$STKD
Privacy Policy
Effective September 6, 2026
This policy describes how Stockdesk (“Stockdesk”, “$STKD”, “we”, “us”) handles information when you use the desk, docs, and related APIs. Change the product name in apps/web/src/config/brand.ts.
What Stockdesk is
Stockdesk is a self-custodial interface for Robinhood Stock Tokens and products built on them. We do not hold your keys. We are not a broker, bank, or custodian.
Information we collect
- Wallet address. When you connect, we see the public address you approve. We use it to load balances, quotes, and unsigned transactions.
- Account and session data. Wallet login is provided by Privy. Privy may process identifiers needed to authenticate you.
- Product data you submit. Index and split-series drafts, names, tickers, mandates, weights, and optional images uploaded at deploy time (via Pinata).
- Usage events. App activity (creates, trades, deposits, splits) may be stored so the live Activity feed works.
- Device and logs. Standard request logs (IP, user agent, timestamps) for security and debugging.
- Local storage. Theme, rail widths, and similar desk preferences stay in your browser.
Information we do not collect
- Private keys or seed phrases. The server never holds them.
- Legal identity as a brokerage customer. Connecting a wallet is not opening a securities account with us.
Onchain and third-party data
Balances, transfers, holders, and prices come from public or partner sources: Robinhood RHJ APIs, Stockdesk’s API, Robinhood Chain RPC, Blockscout, and Chainlink feeds. Those records are public or governed by those providers. We do not control Robinhood’s or the chain’s retention.
Images you confirm at deploy are pinned through Pinata (IPFS). Anyone with the URI can fetch them.
How we use information
- Operate the desk, quotes, and product deploys.
- Show your portfolio and activity.
- Secure the service and debug failures.
- Comply with law if we are legally required to.
We do not sell your personal information.
Cookies and similar tech
We use local storage and similar browser storage for theme and layout. Authentication cookies or tokens may be set by Privy. We do not run a third-party advertising pixel on the desk.
Retention
Draft products and activity events are kept while needed to run the product. You can disconnect your wallet at any time. Onchain deployments and IPFS pins cannot be fully deleted from public networks.
Contact
Privacy questions: legal@example.com. Support: support@example.com.