Ascend ← Back to app

Trust & Security

Last updated: 12 August 2026

Ascend can see the account data you authorize. It can never touch your accounts. It helps you understand what you own, what changed, and what may need attention without giving Ascend trading or money-movement permissions.

How Ascend is designed

Quick answers

Can Ascend act on my accounts?No. Ascend is built for read-only visibility and explanation.
Does wallet tracking require custody?No. Ascend reads supported balances from public wallet addresses.
Is Ask Ascend advice?No. It is educational and informational, and you should not act on it alone. Learn how AI works in Ascend.
Can I leave?Yes. Settings include export and permanent account-delete controls.

Financial connections

Ascend does not store your brokerage credentials. SnapTrade handles brokerage authorization (Pro) and sends Ascend the read-only account data you authorize, such as balances, holdings, account names, activity, and institution names. Bank and other unsupported balances are entered manually. Ascend cannot trade or move money.

Wallet tracking

Wallet tracking is keyless. You add a public wallet address, and Ascend reads supported balances from public chains. Supported DeFi assets and nonnegative position equity after recognized in-protocol borrowing are included. Standalone borrow positions are not added as liabilities; add material borrowing as a manual debt. Ascend does not need custody access or signing access.

Ask Ascend and other AI

Ask Ascend analyzes the data available in your dashboard and explains what changed. Related features (Rundown, research, Signal, Podcast Tape, insights, Wrapped, digest) follow the same read-only boundary. They cannot trade, transfer, modify connected accounts, or make decisions for you.

Informational only — not financial, investment, legal, or tax advice. Read the AI transparency note.

Encryption and access controls

Production traffic is sent over HTTPS. Stored SnapTrade user secrets, authenticator secrets, and Ask Ascend's optional durable memory are encrypted at rest with application-managed encryption. Application routes isolate user records by account, and administrative routes enforce an administrator role. Sensitive actions such as export, erasure, and institution unlinks may require a fresh credential.

These controls reduce risk; they do not make any internet service risk-free. Ascend does not claim SOC 2 certification or an independent security audit unless a current report is published here.

AI data boundaries

AI features receive the minimum product context needed for the selected feature, which may include questions, balances, holdings, changes, ticker symbols, or public-source material. AI providers do not receive brokerage credentials, private keys, or permission to act on accounts. See AI Transparency for providers, chat storage, and limitation details.

Data freshness and estimates

Ascend depends on the data currently available from your connected accounts, public chains, market data, and anything you enter manually. Some balances, prices, property estimates, or manually entered values may be stale or estimated. Treat projections, comparisons, research, and AI explanations as context, not certainty. Learn how to read number quality.

Billing

Pro may be purchased on the web through Stripe or, when available, through Apple in-app purchase in the iOS app. Your plan changes which features are available, not what Ascend can do with your accounts. See the Terms of Service for renewal, cancellation, and refund posture.

Device lock

Face ID / Touch ID is a device-local privacy lock. It helps prevent someone holding an unlocked device from opening Ascend and seeing balances. It is not a replacement for account authentication and does not give Ascend access to biometric data.

Disconnect, export, and delete

You can remove individual account rows, disconnect full linked sources, export account data, or permanently delete your account from Settings. Disconnecting a source revokes supported upstream access and removes its current synced accounts from your dashboard; those rows are then kept, hidden, for 90 days so reconnecting restores your history, and are permanently deleted after that. Manual accounts, saved net-worth history, and other connections are not affected. Exports omit passwords, tokens, secrets, authenticator material, and provider-connection material. Account deletion first attempts to revoke supported upstream access, then purges user-scoped data. Failed provider revocations stay pending for retry. An active App Store subscription does not delay account deletion, but deletion does not cancel Apple billing; manage that separately with Apple. See the Privacy Notice for retention and backup caveats.

Providers and subprocessors

Ascend relies on financial connection, hosting, database, payment (Stripe and, when enabled, Apple), email, push delivery, market-data, blockchain, and AI providers. The current categories and named providers are listed in the Privacy Notice. Provider availability, coverage, and policies can change.

Report a vulnerability

If you believe you've found a security vulnerability in Ascend, email privacy@ascendwealth.app with enough detail to reproduce it. You'll get an acknowledgment within 3 business days and updates as the issue is investigated and fixed. Please make a good-faith effort to avoid accessing other users' data, degrading the service, or publicly disclosing before a fix ships — good-faith research conducted that way will not be met with legal action. A machine-readable pointer lives at /.well-known/security.txt.

Internal access and incident response

Administrative access is role-restricted. Support diagnostics are designed to show connection health, provider, account type, errors, and timestamps before sensitive financial fields. Privileged actions and sensitive support access are logged. Suspected security incidents should be reported to privacy@ascendwealth.app; Ascend will investigate, contain access where possible, preserve relevant records, and notify affected users when appropriate.

Same boundaries on every plan

Your plan changes which features are available, not what Ascend can do with your accounts. Connections remain read-only where supported; Ascend cannot trade or move money.

See also our Privacy Notice, Terms of Service, AI Transparency, Number Quality, and Data Guide.

← Back to Ascend