Privacy notice
Last updated August 23, 2026Prototype scope
Sanad currently runs as a local prototype. Account credentials are stored in the local PostgreSQL database, passwords are salted and hashed, and session tokens expire after 30 days. This prototype does not send email or analytics data.
Information used
We process the name and email you enter, your account setup choices, simulated portfolios, strategy versions, simulated funding activity, and local operational logs required to run the service.
Financial credentials
Custodian credentials are server-side secrets and must never be entered into the public website or committed to source control. Client assets should remain in client-titled accounts with a qualified custodian.
Before a public launch
This notice must be replaced with counsel-reviewed disclosures covering vendors, retention, security practices, regulatory books and records, data-subject rights, incident response, and applicable state and federal law.