Privacy

Privacy policy

This page outlines how BotStrat handles privacy across the official website, the app, and the backend service flow.

Scope

This policy covers the public BotStrat website, the download pages, the mobile app, and the backend services operated under the official product flow.

Information we may collect

  • Basic access logs generated by hosting and security providers
  • Messages you voluntarily send through official support or contact channels
  • Download activity metadata needed to protect the site and deliver files
  • Account email, session, audit, and configuration metadata needed to operate the app and backend safely

How information is used

  • To keep the website available and secure
  • To investigate abuse, delivery failures, or security incidents
  • To respond to product or installation questions you initiate
  • To authenticate users, secure sessions, deliver alerts, and support account deletion or export workflows

Sensitive credentials

Exchange credentials belong inside the secured product flow. Sensitive fields should be encrypted at rest, masked by default in responses, and never echoed back in plain text after configuration.

BotStrat will not request exchange API credentials through public support channels.

If operational support is added later, credential handling must remain inside the secured product flow rather than public website chat, email, or social replies.