
We are Squadron Technologies Ltd ("Squadron Technologies," "we," "our" or "us"). We respect your privacy and are committed to protecting the confidentiality of the information you provide to us. This Privacy Policy outlines how we handle your Personal data when you use our services on our MarketAlpha.ai websites and the MarketAlpha platform ("Website" and "Platform"). It is intended to help you understand your rights and how we use your data.
Squadron Technologies Ltd is the data controller responsible for your Personal data. We are the sole owner of the MarketAlpha.ai website ("Website"). This Privacy Policy applies to the Personal data we collect when you visit our Website, create an account, or use our applications or services ("you" or "your"). This policy details the types of Personal Data we collect, the reasons for collecting it, the lawful basis for processing your Personal Data, how we use and store it, and the ways in which we share this information.
"Personal data" refers to any information that relates to you and can directly or indirectly identify you.
By using our Website or submitting your Personal data, you agree to the terms of this Privacy Policy. Please read it carefully. If you disagree with any part of this Privacy Policy, you should stop using our Website and, if applicable, delete your user account.
We may update this Privacy Policy from time to time at our discretion by posting an updated version on our Website. We encourage you to review this page periodically for any changes. If required by applicable law, we will notify you of any significant changes through email notifications with a clear subject line such as 'Important Update to MarketAlpha Privacy Policy,' and include a summary of the changes made.
We collect Personal data from you when you interact with our Platform, including but not limited to:
Analytics runs only if you consent. When enabled, we collect pseudonymous usage and performance data (not tied to your account and not used for advertising or profile building). We also implement consent controls (including Google Consent Mode and our own blocking/unloading logic) so analytics is off when you select Essential Only or Reject All. We collect only pseudonymous Personal data, ensuring that no PII is included in our analytics reports. This data is used to analyse and enhance our services and applications, as well as for ongoing development and testing. We utilize both internal analytics tools and third-party service providers to achieve these purposes.
We use Google Analytics (GA4) and Mouseflow. If you choose Essential Only or Reject All, we disable Google Analytics (no cookies, no hits) and block or unload Mouseflow and delete its cookies. When enabled, analytics is pseudonymous and is not linked to your account or used for targeted advertising or profile building.
Mouseflow is a website analytics tool that provides session replay, heatmaps, funnels, form analytics, feedback surveys, and similar features/functionality. Mouseflow may record your clicks, mouse movements, scrolling, form fills (keystrokes) in non-excluded fields, pages visited and content, time on site, browser, operating system, device type (desktop/tablet/phone), screen resolution, visitor type (first time/returning), referrer, anonymized IP address, location (city/country), language, and similar meta data. Mouseflow does not collect any information on pages where it is not installed, nor does it track or collect information outside your web browser. If you'd like to opt-out, you can do so at https://mouseflow.com/opt-out. If you'd like to obtain a copy of your data, make a correction, or have it erased, please contact us first or, as a secondary option, contact Mouseflow at privacy@mouseflow.com.
Mouseflow only runs if you consent to analytics in our cookie banner; switching to Essential Only or Reject All stops/unloads Mouseflow and removes its cookies.
We use AWS CloudFront and AWS Web Application Firewall (WAF) to protect our services from malicious activity. These services process network data such as IP address, request time, URLs, user-agent and other request headers solely for security and fraud-prevention purposes.
Lawful basis: our legitimate interests in keeping the service secure and available (Art. 6(1)(f) GDPR/UK GDPR). Retention: security logs are typically retained for up to 30 days. Location & safeguards: logs are stored with AWS under appropriate transfer safeguards (e.g., Standard Contractual Clauses / Data Privacy Framework where applicable), access-restricted, and never used for marketing or profiling.
When you make or change a cookie choice, we create a server-side record to demonstrate compliance and troubleshoot consent issues. This record includes: a consent receipt ID (ccid), your choice (Reject All / Essential Only / Accept All), banner and policy versions, MarketAlpha site, whether the small or main box was used, browser/OS, derived country, client and server timestamps, and a pseudonymised IP network prefix (IPv4 /24 ending .0, IPv6 /32). The raw IP is discarded immediately. These records are stored separately from security/WAF logs, are encrypted and access-restricted, and are retained for up to 6 months before deletion.
We process your Personal data for the following purposes:
We process your Personal data under the following lawful bases as defined by the UK GDPR:
How this applies here: platform essential cookies and security/WAF logging rely on contractual necessity and our legitimate interests in security and service integrity; analytics cookies rely on your consent; preference and consent-receipt records rely on our legitimate interests in demonstrating and managing consent (Art. 7(1) accountability). For direct electronic marketing to individuals, we rely on consent or the UK “soft opt-in” where applicable, always with the ability to opt out at collection and in every message.
We implement robust technical and organizational measures to protect your Personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
Despite our efforts, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security, but we continuously work to ensure that your Personal data is protected to the highest possible standard.
Our services are not intended for children under 18 years of age, and we do not knowingly collect Personal data from children. If you believe we have inadvertently collected such data, please contact us immediately. We do not process sensitive Personal data as defined by UK GDPR Article 9, such as data concerning health, race, religion, or sexual orientation. If such data is inadvertently collected, please contact us and we will take immediate steps to delete it.
Our Platform may contain links to third-party websites. These sites operate independently of us and have their own privacy policies. We are not responsible for the content or privacy practices of these linked sites. We recommend that you review the privacy policies of any third-party sites you visit.
You have the option to stop using our Platform and request the deletion of your account through the Account Settings page. Upon your confirmation, your account will be permanently deleted. This process includes the removal of any Personal data you have provided to us. However, certain content, such as published ideas/scripts and messages sent to other users, will be retained as they are integral to the platform's operation and integrity. For legitimate business purposes and to comply with legal obligations, including tax laws, audits, and security requirements, certain data may need to be retained for a longer period.
If you are located in the European Economic Area (EEA) or the United Kingdom (UK), you have certain rights regarding your Personal data under applicable data protection laws:
To exercise your rights, please contact us at support@marketalpha.ai. We may need to verify your identity before processing your request. We aim to respond to all legitimate requests within one month, but it may take longer if your request is complex or if you have made multiple requests.
We retain your Personal data only for as long as necessary to fulfil the purposes for which it was collected, including:
Once your data is no longer needed, we will either delete it or anonymize it, ensuring it cannot be linked back to you.
Additional retention details: consent preference and receipt cookies are kept for up to 6 months; security/WAF logs are retained for up to 30 days. Analytics retention is configured to the minimum practical period supported by each provider.
Your Personal data may be transferred to, and stored in, countries outside the European Economic Area (EEA) or the United Kingdom (UK), including the United States. These countries may have different data protection standards compared to your home country.
We ensure that all international transfers of your Personal data are protected by appropriate safeguards, such as:
Our key processors for the services described here include Amazon Web Services (infrastructure and WAF), Google (Analytics), and Mouseflow (session analytics). Where data is transferred outside the UK/EEA, we rely on the SCCs/UK IDTA or applicable Data Privacy Framework arrangements, together with technical and organizational measures.
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA):
Full name of legal entity:
Questions? Email support@marketalpha.ai or write to: Harben House Harben Parade, Finchley Road, London, United Kingdom, NW3 6LH.
If you have any questions or concerns about how we handle your personal data, we would really appreciate the opportunity to resolve them directly. Please do not hesitate to get in touch with us and we will do our best to help.