Privacy Policy for ChartReader AI
Effective date: 29.5.2026
This Privacy Policy explains how GunzX GmbH (“GunzX”, “we”, “us”, or “our”) collects, uses, stores, shares, and protects personal data when you use the ChartReader AI mobile application, website, and related services.
ChartReader AI is an AI-powered market analysis and educational research tool. The app allows users to upload or capture stock and crypto chart images, receive AI-generated chart analysis, view market insights, analyze news and sentiment, explore publicly available disclosure data, and interact with AI-powered educational trading tools.
We take your privacy seriously and process personal data only in accordance with applicable data protection laws, including the General Data Protection Regulation (“GDPR”), where applicable.
1. Data Controller
The data controller responsible for the processing of personal data is:
GunzX GmbH
Fenzlgasse 1/14
1150 Vienna
Email: [contact@gunzx.com]
For questions about this Privacy Policy or the processing of your personal data, you may contact us at the email address above.
2. Personal Data We Collect
We collect and process personal data only where necessary to operate, improve, secure, and provide ChartReader AI.
Depending on how you use the app, we may process the following categories of data:
2.1 Data You Provide Directly
This may include:
- Email address or contact details when you contact support
- Account-related information, if account functionality is available
- Messages, feedback, or support requests you send to us
- Information you voluntarily provide when using AI chat or personalization features
2.2 Chart Images and Uploaded Content
ChartReader AI allows you to upload screenshots or take photos of stock, crypto, or other financial charts for AI-powered analysis.
The uploaded images may include:
- Chart screenshots
- Photos of charts
- Visible ticker symbols, prices, indicators, annotations, or trading platform interface elements
- Any additional content that appears in the uploaded image
You should only upload chart-related images. Please avoid uploading images that contain personal information, private documents, faces, identification documents, account balances, portfolio details, or other sensitive information.
If you accidentally upload content that contains personal data, that content may be processed as part of the analysis.
2.3 Technical and Device Data
When you use ChartReader AI, certain technical data may be collected automatically, such as:
- Device type and model
- Operating system and app version
- Language and region settings
- IP address or approximate location derived from technical data
- App performance data
- Crash logs and diagnostic information
- Usage events, such as feature interactions, screen views, and subscription status
Where possible, this data is processed in aggregated, anonymized, or pseudonymized form.
2.4 Subscription and Payment Data
If you purchase a subscription or in-app purchase, payment processing is handled by Apple and/or our subscription management providers. We do not receive your full payment card details.
We may process subscription-related information such as:
- Subscription status
- Product purchased
- Renewal status
- Trial status
- Purchase history metadata
- App Store transaction identifiers
This data is used to unlock paid features, manage subscriptions, prevent fraud, and provide customer support.
3. How We Use Your Data
We process personal data for the following purposes:
- To provide and operate ChartReader AI
- To analyze uploaded chart images and generate AI-powered chart insights
- To provide market insights, educational scenarios, news sentiment, and related app features
- To operate AI chat and educational mentor features
- To manage subscriptions and in-app purchases
- To respond to support requests
- To improve app performance, reliability, and user experience
- To detect, prevent, and fix errors, abuse, fraud, and security issues
- To understand app usage and improve our product
- To measure marketing campaign performance, where permitted
- To comply with legal obligations
- To communicate important service-related updates
We do not use ChartReader AI to provide financial, investment, legal, tax, or trading advice. Any analysis generated by the app is intended for educational and informational purposes only.
4. Legal Basis for Processing
Where the GDPR applies, we rely on the following legal bases:
4.1 Performance of a Contract — Art. 6(1)(b) GDPR
We process data where necessary to provide the app and its paid or free features, including chart analysis, AI chat, subscription access, and customer support.
4.2 Consent — Art. 6(1)(a) GDPR
We rely on your consent where required, for example for certain analytics, marketing, tracking, personalized features, or optional permissions.
You may withdraw your consent at any time with future effect.
4.3 Legitimate Interests — Art. 6(1)(f) GDPR
We may process data based on our legitimate interests, including:
- Maintaining and improving the app
- Securing our systems
- Preventing misuse
- Debugging and crash analysis
- Understanding general app usage
- Improving AI-powered features
- Measuring the performance of non-personalized marketing
- Protecting our legal rights
Where we rely on legitimate interests, we balance our interests against your privacy rights.
4.4 Legal Obligations — Art. 6(1)(c) GDPR
We may process data where required to comply with applicable laws, tax obligations, accounting rules, consumer protection laws, or lawful requests from authorities.
5. AI Processing and OpenAI
ChartReader AI uses external AI technology to provide chart analysis, market insights, sentiment summaries, educational scenarios, and AI mentor chat functionality.
For these features, we use:
OpenAI
Purpose of processing:
OpenAI is used to analyze uploaded chart images, process user prompts, generate AI-powered chart analysis, summarize market-related information, and provide AI chat functionality.
Types of data processed may include:
- Uploaded chart screenshots or photos
- Visible ticker symbols, prices, indicators, chart annotations, and trading platform interface elements
- Text prompts and chat messages entered by the user
- Asset names, ticker symbols, or market context selected in the app
- Technical request metadata required to provide the service
Users should only upload chart-related images and should not upload personal documents, identification documents, private financial account information, faces, confidential information, or other sensitive personal data.
If a user accidentally uploads an image containing personal data or private information, such content may be transmitted to OpenAI and processed for the purpose of providing the requested AI analysis.
Processing by OpenAI may take place outside the European Economic Area, including in the United States. Where required, international data transfers are protected by appropriate safeguards, such as Standard Contractual Clauses approved by the European Commission.
Legal basis:
The processing is based on Art. 6(1)(b) GDPR where it is necessary to provide the requested AI functionality, Art. 6(1)(f) GDPR for our legitimate interest in operating and improving the app, and Art. 6(1)(a) GDPR where explicit consent is required.
Retention:
Uploaded chart images and prompts are processed for the purpose of generating the requested AI output. We do not intend to permanently store uploaded chart images unless necessary for app functionality, troubleshooting, security, legal compliance, or where the user enables functionality that requires storage. Processing and retention by OpenAI are governed by OpenAI’s applicable terms, data processing agreements, and privacy practices.
6. Analytics, Attribution, Subscription Management, and Marketing Technologies
We use external service providers to operate subscriptions, analyze app usage, improve app functionality, measure marketing performance, and optimize user experience.
The services we use include:
6.1 RevenueCat
RevenueCat is used for subscription and in-app purchase management.
Data processed may include:
- Subscription status
- Product identifiers
- Purchase and renewal information
- Trial status
- App Store transaction metadata
- Anonymous or pseudonymous user identifiers
RevenueCat helps us unlock premium features, manage subscription access, prevent fraud, and provide subscription-related support.
6.2 PostHog
PostHog is used for product analytics and functionality improvement.
Data processed may include:
- App usage events
- Feature interactions
- Screen views
- Device and app information
- Pseudonymous user identifiers
- Technical performance information
PostHog helps us understand how users interact with ChartReader AI and improve the product experience.
6.3 AppsFlyer
AppsFlyer is used for marketing attribution and campaign performance measurement.
Data processed may include:
- App install attribution data
- Campaign and referral information
- Device information
- Advertising identifiers, where permitted
- App events related to marketing performance
AppsFlyer helps us understand which marketing campaigns lead to installs and subscriptions.
6.4 TikTok
TikTok may be used for marketing optimization, advertising measurement, and campaign performance analysis.
Data processed may include:
- Advertising attribution data
- Device and app information
- Campaign interaction data
- Advertising identifiers, where permitted
- App events related to marketing performance
6.5 Meta / Facebook / Instagram
Meta may be used for marketing optimization, advertising measurement, and campaign performance analysis across Meta platforms such as Facebook and Instagram.
Data processed may include:
- Advertising attribution data
- Device and app information
- Campaign interaction data
- Advertising identifiers, where permitted
- App events related to marketing performance
6.6 Google Analytics / Firebase Analytics
Google Analytics and/or Firebase Analytics may be used to understand app usage, monitor performance, analyze crashes, and improve ChartReader AI.
Data processed may include:
- App usage events
- Device and operating system information
- App version
- Approximate region
- Crash and diagnostic information
- Pseudonymous identifiers
Where required by law, analytics, attribution, or marketing technologies are used only with your consent. You may withdraw your consent at any time with future effect through the app settings, device settings, or any available consent management options.
Some of these providers may process data outside the European Economic Area, including in the United States. Where required, such transfers are protected by appropriate safeguards pursuant to Art. 46 GDPR, including Standard Contractual Clauses.
7. Sharing of Personal Data
We do not sell your personal data.
We share personal data only where necessary to provide, operate, secure, analyze, improve, and market ChartReader AI, or where legally required.
Personal data may be shared with the following categories of recipients:
- AI service providers, including OpenAI
- Subscription and payment infrastructure providers, including RevenueCat and Apple
- Analytics and product improvement providers, including PostHog and Google/Firebase
- Marketing attribution and advertising measurement providers, including AppsFlyer, TikTok, and Meta
- Hosting and cloud infrastructure providers
- Customer support and communication providers
- Legal, tax, accounting, compliance, or professional advisors
- Public authorities, courts, or regulators where legally required
Service providers process personal data either on our behalf under appropriate data processing agreements or as independent controllers where applicable under their own terms and privacy policies.
Where data is transferred outside the European Economic Area, we use appropriate safeguards such as Standard Contractual Clauses or other legally recognized transfer mechanisms.
8. Cookies and Similar Technologies
ChartReader AI and our website may use cookies, SDKs, pixels, device identifiers, local storage, or similar technologies for functionality, analytics, attribution, security, and marketing purposes.
These technologies may be used to:
- Keep the app functioning correctly
- Remember preferences
- Analyze app usage
- Measure advertising performance
- Attribute installs and subscriptions to marketing campaigns
- Detect fraud or technical issues
Where required by law, non-essential cookies, SDKs, tracking technologies, or similar tools are used only with your consent.
You can manage or withdraw your consent through the app settings, device settings, or any available consent management options.
9. International Data Transfers
Some of our service providers may process personal data outside your country of residence, including outside the European Economic Area.
Where personal data is transferred internationally, we take appropriate steps to protect your data in accordance with applicable law. These safeguards may include:
- Standard Contractual Clauses
- Adequacy decisions by the European Commission
- Data processing agreements
- Technical and organizational security measures
10. Data Storage and Retention
We retain personal data only for as long as necessary for the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.
Retention periods may vary depending on the type of data:
- Chart images may be processed temporarily for analysis functionality.
- Support communications may be retained for as long as necessary to handle your request and maintain business records.
- Subscription and transaction records may be retained as required for accounting, tax, fraud prevention, and legal compliance.
- Analytics data may be retained in aggregated or pseudonymized form to improve the app.
- Crash logs and diagnostic data may be retained for troubleshooting and security purposes.
- Marketing attribution data may be retained as necessary to measure campaigns and prevent fraud.
Where possible, we delete, anonymize, or aggregate data when it is no longer needed.
11. Data Stored on Your Device
ChartReader AI may store certain information locally on your device, such as:
- App settings
- Preferences
- Cached content
- Locally stored analysis history, if available
- Authentication or subscription state, where applicable
You may be able to delete some local data through the app settings or by deleting the app from your device.
12. App Permissions
ChartReader AI may request access to certain device features, depending on the functionality you use.
These may include:
- Camera access, to take photos of charts
- Photo library access, to upload chart screenshots
- Notifications, if you enable reminders or app updates
- Network access, to communicate with our servers and service providers
You can manage permissions at any time through your device settings.
13. Public Market Data and Disclosure Information
ChartReader AI may display publicly available market-related information, including news, sentiment data, institutional filings, public disclosures, or transactions reported by public officials or influential market participants.
This information is provided for educational and informational purposes only. Public disclosure data may be delayed, incomplete, or subject to reporting limitations and may not reflect current holdings, intentions, or future actions.
The display of public market data does not constitute a recommendation to buy, sell, hold, or copy any trade.
14. Security
We use reasonable technical and organizational measures to protect personal data against unauthorized access, loss, misuse, alteration, or disclosure.
However, no app, website, server, or internet transmission is completely secure. You are responsible for using the app carefully and avoiding the upload of sensitive or confidential information.
15. Your Rights
Depending on your location and applicable law, you may have the following rights regarding your personal data:
- Right of access
- Right to rectification
- Right to erasure
- Right to restriction of processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
- Right to lodge a complaint with a supervisory authority
If you wish to exercise your rights, please contact us at:
We may need to verify your identity before responding to certain requests.
16. Right to Object
Where we process personal data based on legitimate interests, you may object to such processing at any time on grounds relating to your particular situation.
Where we process personal data for direct marketing purposes, you may object at any time without giving reasons.
17. Children’s Privacy
ChartReader AI is not intended for children under the age of 13.
We do not knowingly collect personal data from children under 13. If we become aware that we have collected personal data from a child without appropriate consent, we will take reasonable steps to delete such data.
Depending on your country, a higher minimum age may apply for consent to data processing.
18. Marketing Communications
If you consent to receive marketing communications, we may send you product updates, feature announcements, offers, or other promotional information.
You can withdraw your consent at any time by using an unsubscribe link, changing your app settings, or contacting us directly.
Service-related messages, such as subscription, security, or important app updates, may still be sent where necessary.
19. Third-Party Links and Services
ChartReader AI may contain links to third-party websites, data sources, filings, news providers, or external services.
We are not responsible for the privacy practices, content, or security of third-party websites or services. Their own privacy policies apply.
20. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our app, legal requirements, service providers, or data processing practices.
The latest version will be made available in the app or on our website. If we make material changes, we may notify you through the app or by other appropriate means.
21. Contact
For questions about this Privacy Policy or the processing of your personal data, please contact:
GunzX GmbH
Fenzlgasse 1/14
1150 Vienna
Email: [contact@gunzx.com]
