AllInvestView Trust Center

Private by design. Clear by default.

Your financial life deserves more than vague promises. This page explains what AllInvestView stores, what we never store, when service providers process data, and the controls that remain in your hands.

Protected account accessAccount passwords are stored using one-way hashing.
Read-only integrationsPortfolio retrieval, never money movement.
No data resaleYour holdings are not an advertising product.
Self-service deletion requestA documented 30-day recovery window.

Our approach

Managed privacy, without the server maintenance

AllInvestView is a managed cloud service, not a local-only or self-hosted application. We store the portfolio records needed to keep your experience synchronized across web, iOS, and Android and to calculate reports, alerts, and analytics.

The honest tradeoff

Convenience requires processing. Trust requires explaining it.

Your data is processed only to operate the product, provide features you choose, secure the service, and meet legal obligations. We use disclosed service providers for specific jobs. We do not pretend that a synchronized cloud product never receives your data.

Your choice: add holdings manually or by file, connect supported brokers, and use AI-assisted features only when they are useful to you.

Broker connections

A narrow path from your broker to your portfolio

For standard broker connections, authentication is handled in the broker's secure connection flow. AllInvestView receives the holdings, balances, account details, and transaction activity needed to build your portfolio. Broker integrations do not grant permission to trade or move money.

Your brokerAuthenticates you and controls the available permissions
Read-only connectionMaintains the encrypted link to your broker
AllInvestViewReceives read-only portfolio records for sync and analysis
Your devicesSee the same managed portfolio on web, iOS, and Android

Direct API connections: for supported direct connections, AllInvestView may store the read-only API token or query identifier required to sync. Those connection secrets are encrypted at the application layer. We do not store your broker password.

Data inventory

What we store, and what we never store

Specific nouns are more useful than a generic promise that data is “secure.” This is the practical boundary.

Stored by AllInvestView

Information needed to operate your account and the features you use.

  • Your username and account email address
  • Portfolios, holdings, transactions, balances, and asset settings
  • Reports, alerts, preferences, and saved portfolio snapshots
  • Saved AI conversations and context you choose to submit through AI-assisted features
  • Purchase and entitlement status, but not your full payment-card details

Never stored or granted

Credentials and capabilities that are not needed to track a portfolio.

  • Your brokerage password
  • Permission to execute a trade
  • Permission to withdraw or transfer money
  • Your full debit-card or credit-card details
  • An advertising profile built from your portfolio

Service providers

Who processes data, and why

We never sell your data. Limited data is shared with disclosed providers when it is necessary to deliver a feature, process a purchase, protect the service, or measure aggregate site usage.

Broker connection
Optional brokerage account connections and portfolio synchronization.
Authentication happens in the broker connection flow. AllInvestView does not receive the broker password.
Data assistant
Optional assistant and interpretation of files that need it.
Processed on our behalf and not used to train third-party models.
Payments
Stripe, Apple, Google, and RevenueCat process purchases and subscription entitlements.
AllInvestView does not receive full payment-card details.
Cloudflare
Content delivery, service protection, and cookieless aggregate web analytics.
Used to deliver and protect the service without building portfolio-based advertising profiles.
Sentry
Mobile crash reports and diagnostics used to find and fix defects.
Used for application stability, not advertising.
Mailchimp
Product email and mailing-list administration when an email address is associated with a web account.
Every message includes an unsubscribe path.
Campaign measurement
Server-side registration and conversion attribution for advertising campaigns.
May use pseudonymized account identifiers and request metadata, without third-party tracking scripts in the authenticated product.

AI privacy

AI runs only through features you choose

When you use the assistant, AllInvestView sends the conversation and the portfolio context needed to answer to its data-processing service. When an import needs assistance, relevant headers and transaction rows may be sent so the file can be understood. If you create a scheduled Smart Alert, it evaluates at the cadence you chose and may send relevant portfolio context to that service even when no conversation is open. If you do not use these features, portfolio data is not sent for this processing.

Not used to train third-party models
Assistant, AI-assisted import, and Smart Alerts are optional
Relevant context for the requested task is sent

Your controls

Your data should never become a trap

Control means being able to see what is connected, take useful records with you, and close the account without contacting a salesperson.

Disconnect brokers

Stop future synchronization at any time. Previously imported portfolio records remain so your history is not erased without a separate action.

How broker access works

Export records

Download holdings, transactions, and reports in standard formats from the relevant product areas. We are careful not to describe this as one complete account export yet.

View export help

Delete your account

Deactivate immediately, then schedule application-account and database portfolio records for deletion after a 30-day recovery period. Limited records may remain where required for legal, billing, security, or provider operations.

Read the deletion process

Ask a human

Questions about your data can go directly to support. Privacy questions are not routed through an advertising platform or community forum.

[email protected]

Security practices

Concrete boundaries, not “bank-level” slogans

How access is constrained

Customer traffic is served over HTTPS. Account passwords are one-way hashed. Broker login authentication remains within the secure connection flow, direct API connection secrets are encrypted at the application layer, and payment-card handling remains with payment providers.

  • Read-only brokerage permissions
  • Owner-scoped account access; portfolios become public only when you publish them
  • No third-party advertising trackers inside the authenticated product

What no security page can promise

No internet service can honestly guarantee zero risk. We use technical and organizational safeguards designed to protect personal data, limit provider access to defined purposes, and keep our disclosures aligned with how the product actually works.

  • Clear provider and data-purpose disclosures
  • Self-service account deletion with a documented timeline
  • Privacy questions handled at [email protected]

Common questions

Security and privacy FAQ

Can AllInvestView trade or withdraw money from my brokerage account?

No. Broker connections retrieve portfolio information. AllInvestView cannot place trades, withdraw money, or change settings at your broker.

Does AllInvestView store my brokerage password?

No. For standard broker connections, authentication is handled in the broker connection flow, and AllInvestView does not receive the broker password. For supported direct API connections, we may store the read-only API token required to sync, encrypted at the application layer.

Does AllInvestView use my portfolio to train AI models?

No. Portfolio data, conversations, and files processed for our optional assistant and import features are not used to train third-party models. Data is processed only through features you choose, including any scheduled Smart Alerts you create.

What happens when I disconnect a broker?

Disconnecting stops future synchronization. Previously imported portfolio records remain in your account so your history is not unexpectedly erased. You can remove those records separately.

Can I export or delete my data?

Yes. Holdings, transactions, and reports can be exported from their relevant product areas. A deletion request deactivates the account immediately and schedules the application account and database portfolio records for deletion after a 30-day recovery period. Limited records may remain where required for legal, billing, security, or provider operations; see the Privacy Policy for the general retention terms.

Is AllInvestView local-first or self-hosted?

No. AllInvestView is a managed cloud service. Portfolio data is stored so it stays synchronized across web, iOS, and Android and can support calculations, reports, alerts, and optional broker sync without requiring you to maintain a server.

Private portfolio tracking, without the maintenance

Start with manual entry or CSV. Connect a broker or use AI-assisted features only when you choose.