Legal

Privacy policy

Last updated: 30 July 2026

This policy explains what personal data Trading Academy (tradingakademiq.com) collects, why it collects it, who it is shared with and what rights you have over it. Write to us through the contact page for any question or request concerning your data.

1. Who processes your data

The data controller is Trading Academy (tradingakademiq.com), owned by Hristo Kalpakov, based in Bulgaria (EU).
[Full business details — company number and registered address, required by Bulgarian data protection and e-commerce law — to be added here before the site goes live.]

2. What data we collect

  • Contact form data: name, email, phone (optional) and the content of your message — processed through Netlify Forms.
  • Email for the free excerpt: the email address only, used to send you the opening chapter and information about the book.
  • Order data: email, name (if provided) and payment data — processed by Stripe (card payments). We keep a record of the order (email, product, status, number of downloads) in secure storage (Netlify Blobs) so we can deliver and protect access to the book and the course.
  • Technical data: IP address and device data, processed automatically by our hosting provider (Netlify) for security and to operate the site.
  • Analytics and advertising cookies: Google Analytics 4, Meta (Facebook) Pixel and TikTok Pixel — loaded only after your explicit consent through the cookie banner. See section 5 below.

3. What we use the data for

  • To fulfil your order — delivering the PDF and access to the video course to the email you provided.
  • To answer questions sent through the contact form.
  • To send the free excerpt if you requested it.
  • To protect the content against unauthorised sharing (private download links are limited in number, and the PDF is stamped with the buyer’s email address).
  • With your consent — to analyse traffic and measure advertising campaigns (Google, Meta, TikTok).

4. Legal basis for processing

  • Performance of a contract — for data relating to the order and its delivery.
  • Consent — for email marketing (the free excerpt) and for analytics/advertising cookies. Consent can be withdrawn at any time.
  • Legitimate interest — for basic site security and abuse prevention (for example download limits).

5. Cookies

By default the site uses only strictly necessary cookies. Google Analytics 4, Meta Pixel and TikTok Pixel are loaded only after you press “Accept” in the cookie banner on your first visit. You can change your choice at any time by clearing your browser cookies or writing to us through the contact page.

6. Who we share data with

We do not sell personal data. We share it only with the providers needed to run the site, each of which processes data under its own privacy policy:

  • Stripe — card payment processing.
  • Netlify — site hosting, order storage (Netlify Blobs) and contact form delivery (Netlify Forms).
  • Resend — sending transactional emails (delivery of the book and course, confirmations).
  • Google, Meta, TikTok — only where consent to analytics/advertising cookies has been given.

7. Data retention

Order data is kept for as long as necessary for accounting, tax and warranty purposes (normally until the end of the relevant limitation period under Bulgarian law). Emails from the free excerpt and the contact form are kept for up to 24 months from the last contact, unless you ask for earlier deletion.

8. Your rights

Under the General Data Protection Regulation (GDPR) you have the right to:

  • access the data we hold about you;
  • have inaccurate data corrected;
  • have your data erased (the “right to be forgotten”);
  • restrict or object to processing;
  • data portability;
  • withdraw consent at any time, without affecting the lawfulness of processing before withdrawal;
  • lodge a complaint with the Bulgarian Commission for Personal Data Protection (cpdp.bg), or with your local supervisory authority, if you believe your rights have been breached.

To exercise any of these rights, write to us through the contact page, quoting the email address used for the order or enquiry.

9. Security

The private link to the customer panel is unique to each order; PDF downloads are limited to 10, and every page is stamped with the buyer’s email address. Signing in with an email address uses a one-time code that is stored hashed and valid for 15 minutes. The administration panel is protected by a key and is not publicly accessible.

10. Changes to this policy

We may update this policy from time to time. The date of the last update is shown at the top of the page.

← Home