Last updated: 22 July 2026
This Privacy Policy explains how FiatBear collects, uses, stores, and shares personal data when you use fiatbear.com, app.fiatbear.com, and the services available through them. FiatBear is a business established in the Netherlands and is the controller of the personal data described here unless a third party is identified as acting independently.
Questions or privacy requests can be sent to [email protected].
1. Scope
This policy applies to visitors, registered customers, and people who contact FiatBear. It covers the public website, the FiatBear application, copy-trading features, residential-proxy services, support channels, and related account, billing, and operational systems.
Third-party exchanges, wallet software, payment providers, communication platforms, and public blockchains process data under their own terms and privacy policies. FiatBear does not control those independent services.
2. Personal data we collect
Account and identity data
- Your email address, internal account and customer identifiers, account creation date, sign-in and security records, and a password hash when you register with email and password.
- Your Google account identifier and basic profile information if you choose Google sign-in.
- Your name, country, and billing address when needed for a paid product, invoice, refund, or legal record.
Trading and service data
- Connected wallet addresses, exchange or account identifiers, vault addresses, network and demo-account choices, and connection status.
- Copy-trading configuration, followed traders, risk and leverage settings, notification preferences, positions, balances, order and fill history, errors, and service activity needed to operate and support the product.
- Hyperliquid agent authorisation, expiry, and builder-fee approval information. FiatBear processes the agent key needed to submit the orders you authorise. Sensitive exchange and agent credentials stored by FiatBear are encrypted per customer at rest.
- For existing customers who use legacy Kraken or Bybit integrations, the API credentials and exchange data needed to continue those connections.
- Telegram chat identifiers, authentication codes, Discord webhook URLs, or similar delivery details if you configure optional notifications.
Payments and paid services
- Billing name and address, product, amount, currency, payment status, processor customer and transaction identifiers, invoice and refund records, and residential-proxy plan or usage information where applicable.
- Payment-card details are entered into Stripe’s payment flow and are not stored in full by FiatBear. A cryptocurrency payment processor may process wallet and transaction data when that payment option is offered.
- FiatBear copy trading has no monthly plan. Hyperliquid builder-fee approvals and the related public transactions are processed to operate and account for the copy-trading service.
Communications
We collect the information you provide in email, support chat, contact forms, social media, and other support communications, together with the records needed to answer, secure, and improve support.
Technical, security, and usage data
- IP address, request and response metadata, browser and device information, timestamps, authentication events, rate-limit and security signals, application logs, dependency telemetry, and diagnostic error details.
- Consent choices and the date or version of those choices.
- If you allow analytics or advertising: page and product events, campaign parameters, advertising click identifiers, external referrer, and a pseudonymous internal customer identifier. FiatBear does not send email addresses, wallet addresses, private keys, or payment details as analytics event parameters.
3. How and why we use personal data
We process personal data only where we have an applicable legal basis:
- Contract: to create and secure your account; connect the services you request; operate copy trading, notifications, payments, and proxy products; provide support; and enforce the applicable terms.
- Legitimate interests: to keep the service reliable and secure, prevent fraud and abuse, diagnose errors, maintain records, understand aggregate product performance, and protect FiatBear and its users. We balance these interests against your rights.
- Consent: to store optional analytics, advertising, and support-chat technologies and process the related data. You can withdraw this consent at any time.
- Legal obligations: to maintain tax, accounting, payment, dispute, compliance, and lawful-request records where required.
We may send account, security, service, payment, and operational emails that are necessary to provide the service. Marketing messages are sent only where permitted by law, and every optional marketing message will provide a way to opt out.
4. Hyperliquid, wallets, and public blockchain data
Hyperliquid wallet addresses, balances, positions, orders, fills, builder-fee approvals, and other transactions may be publicly visible or derivable from public blockchain or exchange data. Public blockchain records are not controlled by FiatBear and generally cannot be changed or deleted by us.
FiatBear uses connected wallet and agent information to verify authorisation, read the account state needed for the service, and submit the copy-trading actions you configure. Wallet software and Hyperliquid independently process data under their own terms. You should not send FiatBear a wallet recovery phrase or seed phrase.
5. Cookies, analytics, advertising, and support chat
Essential technologies support security, authentication, consent storage, and services you request. Optional analytics, advertising, and support-chat technologies are denied by default until you make a choice.
If you allow analytics, FiatBear uses Google Analytics 4 to understand visits, registrations, and confirmed activation milestones. If you allow advertising, Google Ads and the X/Twitter website tag may process campaign and conversion data. If you allow support chat, ClickConnector processes the details you submit and the technical information needed to provide the conversation.
Google Consent Mode may send limited cookieless consent-status or measurement signals while storage is denied. For the current categories, cookie names, purposes, providers, durations, controls, and withdrawal instructions, read the Cookie Policy.
6. When we share personal data
We share only the data reasonably needed for the relevant purpose. Recipients may include:
- Infrastructure, security, and diagnostics providers, including Cloudflare and Microsoft Application Insights, which may process network identifiers, requests, logs, and error telemetry.
- Authentication providers, including Google when you choose Google sign-in.
- Trading venues and account providers, principally Hyperliquid and, for legacy connections, Kraken and Bybit.
- Payment providers, including Stripe and a cryptocurrency payment processor where offered.
- Communications providers, including Mailjet for service email, ClickConnector when support consent is granted, and Telegram or Discord when you configure those channels.
- Measurement providers, including Google and X when the relevant optional consent is granted.
- Professional advisers, insurers, auditors, prospective transaction parties, and authorities where reasonably necessary, subject to confidentiality or legal safeguards.
Service providers acting for FiatBear may process data only for the instructed service and subject to appropriate contractual protections. Some third parties, including exchanges, wallet providers, payment networks, public blockchains, and authorities, act as independent controllers. FiatBear does not sell personal data.
7. International transfers
FiatBear is based in the Netherlands, but some providers or their systems may be located outside the European Economic Area. Where European data-protection law requires a transfer safeguard, we use an applicable adequacy decision, Standard Contractual Clauses, or another lawful transfer mechanism. A provider may also process data under its own lawful international-transfer framework when it acts independently.
8. Retention
We keep personal data only for as long as reasonably needed for the purpose described in this policy, including:
- account and service data while your account is active and for a limited period afterward to complete deletion, resolve disputes, prevent abuse, and protect legal rights;
- trade, payment, invoice, tax, and accounting records for the period required by applicable law or necessary to handle claims;
- support and security records for as long as needed to answer the request, investigate incidents, and maintain an appropriate audit trail;
- operational logs and diagnostics for shorter periods appropriate to reliability and security; and
- cookie consent for one year and consented first-party campaign attribution for 30 days, as described in the Cookie Policy.
Data may remain temporarily in restricted backups until the relevant backup is overwritten. We may retain aggregated or de-identified information that no longer identifies you.
9. Security
FiatBear uses technical and organisational safeguards appropriate to the data and risk. These include encrypted HTTPS connections, access controls, anti-forgery and account-lockout protections, restricted operational access, monitoring, and encryption at rest for sensitive profile and exchange credential fields. No internet service can guarantee absolute security.
You are responsible for protecting your password, wallet, recovery phrase, exchange account, and devices. Contact [email protected] promptly if you believe your FiatBear account or information has been compromised.
10. Your rights and choices
Depending on your location and the applicable law, you may have the right to:
- request access to and a copy of your personal data;
- correct inaccurate or incomplete data;
- request deletion or restriction of processing;
- object to processing based on legitimate interests or direct marketing;
- receive certain data in a portable format;
- withdraw consent without affecting processing that was lawful before withdrawal; and
- complain to a data-protection authority.
Send requests to [email protected]. We may need to verify your identity and may retain information where an exemption or legal obligation applies. We normally respond within one month and will tell you if applicable law permits more time.
If you are in the Netherlands, you may also complain to the Dutch Data Protection Authority. The European Data Protection Board directory lists the relevant supervisory authorities. You can change optional cookie consent through the controls described in the Cookie Policy.
11. Age requirement
FiatBear accounts and services are intended only for people who are at least 18 years old and legally able to enter into the applicable agreement. We do not knowingly offer the service to children. Contact us if you believe a child has provided personal data.
12. Changes and contact
We may update this policy when the product, providers, or legal obligations change. The date at the top identifies the latest revision. Material changes will be communicated where required by law.
For privacy questions, requests, or complaints, contact [email protected].