Skip to main content
Back

Privacy policy

What we collect, why we hold it, and how long it stays.

Last updated 3 August 2026

Not yet legally reviewed. This document describes how the platform actually works, but it has not been checked by counsel and must not be relied on as the final agreement.

What we collect

Account data: your name, email address and mobile number, and the timestamps at which each was verified.

Session data: IP address, user agent and a device fingerprint for each active session. This is what makes the session list in your settings useful, and what lets us rate-limit abuse.

Financial data: your ledger entries, wallet balances, subscription history and withdrawal requests, including the payout details you supply with a request.

Support data: the tickets you open and any files you attach to them.

Why we hold it

To operate the account, to settle and audit rewards, to process withdrawals, and to meet the record-keeping obligations that come with paying money out.

Every state change on your account is written to an audit log with the actor and the before and after values. This log is append-only and is what lets us answer, later, exactly what happened to your money and who did it.

Retention

Ledger entries and audit records are retained for as long as the law requires us to keep financial records, and cannot be deleted on request — they are append-only by design and by obligation.

Support attachments, session records and marketing preferences are deleted on request.

Sharing

Payment and payout providers receive the minimum needed to process a transaction. We do not sell personal data.

CAPTCHA challenges are served by Cloudflare Turnstile, which receives the request metadata needed to score the challenge.

Your rights

You can request a copy of your data, correct it, or ask for deletion of anything not subject to the retention rules above, by opening a support ticket.