Privacy Policy
This Privacy Policy describes how JDT Investments LLC ("JDT," "we," "us," "our") collects, uses, stores, and protects information when you use the CEF Screener service at cef-screener.com. By using the Service, you consent to the practices described in this Policy.
Information We Collect
We collect the following types of information:
| Category | Data Collected | Purpose |
|---|---|---|
| Account Data | Email address, encrypted password hash | Account creation, authentication, communications |
| Profile Data | Subscription status, trial end date, account flags (paid, suspended) | Access control, billing management |
| Device Fingerprint | A non-reversible hash derived from browser and device attributes | One-device-per-account security enforcement |
| Session Data | Session tokens, login timestamps, last-active timestamp | Authentication, session management, security |
| Usage Data | Session start/end times, page load events (anonymous) | Service improvement, feature usage analysis |
| Technical Data | IP address (logged by infrastructure), browser type | Security, fraud prevention, standard web logs |
We do not collect: real names, physical addresses, phone numbers, payment card details (payments handled by third-party processors if applicable), or Social Security numbers.
How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the CEF Screener Service;
- Authenticate your identity and manage your account;
- Enforce subscription status and access controls;
- Detect and prevent fraud, credential sharing, and unauthorized access;
- Send transactional emails (account confirmation, payment receipts, service notices);
- Improve and develop new features based on aggregate usage patterns;
- Comply with applicable legal obligations.
We do not use your information for advertising, marketing to third parties, or AI training purposes.
Device Fingerprinting
To enforce our one-device-per-account policy and prevent credential sharing, the Service generates a device fingerprint when you log in. This fingerprint is a one-way hash computed from browser and device characteristics (such as screen resolution, installed fonts, timezone, and browser configuration). The raw characteristics are not stored — only the resulting hash.
The fingerprint hash is stored in your account profile on our Supabase-hosted database. It is used solely to verify that your account is being accessed from your registered device. By using the Service, you consent to this fingerprint collection and processing as described.
Certain accounts designated by JDT (such as administrative accounts) are exempt from device fingerprint enforcement.
Browser Storage (Local Data)
The Service uses your browser's local storage to store certain data entirely on your device. This data never leaves your browser and is not transmitted to our servers. It includes:
- Your watchlist of CEF tickers;
- Your portfolio holdings (manually entered positions);
- Your personal ratings and column layout preferences;
- A cached copy of fund data for offline viewing.
Because this data lives only in your browser, it is not backed up by JDT and will be lost if you clear your browser data. You may clear this data at any time through your browser's site data settings.
Third-Party Services
We rely on the following third-party infrastructure providers who may process your data:
| Provider | Role | Data Involved |
|---|---|---|
| Supabase | Authentication, database hosting | Email, encrypted password, profile data, session tokens, device fingerprint hash |
| Cloudflare | Content delivery, edge hosting | IP address, standard HTTP request logs; not linked to your account |
| Resend | Transactional email delivery | Email address (only when sending account-related emails) |
Each provider is contractually bound to process data only as instructed and in accordance with applicable privacy laws. We do not use Google Analytics, Facebook Pixel, or other third-party advertising trackers.
Data Sharing
We do not sell, rent, or trade your personal information to any third party. We may share your information only in the following limited circumstances:
- Service Providers: With the infrastructure providers listed in Section 5, as necessary to operate the Service;
- Legal Compliance: When required by law, court order, or other legal process, or to protect the rights, property, or safety of JDT, our users, or the public;
- Business Transfer: In connection with a merger, acquisition, or sale of substantially all assets of JDT, subject to the acquirer's commitment to maintain this Privacy Policy.
Data Retention
We retain your account information for as long as your account is active or as needed to provide the Service. If you request account deletion, we will delete or anonymize your personal data within 30 days, except for data we are required to retain for legal or compliance purposes (such as transaction records).
Usage logs and session data are retained for up to 12 months, after which they are deleted or aggregated anonymously.
Security
JDT takes reasonable technical and organizational measures to protect your personal information from unauthorized access, disclosure, alteration, or destruction. These measures include:
- HTTPS encryption for all data in transit (enforced by Cloudflare);
- Supabase Row Level Security (RLS) restricting database access;
- API keys and service credentials stored only on JDT-controlled systems, never in public repositories;
- Session token validation on every protected data request;
- Device fingerprint enforcement to detect unauthorized access.
No method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security. If you believe your account has been compromised, contact us immediately.
Your Rights
You have the following rights with respect to your personal information:
- Access: Request a copy of the personal data we hold about you;
- Correction: Request correction of inaccurate data;
- Deletion: Request deletion of your account and associated personal data;
- Portability: Request your data in a portable format where technically feasible;
- Objection: Object to certain processing activities.
To exercise any of these rights, contact us at JDTinvestLLC@gmail.com. We will respond within 30 days. We may need to verify your identity before processing requests.
Note: Certain data (such as data required for legal compliance or security logs) may not be deletable on request. We will inform you if this applies to your request.
Children's Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that a child under 18 has provided us personal information, we will delete it promptly. If you believe a child has provided us personal information, contact us at JDTinvestLLC@gmail.com.
Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Effective Date" at the top of this page and notify you by email or through the Service. Your continued use of the Service after changes are posted constitutes your acceptance of the revised Policy.
The current version is always available at cef-screener.com/privacy.html.
Contact Us
For privacy-related questions, data requests, or concerns, contact:
- JDT Investments LLC
- Email: JDTinvestLLC@gmail.com
- Website: cef-screener.com
Also see our Terms of Use.