Privacy Policy
Kesin (“we,” “us”) is an independent portfolio tracker and trade journal for prediction markets. This policy explains what we collect, how we use it, how long we keep it, and the control you have over it. We collect only what the app needs to work — and we don't sell your data. It sits alongside our Terms of Use.
Information we collect
- Account information. Your email address, used to create and sign in to your account. If you sign in with Apple or Google, we receive the email address (or Apple's private relay address) and, where you allow it, your name — never your password.
- Content you create. The positions, journal entries, watchlist items, price alerts, tags, notes, and followed wallets you log in the app.
- Connected accounts (optional). If you connect Kalshi, your API key ID and private key — the private key is encrypted before storage and used only to read your positions on your behalf; it is never returned to the app or shared. If you connect Polymarket, your public wallet address. You can disconnect at any time, which deletes the stored credentials.
- Derived portfolio history. To draw your equity curve and detect 24-hour price moves, our servers periodically record snapshots of your portfolio's total value, cost, and unrealized P&L, plus snapshots of prices for the markets you track.
- Device information. A push-notification token and your device time zone (read from your device's clock settings — we never request or collect location), used to deliver the alerts and daily digest you enable.
- Support and bug reports. If you submit a bug report in the app or email support, we keep the message, the email address you provide, and anything else you choose to include.
- Subscription status. Whether you have an active subscription or trial, provided by Apple and our subscription provider (RevenueCat). We do not receive or store your payment-card details.
- Technical logs. Our hosting and backend providers automatically log request metadata — including IP address, timestamps, and error diagnostics — for security, abuse prevention, and debugging. We do not use these logs to build a profile of you, and we run no advertising or analytics trackers in the app or on this website.
Information about other people (Whale Watch)
Kesin's Whale Watch feature displays publicly available blockchain activity from Polymarket: wallet addresses, the display names, pseudonyms, profile pictures, and public social handles those traders have chosen to publish on Polymarket, and their trades. When you follow a wallet, we cache that public profile information so the feature loads quickly.
This data is public and comes from Polymarket, not from us — but if you believe information about you is being shown here and you would like it removed, email [email protected] and we will remove it from our systems.
How we use your information
We use your information to provide and operate Kesin: to show your portfolio and live P&L, sync your connected accounts, evaluate and deliver the price alerts and notifications you turn on, generate your analytics, and manage your subscription. That's it — we do not use your data for advertising.
How your information is shared
We do not sell your personal information. We share it only with the service providers that run Kesin, and only as needed to operate it:
- Supabase — database, authentication, and backend hosting.
- RevenueCat and Apple — subscription management and payment processing.
- Expo / Apple Push Notification service — delivery of the notifications you enable.
- Kalshi and Polymarket APIs — accessed to read market data and, if you connect an account, your positions. Kesin is not affiliated with, endorsed by, or connected to Kalshi or Polymarket.
We may also disclose information if required by law or to protect the rights, safety, and security of our users and service.
Data security
Data is encrypted in transit and at rest. Connected-account credentials receive additional application-level encryption, are cryptographically bound to your account so they cannot be replayed against another, and are only ever decrypted inside our server functions to read your positions — never exposed to the app or any third party. Access to credentials is restricted to those server functions; your device cannot read them, and neither can any other user.
Kalshi API keys are full-access. Kalshi does not currently offer read-only keys, so a key you connect is technically capable of trading, even though Kesin only ever reads with it. We think you should know that before deciding to connect, and you can disconnect — which deletes the key — at any time. See our Terms of Use for the full disclosure.
No system is perfectly secure. If we ever discover a breach affecting your personal information, we will notify affected users and any regulators as required by applicable law, without undue delay.
How long we keep it
- Account and content — for as long as your account is active, then deleted when you delete your account.
- Connected-account credentials — until you disconnect that platform or delete your account, whichever comes first.
- Market price snapshots — automatically deleted after 90 days.
- Market records no longer referenced by anyone's position, watchlist, or alert — automatically deleted after 7 days.
- Technical logs — retained on our providers' standard schedules, typically days to a few weeks.
- Bug reports — kept while we work through them, and deleted with your account.
Your controls
- Delete your account — in the app, Settings → Delete account. It's a two-step confirmation and permanently deletes your account, positions, journal, watchlist, alerts, snapshots, followed wallets, connected-account credentials, and push registrations. This is immediate and irreversible. You can also email us to have it done for you.
- Reset your data — Settings → Danger zone → Reset portfolio data clears your positions and equity history while keeping your journal, watchlist, alerts, and connections.
- Disconnect an account — removes and deletes the stored credentials for that platform.
- Manage notifications — turn the daily digest and alerts on or off in Settings, or off entirely in your device settings.
- Access or correct your data — most of it is visible and editable in the app; for anything else, email us.
Your California privacy rights
If you are a California resident, you have the right to know what personal information we collect and why, to request a copy of it, to request deletion or correction, and not to be discriminated against for exercising those rights. The categories we collect are identifiers (email, IP address), commercial information (subscription status), internet activity (app and error logs), and the content you create — all described above, all used only to operate Kesin.
We do not sell or share your personal information as those terms are defined under California law, and we do not use it for cross-context behavioural advertising. To exercise any right, email [email protected] from your account address; we will verify your request through that address and respond within the time the law allows.
Where we operate
Kesin is offered in the United States, and your information is processed on servers there. If you access this website from elsewhere, you understand your information will be processed in the United States.
Children's privacy
Kesin is intended for adults and is not directed to anyone under 17. We do not knowingly collect information from children.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by the “Last updated” date above, and where appropriate we'll notify you in the app.
Contact
Questions about this policy or your data? Email [email protected].