Effective April 18, 2026
Privacy Policy
1. Introduction
LangAlpha is an AI-powered financial research platform. This Privacy Policy describes what information we collect when you use the hosted LangAlpha service, how we use it, who we share it with, and the choices you have. By using the hosted service, you agree to the practices described here.
Scope: This policy applies only to the hosted LangAlpha service operated at ginlix.ai and langalpha.com (and their related subdomains). LangAlpha's core agent code is open source. If you self-host LangAlpha or run it from the source repository, this policy does not apply to your deployment — you (or the operator of that deployment) are responsible for data handling, and the third-party providers you configure are governed by their own terms.
LangAlpha is currently operated as an independent project. If you have questions about this policy or your data, contact us at contact@ginlix.ai.
2. Information We Collect
We collect the following categories of information:
- Account information — your name, email address, and profile information from OAuth providers (Google, GitHub) when you sign up.
- Conversation data — the messages you send to the AI agent, the agent's responses, and the history of your threads and workspaces.
- Workspace data — files, code, and outputs you create inside your isolated workspace environment.
- Usage data — which features you use and how often, in aggregated and anonymized form, used to improve the product.
- Technical data — IP address, browser type, device information, and diagnostic logs needed to operate the service securely.
3. How We Use Your Information
- To provide, operate, and maintain the LangAlpha service.
- To improve LangAlpha through anonymized, aggregated analytics. We do not use your conversations to train AI models.
- To prevent fraud, abuse, and security incidents.
- To communicate with you about service updates, changes, and support requests.
4. AI Processing and Third-Party Model Providers
When you send a message to the LangAlpha agent, your message and related context are processed by third-party large language model (LLM) providers so they can generate a response. We route queries to a variety of providers, which may include (non-exhaustively): Anthropic (Claude), OpenAI (GPT), Google (Gemini), Alibaba Cloud DashScope (Qwen), ByteDance Volcengine (Doubao), DeepSeek, Z.AI (GLM), MiniMax, Moonshot (Kimi), Groq, and Cerebras. Some of these providers host their infrastructure outside your country of residence, including in the United States and mainland China. The specific set of providers and models may change over time as we add or remove support.
Bring Your Own Key (BYOK): If you configure your own API key for a provider, your queries are sent directly to that provider using your key and are governed by your agreement with them. In that case LangAlpha acts only as a conduit for your requests.
Each provider processes your queries under its own terms and privacy policy. Commercial API terms at major providers generally prohibit using API inputs to train their foundation models, but you should review the privacy policy of any provider you use for details. AI-generated output is not financial, legal, or investment advice.
5. Code Execution and Sandboxes
LangAlpha executes code in isolated sandbox environments on your behalf to perform data analysis and generate visualizations. Sandboxes are currently provided by Daytona. Each sandbox is tied to your workspace and isolated from other users. Files you create in a sandbox persist within that workspace until you delete them or delete the workspace.
6. Financial Data
LangAlpha retrieves public market data (such as prices, fundamentals, news, and filings) from third-party data providers on your behalf. The specific providers may change over time. This data is displayed for informational and research purposes only.
LangAlpha does not connect to your bank, brokerage, or personal financial accounts, and we do not collect your personal financial records.
7. Data Sharing
We do not sell your personal data. We share information only with:
- LLM providers — to process your queries and generate responses (see Section 4).
- Authentication — Supabase manages account sign-in, session tokens, and OAuth handshakes with Google and GitHub.
- Sandbox execution — Daytona runs code generated on your behalf (see Section 5).
- Search and web data — when the agent browses the web on your behalf, your query is sent to search or fetch providers such as Tavily and Serper.
- Market data providers — to retrieve public financial data (see Section 6).
- Messaging integrations — when you connect LangAlpha to Slack, Discord, Telegram, or similar channels, the messages you exchange with the LangAlpha bot are processed via that platform's APIs and delivered through their servers under their respective terms.
- Legal authorities — when required by law, valid legal process, or to protect the safety of users or the public.
8. Data Retention and Deletion
We retain your account data for as long as your account is active. Conversation threads and workspace files are retained until you delete them or delete your workspace. You can delete individual threads and workspaces from within the app.
To delete your entire account and associated data, email contact@ginlix.ai. We will process deletion requests within 30 days of receipt, except where we are required to retain records for legal, security, or fraud-prevention purposes.
9. Security
We use industry-standard safeguards to protect your data, including:
- Encryption in transit via HTTPS/TLS.
- Isolated sandbox environments per workspace.
- Authentication and access controls on all stored data.
No system is perfectly secure. If you discover a security issue, please report it to contact@ginlix.ai.
10. Cookies and Local Storage
LangAlpha uses browser storage (cookies and localStorage) to keep you signed in, remember your preferences (such as theme and language), and maintain session state across page loads. We do not use third-party advertising or tracking cookies. You can clear this storage at any time through your browser, though doing so will sign you out.
11. Your Choices
- Access — your conversations, workspaces, and account info are visible in the app.
- Deletion — you can delete individual threads and workspaces in the app. Full account deletion is available by email request.
- Export — data export is not yet self-service. Contact us if you need a copy of your data.
12. Children
LangAlpha is not intended for anyone under 13 years old, and we do not knowingly collect personal information from children.
13. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you in the app or by email before the changes take effect. The “Effective” date at the top of this page reflects the most recent update.
14. Contact
Questions about this policy or your data? Email contact@ginlix.ai.