Legal
Privacy Policy
Last updated: 25 February 2026
1. Who we are
NOKTRN ("we", "us", "our") is a stock quantitative analysis platform operated by Melike KAYA, located in Ankara, Turkey. We provide real-time market data, AI-powered price forecasting, DCF fair value estimates, and SEC insider filing data via noktrnapp.com.
Contact: info@noktrnapp.com
2. Data we collect
- Account data: Email address, display name, and hashed password. Google OAuth sign-ups share your name and email from Google.
- Usage data: Pages visited, features used, search queries, and interaction timestamps via server logs.
- Payment data: Processed by Dodo Payments. We store only a transaction reference and subscription status — we never see or store your full card numbers or CVV.
- Device data: Browser type, OS, IP address, and approximate location (country/city).
- Cookies: Session cookies for authentication; optional analytics cookies.
3. How we use your data
- To create and manage your account and deliver requested services.
- To process payments, manage subscriptions, and prevent fraudulent transactions.
- To send transactional emails (confirmations, billing receipts, password resets).
- To improve platform performance through aggregated, anonymized analytics.
- To comply with legal obligations (e.g., Turkish tax records for individual income).
We do not sell your personal data.
4. Legal basis for processing
- Contract performance: To provide the service you paid for.
- Legitimate interests: To improve the platform and ensure security/fraud prevention.
- Legal obligation: To comply with financial and tax reporting requirements.
- Consent: For optional analytics cookies.
5. Data sharing
We share data only with essential third-party processors:
- Supabase: Authentication and database hosting.
- Dodo Payments: Payment processing and tax compliance.
- Upstash: Redis caching for market data.
- Vercel: Application hosting and CDN.
We may disclose data if required by law or court order to protect the rights and safety of the platform.
6. Data retention
Account data is kept while your account is active. Upon deletion, personal data is removed within 30 days, except where required for financial compliance (e.g., billing records required for tax purposes).
7. Cookies
- Authentication cookies (strictly necessary): Set by Supabase to keep you logged in.
- Analytics cookies (optional): Used to understand site traffic. You can opt-out via browser settings.
8. Your rights (GDPR / KVKK)
Under the GDPR and the Turkish KVKK (Personal Data Protection Law), you have the right to access, correct, delete, or port your data. To exercise these rights, contact us at info@noktrnapp.com. We respond within 30 days.
9. Security
We use TLS encryption, hashed passwords, and strict access controls. Please notify us immediately if you suspect unauthorized access to your account.
10. Children
NOKTRN is not directed at children under 16. We do not knowingly collect data from minors.
11. Changes
We may update this policy. Registered users will be notified of material changes via email.