Spikora Club
Last updated: 1 September 2026
Version 1.0
Legal & Compliance

Privacy Policy

Spikora Club is committed to protecting your personal information. This policy explains what data we collect, why we collect it, and how it is handled when you use our platform.

I

Who We Are

Spikora Club is an online trading tools platform that provides automated bots, market charts, and copy trading features for use with the Deriv brokerage platform. We are the data controller for personal information collected through spikora.club and its subdomains.

For questions about this policy or your data, contact us at support@spikora.club.

II

Information We Collect

We collect the following categories of information:

Category Examples Why collected
Account data Name, email address, password (hashed) To create and manage your account
Deriv connection Deriv account ID, API token, balance, currency To sync your balance and enable bots
Platform activity Bots purchased, activation status, Spikora ID To deliver your subscriptions and track usage
Technical data IP address, browser type, device info, session logs Security, fraud prevention, and debugging
Communications Messages sent via our contact form To respond to your enquiries
We do not collect or store your Deriv account password. The API token used to connect Deriv to Spikora Club grants limited trading and read access only. We are never given access to fund withdrawals or payment methods.
III

How We Use Your Information

We use your personal data only for the purposes it was collected:

  • To create, authenticate, and maintain your Spikora Club account.
  • To connect your Deriv account, sync your balance, and enable bots you have purchased.
  • To process payments and deliver purchased bot access.
  • To send transactional emails such as account confirmation and purchase receipts.
  • To investigate security incidents and prevent fraudulent activity.
  • To improve platform performance based on aggregated, anonymised usage data.

We do not sell, rent, or share your personal data with third parties for their marketing purposes.

IV

Deriv API Token Storage

When you connect your Deriv account via OAuth, we store the API token Deriv issues to us. This token is used server-side to:

  • Retrieve your account balance for display on your dashboard.
  • Authenticate WebSocket connections for live chart data on Spikora subdomains.
  • Execute trades on your behalf when a bot is active.

The token is encrypted at rest in our database. You can revoke it at any time by visiting the Deriv security settings page or by clicking Disconnect on the Spikora Deriv Connection page. Disconnecting removes the token from our systems immediately.

V

Cookies and Tracking

We use session cookies and a CSRF token cookie that are strictly necessary for the platform to function. We do not use advertising or third-party analytics cookies.

A session cookie is set when you log in and is cleared when you log out or close your browser. No persistent tracking cookies are placed on your device.

VI

Data Retention

We retain personal data for as long as your account is active or as needed to provide services. Specifically:

  • Account data is kept until you delete your account, after which it is removed within 30 days.
  • Deriv API tokens are removed immediately when you disconnect your Deriv account.
  • Transaction records may be retained for up to 7 years for legal and accounting compliance.
  • Technical logs are retained for up to 90 days for security purposes.
VII

Third-Party Services

We use a small number of trusted third-party services to operate the platform:

  • Deriv — the brokerage platform your account connects to. Deriv has its own privacy policy governing data held within your Deriv account.
  • Payment processor — used to process bot purchases. We do not store card details on our servers.
  • Hosting provider — our servers where the application and database are hosted.

We do not use Google Analytics, Facebook Pixel, or other advertising tracking tools.

VIII

Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access — request a copy of the personal data we hold about you.
  • Correction — ask us to correct inaccurate or incomplete data.
  • Deletion — request that we delete your account and associated personal data.
  • Portability — receive your data in a structured, machine-readable format.
  • Objection — object to processing of your data in certain circumstances.

To exercise any of these rights, contact us at the address below. We will respond within 30 days.

IX

Security

We implement technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure. These include encrypted data storage, HTTPS-only communication, hashed passwords, and access controls limiting which staff can access user data.

No system is completely secure. If you believe your account has been compromised, contact us immediately at support@spikora.club.

X

Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. For material changes, we will notify registered users by email before the change takes effect.

Continued use of Spikora Club after a policy update constitutes acceptance of the revised terms.

XI

Contact Us

For any privacy-related questions, requests, or concerns:

Platform Spikora Club
Website spikora.club