Legal

Privacy Policy

Last updated: 23 August 2026
The short version. We collect the minimum needed to run Peirama: your email and password (to log you in), the strategies and runs you create (to show you your history), and payment details handled by Stripe (we never see your full card number). We don't sell your data. You have rights over your data under the GDPR, explained below.

1Who is responsible for your data

Peirama, operated from Thessaloniki, Greece, is the "data controller" for the personal data described here. For any privacy question or to exercise your rights, contact support@peirama.tech.

Fill in: the legal entity name, registered address, and — if you appoint one or are required to — a data-protection contact. Confirm with a lawyer whether your processing requires any registration with the Greek DPA (HDPA).

2What we collect and why

DataWhy we hold itLegal basis (GDPR)
Email addressTo create and identify your account, log you in, and contact you about the ServicePerformance of a contract
Password (hashed, never stored in plain text)To authenticate you securelyPerformance of a contract
Strategy descriptions, code, and run resultsTo run your backtests and show your historyPerformance of a contract
Usage counts (runs per day)To enforce plan limits fairlyLegitimate interest
Payment data (via Stripe)To process your subscription. We receive confirmation and a customer reference, not your full card numberPerformance of a contract
Waitlist email (if you join)To notify you when access opensConsent
Basic technical/log dataSecurity, debugging, and preventing abuseLegitimate interest

We do not intentionally collect special categories of data, and you should not submit any in your strategy descriptions.

3How we use your data

We use your data to provide and secure the Service, run your backtests, maintain your history, enforce plan limits, process payments, respond to your requests, and comply with legal obligations. We do not sell your personal data, and we do not use it for third-party advertising.

4Who we share it with

We share data only with service providers who help us run Peirama, under appropriate safeguards:

We may also disclose data if required by law, or to protect the rights, safety, and security of Peirama and its users.

Lawyer review: list the actual sub-processors by name (hosting provider, waitlist provider, any analytics), confirm each has a GDPR- compliant data-processing agreement, and confirm whether any transfer data outside the EEA (and if so, on what safeguard).

5International transfers

Some of our providers may process data outside the European Economic Area. Where that happens, we rely on legally recognised safeguards (such as the European Commission's Standard Contractual Clauses) to protect your data.

6How long we keep it

We keep account data for as long as your account is active. If you close your account, we delete or anonymise your personal data within a reasonable period, except where we must retain certain records (for example, payment and tax records) to meet legal obligations.

7Your rights under the GDPR

You have the right to:

To exercise any of these, email support@peirama.tech. We will respond within the time limits set by law.

8Security

We take reasonable technical and organisational measures to protect your data: passwords are hashed with a slow, salted algorithm and never stored in plain text; the application is served over HTTPS; user-submitted code runs in an isolated, network-restricted sandbox; and access to systems is limited. No method of storage or transmission is perfectly secure, but we work to protect your data and to respond promptly to any incident.

9Cookies

We use a single essential cookie to keep you logged in (a session cookie). It is necessary for the Service to function and is not used for tracking or advertising. If we add analytics or non-essential cookies in the future, we will update this policy and, where required, ask for your consent.

Lawyer review: if you ever add analytics, a cookie banner/consent mechanism will likely be required under the ePrivacy rules.

10Children

The Service is not directed to anyone under 18, and we do not knowingly collect data from children.

11Changes to this policy

We may update this policy. Material changes will be reflected in the "last updated" date and, where appropriate, communicated to you.