Token Compass Privacy Policy
Applies To: tokencompass.info and any subdomains, plugins, dashboards, and smart-contract interfaces operated by Token Compass [the “Services”].
1] Who We Are
“Token Compass,” “we,” “our,” or “us” refers to the site operator identified in Section 20 [Contact]. This Privacy Policy explains how we collect, use, disclose, and safeguard information about visitors and users [“you”].
2] Scope
This Policy applies to information collected through the Services and through our official support channels. It does not apply to third-party websites, wallets, exchanges, or services we do not control.
3] Quick Summary [Not a substitute for the full Policy]
-
We collect limited personal data to operate the site, secure accounts, provide role-gated features, support purchases, and improve performance.
-
Wallet addresses and on-chain activity may be considered personal data in some jurisdictions [see Section 7].
-
We do not custody private keys and cannot reverse blockchain transactions.
-
We do not “sell” personal information as defined by the California CPRA and do not “share” it for cross-context behavioral advertising.
-
You have privacy rights that may include access, deletion, correction, portability, and opt-outs [see Section 14].
4] Information We Collect
4.1 Data you provide directly
-
Account and profile data: name, username, email, password [hashed], roles/permissions, country or state [if you provide it], support messages, and any content you submit.
-
Commerce data [if enabled]: billing name, email, shipping address, order history. Card data is processed by our payment processor; we do not store full card numbers.
-
Support and inquiries: forms, emails, and attachments you send to us.
4.2 Data collected automatically
-
Usage and device data: IP address, device identifiers, browser type, operating system, referring URLs, pages viewed, timestamps, approximate location [city/region], language, and similar diagnostics.
-
Event and error logs: crash reports, plugin logs, performance metrics.
-
Cookies and similar tech: pixels, local storage, session storage for authentication, analytics, preference, and security purposes [see Section 8].
4.3 Web3 and blockchain–related data
-
Wallet information: public wallet address, connected wallet type, signatures, message nonces, and chain IDs when you connect a wallet.
-
On-chain activity: transactions you broadcast [amounts, token IDs, contract addresses] are public on the blockchain by design. We may index, cache, or display this public information within the Services.
4.4 Data from third parties
-
Auth and social integrations [if enabled]: Discord, Telegram, Google, or similar [account ID, handle, avatar, roles].
-
Analytics and infrastructure: traffic and performance data from analytics and hosting/RPC providers.
-
Market/pricing feeds: quotes or indicative pricing from external or internal sources. These may include your IP and request metadata.
5] Why We Use Your Information [Purposes]
-
Provide and maintain the Services: account creation, role-gating, wallet connections, content rendering, estimators, and dashboards.
-
Security and fraud prevention: detect abuse, rate-limit, secure logins, verify ownership of wallets via message signing.
-
Customer support: respond to requests and resolve issues.
-
Analytics and improvement: monitor performance, debug, optimize features and UX.
-
Communications: send transactional notices, service updates, and [with your consent where required] marketing messages.
-
Legal and compliance: enforce Terms, comply with laws, and protect rights and safety.
6] Our Legal Bases [EEA/UK only]
Where GDPR/UK GDPR applies, we rely on:
-
Contract necessity [to provide requested Services],
-
Legitimate interests [e.g., security, analytics proportionate to your privacy],
-
Consent [e.g., non-essential cookies, marketing], and
-
Legal obligations [e.g., responding to lawful requests].
7] Wallets, Blockchain, and Public Data
Connecting a wallet shares your public address and chain metadata with us. Transactions are recorded on public blockchains and cannot be erased by us. In some jurisdictions, a wallet address may be treated as personal data. We may display or cache public on-chain data to provide features like holdings snapshots, estimator math, or activity feeds. Do not use the Services for activity you wish to keep private.
8] Cookies and Similar Technologies
We use:
-
Strictly necessary cookies: authentication, security, load balancing [always on].
-
Analytics cookies: traffic stats and performance [consent where required].
-
Preference cookies: save your settings.
You can manage preferences via our Cookie Settings link [/cookies] and browser controls. Blocking cookies may limit functionality.
9] How We Share Information
We disclose information in these situations:
-
Service providers: hosting, security, analytics, email delivery, support tools, payment processors, and RPC/infra providers [bound by confidentiality and use restrictions].
-
Blockchain and public disclosures: any on-chain actions are public by default and visible to anyone.
-
Legal and safety: to comply with law, enforce our Terms, or protect rights, property, and safety.
-
Business transfers: as part of a merger, financing, or sale of assets [with appropriate safeguards].
We do not “sell” or “share” personal information as defined by CPRA [see Section 12].
10] International Transfers
We may transfer data to countries outside your own. Where required, we use appropriate safeguards [e.g., EU Standard Contractual Clauses] and implement measures to protect your information.
11] Data Retention
We retain information only as long as needed for the purposes in Section 5:
-
Account data: for the life of the account and a reasonable period thereafter for backup, audits, and dispute resolution.
-
Logs and diagnostics: typically 12–18 months.
-
Analytics data: typically 14–26 months [tool dependent].
-
Support tickets: typically 24 months.
We may keep data longer if legally required or to establish or defend legal claims.
12] Your Choices: Marketing, Cookies, and Targeted Ads
-
Email marketing: unsubscribe using links in emails or contact us.
-
Cookies: adjust via Cookie Settings [/cookies] and browser controls.
-
Targeted ads: we do not “share” personal information for cross-context behavioral advertising as defined by CPRA. If this changes, we will update this Policy and provide opt-out controls.
13] Security
We use technical and organizational measures to protect personal information [access controls, encryption in transit, least-privilege practices]. No system is 100% secure. You are responsible for safeguarding your devices, passwords, seed phrases, and private keys.
14] Your Privacy Rights
Your rights depend on your location’s laws and may include:
-
Access [know what we have], correction, deletion, and portability.
-
Restriction or objection to certain processing [where applicable].
-
Withdraw consent [where consent is the legal basis].
-
Appeal a rights request decision [where provided by law].
How to exercise: email privacy@tokencompass.info with “Privacy Request” and your jurisdiction. We may verify your identity and respond within statutory timelines.
14.1 California Residents [CPRA]
We provide a Notice at Collection in Section 19. We do not “sell” or “share” personal information as defined by CPRA and do not use or disclose sensitive personal information for purposes other than those permitted by CPRA.
14.2 Texas Residents [TDPSA]
Texas residents have rights to access, correct, delete, and obtain a copy of personal data, and to opt out of targeted advertising, sale, and certain profiling. Submit requests to privacy@tokencompass.info. You may appeal a denial by replying “Appeal” to our decision email.
14.3 EEA/UK Residents
You may lodge a complaint with your local supervisory authority. We invite you to contact us first so we can address your concerns.
15] Children’s Privacy
The Services are not intended for children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided personal information, contact us to request deletion.
16] Third-Party Services and Links
Third-party wallets, DEX aggregators, analytics, infrastructure providers, or social platforms operate under their own terms and privacy policies. We are not responsible for their practices. Review those policies before using such services.
17] Do Not Track [DNT]
Some browsers send DNT signals. Because there is no universally accepted DNT standard, we currently do not respond to DNT signals. We will update this Policy if that changes.
18] Changes to This Policy
We may update this Policy from time to time. The “Effective Date” shows the latest version. Material changes will be posted on the site and, where required, notified to you.
19] Notice at Collection [California]
Categories collected: identifiers [e.g., email, IP, wallet address], commercial information [orders], internet or network activity [usage data], geolocation [approximate], and inferences [non-sensitive, limited].
Purposes: see Section 5.
Retention: see Section 11.
Selling/Sharing: we do not “sell” or “share” your information as defined by CPRA.
Sensitive information: we do not use or disclose sensitive personal information for additional purposes requiring a right to limit.
20] Contact
Privacy Email: privacy@tokencompass.info
Mailing Address: [Your Legal Entity Name], [Address], [City], Texas [ZIP], USA
If you are in the EEA/UK and wish to contact a representative or DPO, email privacy@tokencompass.info [subject: “DPO”].
