How does PortfolioPilot keep my data secure?
Security is built into every layer of PortfolioPilot. Here's exactly what protects you:
- 256-bit encryption: all data in transit and at rest is encrypted using the same standard as major banks and financial institutions.
- No credential storage: we never store your banking login, password, or security codes. Account connections go through Plaid, SnapTrade, and Yodlee - trusted providers serving millions of users - which handle authentication entirely on their side.
- Read-only access: PortfolioPilot can see your holdings and balances but cannot move money, place orders, or make any changes to your accounts.
- Two-factor authentication (2FA): You can enable 2FA on your PortfolioPilot account for an extra layer of login security. Go to Settings → Account settings → Security → "Enable" 2FA.
- Stripe handles payments: your credit card information is processed by Stripe - a PCI-compliant payment processor - and never touches our servers.
- No data sales: we do not sell your personal or financial data to any third party, ever.
- You stay in control: you can disconnect any account at any time from Track → Net Worth, and request deletion of all personal data from Settings → Account settings → "Delete account".
For full details, see: portfoliopilot.com/security