Your information.
Your perspective.
Understand what information Mizora collects, how it is used and how to exercise your data rights.
1. The short version
Mizora Partners Ltd ("Mizora", "we", "us") runs mizorapartners.com and the Mizora Terminal. This page lists what we hold about you, why, who else touches it, how long we keep it, and how to make us delete it. It describes what the platform stores today, not what a template says a platform might store.
We do not sell your data and we do not share it with advertisers.
The data controller has to be named with a registered company address, and if Mizora sells into the EU or the UK it may also need a named representative there. Neither is settled, so neither is stated here. This is the same open question as the governing law clause in the terms.
2. What we collect
2.1 When you register
- Email address
- Full name
- Phone number
- A username, and a password which is stored only as a hash
- Country, if you set one
- Display name and avatar, if you set them
- Your answer to "how did you hear about us", if you give one
We do not ask for identity documents. We do not hold a passport, a driving licence or a proof of address for anybody, and no part of the platform collects one today.
2.2 When you pay
You pay by card or in cryptocurrency. Card payments are handled by Stripe, our payment processor: you enter your card details on Stripe’s checkout page, and we receive only the payment reference, the amount and whether it succeeded. We never see or store your card number. If you pay in cryptocurrency, you send coin from your own wallet to an address we show you. We store the payment reference, the amount in US dollars and in coin, which coin and network you used, the deposit address we gave you, and the transaction hash once the payment is seen on-chain.
We never see, ask for or store a private key, a seed phrase or a wallet password.
2.3 When you take a payout
To pay you we need the destination you choose: a bank account, a USDT address and network, or a Wise account, together with the name on it. We store the method, the destination detail, the amount and the date.
2.4 When you contact us
Support tickets, their replies, and live chat messages are stored on our own servers with your account. Emails you send us are stored in our mailbox.
2.5 While you use the platform
- Trading data: every order, fill, position, note and journal entry you create, and the performance figures we calculate from them.
- Session data: your IP address, the time you signed in, and the device the session belongs to. This is how remembered logins are revoked when a password changes.
- Server logs: the usual web request records, including IP address, path and user agent.
- How you found us: a first-touch cookie named
mzsrcrecords the referring site, the landing page, any campaign tags on the link and any advertising click id. It is written the first time you arrive and never overwritten, so the visit that brought you here still gets the credit if you register weeks later. It holds no name, email or anything else that identifies you on its own. It becomes linked to you only at the moment you register.
Cookies and browser storage are listed one by one on the cookies page.
3. Why we hold it
- To run your account: name, email, username, password hash, country, trading data, session data. Without these there is no service.
- To take payment and pay you: the payment reference and on-chain detail, and your payout destination.
- To answer you: tickets, chat and email.
- To enforce the rules: trading data, session data and IP, used to spot copy trading between accounts, group trading and account sharing.
- To keep the platform up: logs, rate limiting and abuse detection.
- To know which marketing works: the
mzsrcsource record, and product analytics if you have accepted them. - To email you about your account: confirmations, payout notices, breach notices and password resets. Marketing email only if you asked for it, and every marketing email has an unsubscribe link.
4. Who else touches it
We keep the list short on purpose.
- DigitalOcean hosts the server and the database. Everything above sits there.
- Resend sends our transactional and marketing email, so it processes your email address and the contents of the message.
- Microsoft Clarity records how pages are used on the marketing site. It loads only after you accept analytics cookies, and it is not loaded at all if you decline.
- Public blockchains. A payment to us is a public transaction on the Bitcoin, Ethereum or Solana network. Anyone can see it. That is a property of the network, not something we choose, and we cannot delete or amend it.
- Your payout rail. A bank, the USDT network or Wise receives what it needs to move the money to you.
- Authorities, where the law requires it or where we need to defend a legal claim.
We do not use advertising pixels on our own site. Nothing about your trading is passed to an advertiser.
5. What other users can see
Your display name and results can appear on tournament tables and leaderboards when you enter one. Your email address, phone number, real name, payout details and payment records are never shown to another user. If you would rather not appear in tournament listings, turn it off in your settings or write to us.
6. How long we keep it
- Account and trading data: while your account is open, and for 24 months after it is closed, so that a dispute about a payout or a breach can still be settled.
- Payment and payout records: 6 years after the transaction, because they are accounting records.
- Support tickets and chat: 24 months after the conversation ends.
- Server logs and session records: 90 days.
- Source attribution: the
mzsrccookie expires after 90 days. The single row it produces at sign-up is kept with the account.
The retention periods above are a proposal, not a legal minimum. The accounting period in particular depends on where Mizora Partners Ltd is incorporated. Confirm each one, or tell us to change it, before launch.
7. Your rights
Whatever your country, we will do all of this for anyone who asks:
- See it. We send you a copy of everything we hold about you.
- Correct it. Most of it you can edit in your settings. Write to us for the rest.
- Delete it. See section 8.
- Take it with you. We export your account and trading data in a machine-readable file.
- Stop marketing email. Use the unsubscribe link, or ask us. This is instant and does not affect account email.
- Object. Tell us you disagree with something we do with your data and a person will answer.
Write to privacy@mizorapartners.com. We answer within 30 days and we do not charge for it.
8. Deleting your data
Ask at privacy@mizorapartners.com from the address on the account, or open a support ticket from inside the platform. We close the account and delete your name, email, phone, username, display name, avatar, country, tickets, chat messages and payout destinations.
Two things survive, and we would rather say so than surprise you:
- Payment and payout records stay for the accounting period in section 6, reduced to the amount, the date and a reference.
- On-chain transactions are on a public blockchain and cannot be deleted by anyone, including us.
Trading records are anonymised rather than erased where we need them for aggregate statistics, which means they are no longer linked to you.
9. Where your data lives
The platform runs on a single server, and your data may be processed in a country other than the one you live in. Our email and analytics providers are based in the United States and may process data there.
10. Security
- Everything travels over TLS. The site refuses plain HTTP.
- Passwords are stored as hashes, never in readable form.
- Sessions and remembered logins are scoped, rotated, and revoked in full whenever a password is changed or reset.
- Login, registration, password reset and payment endpoints are rate limited.
- Application code is not writable by the web server, and access to the database is restricted to the application.
- The database is backed up nightly.
No system is safe from everything. If we ever have a breach that puts you at risk, we will tell you and the relevant authority, and we will tell you what actually happened.
11. People under 18
Mizora is for adults. We do not knowingly hold data about anyone under 18, and we delete it if we find it.
12. Other sites
Links out of our site lead to companies with their own policies. We are not responsible for what they do with your data.
13. Changes
When this policy changes, the date at the top changes and the new version is published here. If a change affects what we do with data we already hold, we email account holders before it takes effect.
14. Contact
- Data questions and requests: privacy@mizorapartners.com
- Anything else: support@mizorapartners.com
Related pages: Cookies, Terms, Risk disclosure.