, how we use it, and your rights over it. We keep it simple and honest.
1. Who We Are
RagnarEdge is a web-based gold trading intelligence dashboard operated by an individual trader based in Malaysia, accessible at ragnaredge.com.
For privacy matters, contact us at: hello@ragnaredge.com
2. Data We Collect
When you register:
- Name
- Email address
- Password (stored as encrypted hash — we never see your actual password)
- Registration date and subscription plan
When you subscribe (via Stripe):
- Stripe customer ID (reference only — card details handled by Stripe)
- Subscription status and billing dates
- Payment history (processed entirely by Stripe)
Automatically collected:
- Login timestamps
- Basic usage data (for service maintenance)
We do NOT collect: card numbers, bank details, government ID, trading account details, or any sensitive financial information. Payment data is handled entirely by Stripe.
3. How We Use Your Data
- To create and manage your account
- To process subscription payments via Stripe
- To send transactional emails (welcome, password reset, subscription reminders)
- To provide and improve the RagnarEdge service
- To respond to your support requests
We do not use your data for advertising, sell it to third parties, or share it with anyone except as described in this policy.
4. Third Party Services
We use the following trusted third-party services:
- Stripe — Payment processing. Stripe handles all card data under their own PCI-DSS compliant privacy policy. stripe.com/privacy
- Google (Gmail) — Email delivery for transactional emails via SMTP
- Namecheap — Domain and email forwarding
- Anthropic Claude API — AI analysis feature (Elite plan). Dashboard data is sent to Anthropic's API to generate AI suggestions. No personal user data is included in AI requests.
5. Data Storage & Security
- User data is stored on a VPS server located in Malaysia
- Passwords are hashed using bcrypt — never stored in plain text
- All connections are encrypted via HTTPS (SSL/TLS)
- Authentication uses JWT (JSON Web Tokens) with expiry
- We do not store payment card information — this is handled by Stripe
6. Data Retention
- Active accounts — data retained while account exists
- Cancelled accounts — data retained for 12 months then deleted
- You may request immediate deletion at any time (see Section 8)
7. Cookies
RagnarEdge uses minimal browser storage:
- JWT token — stored in localStorage for authentication session
- Theme preference — stored in localStorage for your dashboard theme
We do not use advertising cookies, tracking pixels, or analytics cookies.
8. Your Rights (PDPA 2010)
Under Malaysia's Personal Data Protection Act 2010, you have the right to:
- Access — request a copy of your personal data
- Correction — request correction of inaccurate data
- Deletion — request deletion of your account and data
- Withdrawal — withdraw consent for data processing
To exercise any of these rights, email us at hello@ragnaredge.com. We will respond within 14 days.
9. Children's Privacy
RagnarEdge is not intended for users under 18 years of age. We do not knowingly collect data from minors. If you believe a minor has registered, please contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email. Continued use of RagnarEdge after changes constitutes acceptance of the updated policy.
11. Contact
For any privacy concerns or data requests:
Email: hello@ragnaredge.com
We typically respond within 2 business days.