← Back Svenska →

Privacy Policy

Last updated: 2026-07-02

Insynet ("we", "us", "the app") respects your privacy. This policy describes what personal data we collect, how we use it, and your rights under the EU General Data Protection Regulation (GDPR, 2016/679).

1. Data Controller

Insynet (Nenad Milicevic), Stockholm, Sweden. Contact: hej@insynet.se. Company registration number will be added here upon incorporation.

2. What data do we collect?

3. What we do NOT collect

4. How we use your data

5. Third-party services (data processors)

5b. Data about insiders (GDPR Art. 14)

The app's feed shows names, roles and reported trades of company insiders, fund managers and members of the US Congress. This information comes exclusively from public, legally mandated regulatory filings — EU MAR Article 19 via Finansinspektionen, SEC Form 4/13D/13G in the US, and US Congress disclosures under the STOCK Act (House Clerk) — and we display it unaltered for informational and journalistic purposes under legitimate interest (GDPR Art. 6(1)(f)). Because this data is not collected directly from the individuals concerned, we provide this disclosure under GDPR Art. 14. Insiders who have questions about their data in Insynet can contact hej@insynet.se.

6. Legal basis (GDPR Art. 6)

7. Data retention

We retain data while your account is active. When you delete your account, all personal data is erased within 30 days (except what law requires us to keep, e.g. accounting records for 7 years per Swedish Bookkeeping Act).

8. Your rights (GDPR)

Send requests to hej@insynet.se. We respond within 30 days.

9. Cookies on insynet.se

We use no tracking cookies. No ads. The website has no forms and collects no personal data. The only thing generated is anonymous server logs (IP address, page requested) which Netlify retains for up to 30 days for security purposes.

10. Security

All data is encrypted in transit (HTTPS/TLS 1.3) and at rest. Supabase is hosted in the EU (Stockholm region, eu-north-1). Sign-in is exclusively via Sign in with Apple — we use no passwords and therefore store no passwords (neither in plaintext nor hashed). In case of a personal data breach, we will notify you within 72 hours as required by GDPR.

11. Children

Insynet is not intended for anyone under 18. We do not knowingly collect data from minors. If you believe your child has used the app, please contact us and we will erase the data.

12. Changes to this policy

For significant changes, we will notify you by email or in-app notice at least 30 days in advance.

13. Contact

Questions? Email hej@insynet.se