Privacy Policy
Information about how OQ Market Analytics collects, uses, shares, retains, and protects personal information.
OQ MARKET ANALYTICS LLC, a Texas limited liability company ("OQ Market Analytics," "Company," "we," "us," or "our"), respects your privacy.
This Privacy Policy explains how we collect, use, disclose, retain, and protect personal information when you access or use our websites, subscription services, dashboards, account features, billing services, support channels, emails, alerts, and related services, including services available through:
https://obsessedquant.com https://alerts.obsessedquant.com collectively, the "Service."
By using the Service, you acknowledge the practices described in this Privacy Policy.
This Privacy Policy does not apply to third-party websites or services that are governed by their own privacy policies.
1. Information We Collect
We may collect the following categories of information.
A. Account and identity information
When you create an account or sign in, we may collect:
- Name, if provided
- Email address
- Auth0 user identifier
- Authentication provider or connection type
- Email-verification status
- Account creation date
- Login dates and activity
- Account status
- Authentication and security records
We use Auth0 to provide authentication and identity-management services.
We do not ask you to provide Social Security numbers, government identification numbers, brokerage credentials, or complete payment-card information through your Auth0 profile.
B. Subscription and billing information
When you purchase or manage a subscription, we may collect or receive:
- Stripe customer identifier
- Stripe subscription identifier
- Stripe Checkout Session identifier
- Selected subscription plan
- Subscription status
- Billing period
- Renewal date
- Current subscription period end
- Cancellation status
- Scheduled cancellation date
- Promotion or coupon information
- Invoice and transaction identifiers
- Payment status
- Limited payment-method information, such as card brand and last four digits, when made available by Stripe
- Billing country, postal code, or address, when collected during checkout
- Records of refunds, disputes, failed payments, and billing-support requests
Payments are processed by Stripe.
We do not ordinarily receive or store your full credit-card number, card security code, or complete bank-account credentials. Stripe processes that information under its own terms and privacy practices.
C. Service and dashboard usage information
When you use the Service, we may collect:
- Pages and dashboards viewed
- Date and time of access
- Requested URL
- Subscription-access decisions
- Authentication outcomes
- Session and request identifiers
- Browser type
- Device type
- Operating system
- Approximate geographic information derived from an IP address
- IP address
- Referral source
- Error messages
- Performance information
- API request and response status
- Dashboard access and freshness results
- Diagnostic and security logs
We may use Azure Application Insights, Azure Front Door logs, Azure Functions logs, Auth0 logs, or similar services to collect operational information.
D. Support communications
When you contact us, we may collect:
- Name
- Email address
- Account identifiers
- Subscription information
- Message contents
- Screenshots or files you provide
- Dates and times of communications
- Support history
- Information needed to investigate account, access, billing, or technical issues
Please do not send us passwords, authentication tokens, full card numbers, Stripe secret keys, Auth0 secrets, brokerage credentials, or other highly sensitive information.
E. Email and notification information
When you receive transactional emails, alerts, or other notifications, we may collect:
- Email address
- Notification destination
- Delivery status
- Bounce or failure status
- Unsubscribe status
- Message type
- Delivery timestamp
- Limited engagement information, when enabled by the applicable provider
We may use SendGrid or another communications provider to deliver account, billing, security, support, or service-related messages.
If Pushover or another push-notification service is offered, information necessary to deliver those notifications may be processed by that provider.
F. Information collected through cookies and similar technologies
We may use cookies, local storage, session storage, authentication tokens, and similar technologies to:
- Keep you signed in
- Maintain session state
- Protect account security
- Remember preferences
- Support Auth0 login flows
- Prevent fraud
- Diagnose errors
- Measure Service performance
We may use strictly necessary cookies without separate consent where permitted by law.
If we later add nonessential analytics, advertising, retargeting, or behavioral-tracking technologies, we may update this Privacy Policy and provide additional controls where required.
G. Information from third parties
We may receive information from:
- Auth0
- Stripe
- Azure
- Databricks
- SendGrid
- Pushover
- Cloud-hosting and security providers
- Payment networks
- Fraud-prevention providers
- Professional advisers
- Public authorities, when legally required
We may combine third-party information with information already associated with your account.
2. How We Use Information
We may use personal information to:
- Create and manage customer accounts
- Authenticate users
- Verify email addresses
- Process subscriptions and payments
- Determine whether a customer has valid dashboard access
- Prevent duplicate subscriptions
- Provide subscription and cancellation functionality
- Provide access to paid dashboards
- Generate billing-portal sessions
- Process Stripe webhook events
- Reconcile Stripe subscription records with Azure subscription records
- Maintain account and subscription audit records
- Deliver service-related communications
- Respond to support requests
- Diagnose technical problems
- Monitor dashboard freshness and availability
- Detect fraud, abuse, scraping, account sharing, or unauthorized access
- Protect our systems, customers, and business
- Maintain logs and backups
- Improve the Service
- Enforce our Terms of Service
- Comply with legal and regulatory obligations
- Establish, exercise, or defend legal claims
- Complete a merger, financing, acquisition, restructuring, or sale of business assets
We do not use account or billing information to provide personalized investment advice.
3. Legal and Business Bases for Processing
Depending on the circumstances and applicable law, we process information because:
- It is necessary to provide the Service you requested
- It is necessary to perform a contract with you
- You have given consent
- We have a legitimate business interest
- Processing is necessary to comply with law
- Processing is necessary to protect customers, systems, or legal rights
Where we rely on consent, you may withdraw that consent, subject to legal and contractual limitations.
5. Sale of Personal Information and Targeted Advertising
We do not currently sell personal information for monetary consideration.
We do not currently use personal information for cross-context behavioral advertising or targeted advertising.
We do not knowingly sell sensitive personal information.
If our practices change, we will update this Privacy Policy and provide any legally required notices and opt-out mechanisms.
6. Stripe and Payment Information
Stripe independently collects and processes payment information when you interact with Stripe Checkout or the Stripe Billing Portal.
Stripe may process:
- Payment-card information
- Bank information
- Billing address
- Email address
- Device information
- IP address
- Fraud-prevention signals
- Transaction history
OQ Market Analytics generally receives only the information necessary to administer your subscription, such as customer, subscription, transaction, invoice, payment-status, and limited payment-method information.
Your use of Stripe is also subject to Stripe's own privacy policy and terms.
7. Auth0 and Authentication Information
Auth0 processes information needed to authenticate users and maintain account profiles.
The particular information stored in an Auth0 profile depends on the login method, connection type, and information supplied during authentication. Auth0 advises customers not to use Auth0 metadata to store sensitive information such as Social Security numbers or credit-card numbers. [1]
We may use your Auth0 user_id as the primary identifier connecting your account to your subscription record.
Deleting your subscription does not necessarily delete your Auth0 identity account, and deleting your Auth0 account does not automatically resolve unpaid invoices, disputes, tax records, or other information we must retain.
8. Azure Subscription Records
We maintain an operational subscription record for each authenticated customer.
That record may include:
- Auth0 user identifier
- Email address
- Stripe customer identifier
- Stripe subscription identifier
- Price identifier
- Selected plan
- Subscription status
- Access status
- Renewal or period-end date
- Cancellation information
- Stripe environment indicator
- Webhook-processing information
- Reconciliation timestamps
- Audit identifiers
- Record-update timestamps
Stripe is generally treated as the authoritative source for subscription and billing status. Azure stores an operational copy used to make access decisions and support customers.
9. Webhook, Reconciliation, and Support Records
We may retain technical records of Stripe webhook deliveries and subscription reconciliation runs.
These records may include:
- Stripe event identifier
- Event type
- Processing result
- Delivery count
- Customer and subscription identifiers
- Auth0 identifier
- Error information
- Reconciliation differences
- Repair status
- Processing timestamps
- Support-action history
We use these records to prevent duplicate processing, investigate errors, maintain subscription accuracy, and support customers.
10. Data Retention
We retain personal information only as long as reasonably necessary for the purposes described in this Privacy Policy.
Retention periods may depend on:
- Whether your account remains active
- Whether you have an active subscription
- Tax and accounting obligations
- Payment-card and transaction-dispute periods
- Fraud-prevention requirements
- Security and audit needs
- Contractual requirements
- Backup schedules
- Applicable statutes of limitation
- Legal holds
- Regulatory requirements
Examples of records we may retain after account closure include:
- Transaction and invoice records
- Refund and dispute records
- Consent records
- Subscription history
- Security logs
- Fraud-prevention records
- Legal communications
- Records required for tax or accounting purposes
When information is no longer reasonably necessary, we may delete, anonymize, aggregate, or securely archive it.
Information in backups may remain for a limited period until the backup is overwritten or deleted according to normal retention schedules.
11. Security
We use reasonable administrative, technical, and organizational measures intended to protect personal information.
Measures may include:
- Encrypted HTTPS connections
- Auth0 authentication
- Signed access tokens
- Restricted cloud-storage access
- Environment separation between Stripe test and live modes
- Secret management
- Role-based access
- Logging and monitoring
- Webhook-signature verification
- Subscription reconciliation
- Access-control checks
- Dashboard-freshness checks
- Limited retention of payment information
- Private Blob Storage for subscriber-only dashboards
No system is completely secure. We cannot guarantee that information will never be accessed, disclosed, altered, lost, or destroyed.
The FTC emphasizes that businesses should make accurate privacy promises and follow the representations made in their privacy policies. [2]
12. Your Privacy Choices and Rights
Depending on where you live and applicable law, you may have the right to:
- Confirm whether we process your personal information
- Request access to your personal information
- Request correction of inaccurate information
- Request deletion of personal information
- Request a portable copy of certain information
- Opt out of the sale of personal information
- Opt out of targeted advertising
- Opt out of certain profiling
- Withdraw consent
- Appeal a decision concerning a privacy request
- Receive equal service without unlawful discrimination for exercising privacy rights
The Texas Data Privacy and Security Act provides eligible Texas residents rights that can include access, correction, deletion, portability, and opt-outs from certain sales, targeted advertising, and qualifying profiling. Small businesses are generally exempt from much of the Act, although restrictions involving the sale of sensitive data can still apply. [3]
We may voluntarily honor reasonable access, correction, deletion, and portability requests even when a particular law does not require us to do so.
13. How to Submit a Privacy Request
You may submit a privacy request using:
Email: obsessedquant@gmail.com Subject: Privacy Request Please provide enough information for us to identify your account, such as:
- Your name
- The email used to sign in
- The nature of your request
- The state or country where you reside
Do not send your password, complete card number, or authentication token.
We may need to verify your identity before completing a request.
Verification may include:
- Confirming control of the account email
- Asking you to sign in
- Comparing information associated with your account
- Requesting limited additional information
We may deny or limit a request where permitted by law, including when:
- We cannot verify your identity
- The request would compromise another person's privacy
- Retention is legally required
- Information is needed for fraud prevention
- Information is needed to resolve a dispute
- The request is excessive, repetitive, or manifestly unfounded
- An applicable legal exception applies
14. Appeals
When applicable law grants a right to appeal, you may appeal our decision by emailing:
obsessedquant@gmail.com Subject: Privacy Request Appeal Please identify the earlier request and explain why you believe the decision should be reconsidered.
15. Account Deletion
You may request deletion of your account by contacting us.
Account deletion may result in:
- Loss of dashboard access
- Inability to view billing history through the Service
- Removal of your Auth0 user account
- Removal or anonymization of associated operational records
- Termination of certain preferences
Deleting an account does not necessarily cancel an active Stripe subscription. You should separately cancel the subscription through the Billing Portal or another cancellation method we provide.
Likewise, canceling a subscription does not automatically delete your account or historical transaction records.
We may retain information when necessary for tax, accounting, fraud prevention, disputes, legal compliance, security, or enforcement.
16. Communications
We may send transactional communications necessary to operate the Service, including:
- Authentication messages
- Email-verification messages
- Password-reset messages
- Payment receipts
- Failed-payment notices
- Subscription notices
- Cancellation confirmations
- Security alerts
- Support responses
- Material Service notices
You generally cannot opt out of transactional communications while maintaining an active account where those communications are necessary to provide the Service.
You may opt out of marketing emails by using the unsubscribe mechanism included in the message or contacting us.
18. International Processing
Our Service providers may process information in the United States or other countries.
Data-protection laws in those countries may differ from those in your location.
By using the Service, you understand that information may be transferred to and processed in locations where we or our service providers operate, subject to applicable law and contractual protections.
19. Children's Privacy
The Service is intended for adults who are at least 18 years old.
We do not knowingly collect personal information from children under 13.
If we learn that we have collected personal information from a child under 13 without legally valid authorization, we will take reasonable steps to delete it.
The FTC's COPPA guidance recommends that online services carefully review what information they collect from children, why they collect it, how long it is retained, and whether appropriate parental notice and consent mechanisms exist. [4]
Parents or guardians who believe a child has provided personal information may contact:
obsessedquant@gmail.com 20. Third-Party Links
The Service may contain links to third-party sites, services, market-data providers, payment pages, documentation, or resources.
We do not control those third parties and are not responsible for their privacy, security, content, or practices.
Review the privacy policy of each third party before providing information.
21. Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
When we update it, we will revise:
- The "Last Updated" date
- The policy version
- The effective date, when applicable
For material changes, we may provide additional notice through:
- The Service
- An account message
- A website banner
- Another reasonable method
Your continued use of the Service after the effective date of a revised policy constitutes acknowledgment of the updated policy to the extent permitted by law.
22. Contact Information
OQ MARKET ANALYTICS LLC
Website:
https://obsessedquant.com https://alerts.obsessedquant.com Privacy Email:
obsessedquant@gmail.com Support Email:
obsessedquant@gmail.com Mailing Address:
8106 Whisper Point Dr. Houston, TX 77040
REFERENCES
[1] Auth0 Data Processing - Auth0 Docs https://auth0.com/docs/secure/data-privacy-and-compliance/data-processing
[2] Privacy and Security - Federal Trade Commission https://www.ftc.gov/business-guidance/privacy-security
[3] Texas Data Privacy and Security Act - Office of the Attorney General https://www.texasattorneygeneral.gov/consumer-protection/file-consumer-complaint/consumer-privacy-rights/texas-data-privacy-and-security-act
[4] Complying with COPPA: Frequently Asked Questions - Federal Trade Commission https://www.ftc.gov/business-guidance/resources/complying-coppa-frequently-asked-questions