Privacy and data handling
Your research is yours. Here is what Basis handles.
A plain-language account of what is stored, what remains on your device, which services receive data and the choices available to you.
Last reviewed 2026-08-29
Scope and our approach
This policy explains how Basis handles information when you visit basischarts.com, use the terminal, create an account or contact the team. Basis is operated by an independent five-person team and is designed to collect only the information needed to run, secure and improve the service.
Basis does not sell personal information and does not use personal information for third-party behavioural advertising. Market research may be used without creating an account; an account is needed only for features that save or synchronize work.
Information we process
The information Basis processes depends on the features you choose to use.
- Account information: email address, display name, password hash for password accounts, and the identifier needed to link a Google sign-in when OAuth is used. Basis never stores a plaintext password.
- Session and security information: hashed session identifiers, creation and expiry times, and ordinary server records used to authenticate requests, prevent abuse and investigate failures.
- Saved research: workspaces, drawings, journal entries, alerts, calendar notes, strategies, formulas, tables, screener presets, multi-chart layouts and assistant conversations that you choose to synchronize while signed in.
- Scheduled features: alert rules, notification subscriptions, scheduled research tasks and their run history when you enable those services.
- Usage and performance information: aggregate page usage, device and browser characteristics, referrers and performance measurements through Vercel Analytics and Speed Insights.
- Product measurement collected by Basis itself, on this site only and shared with no third party: the pages you open, which product features you use (for example adding an indicator or opening an order-flow view), whether an assistant request succeeded or failed and the category of any failure, and the times of those actions. Two random identifiers group these into a browser and a visit; they are generated in your browser, are not derived from your device, network or account, and clearing site data ends them. Basis does not store your IP address with this measurement. Referring addresses are reduced to a site name before they are stored, so a search engine’s referrer never carries the words you searched for. Nothing you type — prompts, journal entries, notes, formulas or an assistant provider’s error text — is included. If your browser sends a Do Not Track or Global Privacy Control signal, this measurement does not run.
- Support information: the content and account details you choose to include when contacting the team or reporting an error.
What stays on your device
Basis uses browser storage so charts and research can work before an account is created. Local settings and unsynchronized work remain in that browser unless you clear them. When you sign in, supported collections can be synchronized to your account so they are available on another device.
Bring-your-own AI provider keys are stored on your device. By default a key is kept only for the browser session; remembering it across restarts is an explicit choice. The key is sent only to the AI provider you select, never to Basis servers, and is excluded from synchronized documents and assistant code.
Why we use information
Basis uses information only where it is reasonably necessary to provide the service, honour a request, protect the platform or understand whether the product works. Depending on local law, the basis may be performance of the service you requested, legitimate interests in security and improvement, consent, or compliance with a legal obligation.
- Create and secure accounts, maintain sessions and synchronize selected work.
- Run alerts, notifications and scheduled research that you explicitly configure.
- Deliver charts, market tools and AI-provider requests, and diagnose errors or outages.
- Measure aggregate traffic and performance so slow or broken product paths can be found.
- Prevent fraud, abusive automation, attacks and violations of the Terms of Service.
- Respond to support, correction and privacy requests.
Retention and deletion
Account records and synchronized research are retained while the account is active or as needed to provide the requested feature. Sessions expire and may be removed earlier when you sign out or for security reasons. Operational logs, analytics and backups may be retained for limited periods under the settings and lifecycle controls of the relevant service provider.
You can remove local browser data through the relevant Basis control or your browser settings. You may request access, correction or deletion of account information through the Support link in the terminal. Some information may be retained where required for security, legal compliance, dispute resolution or backup integrity, then removed according to the applicable retention cycle.
Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, restrict or object to processing of personal information, receive a portable copy, or complain to a data-protection authority. Basis will verify requests before acting on them to protect the account. You can also use the terminal without an account, decline to remember an AI key, disable browser notifications and disconnect Google access through your Google account settings.
Security and international processing
Basis uses measures including hashed passwords, hashed server-side session tokens, secure cookies in production, access controls and validation at application boundaries. No online service can guarantee absolute security. Infrastructure providers may process information in countries outside your own; where required, transfers are handled through the safeguards offered by those providers and applicable law.
Children
Basis is intended for adults and is not directed to children under 18. We do not knowingly collect personal information from children. If you believe a child has provided account information, contact the team through Support so it can be reviewed and removed.
Changes and contact
This policy may change as Basis adds features, providers or legal obligations. Material changes will be reflected on this page with a new review date and, where appropriate, an in-product notice. For privacy questions or requests, use the Support link inside the Basis terminal and clearly mark the message as a privacy request.
Want to use Basis without an account?
Core charting and market research tools remain available without registration.