Privacy Policy

Last updated: June 30, 2026

1. What We Collect

We collect only what is necessary to operate the Service:

  • Email address — required to create an account and send order notifications
  • Name — display name on your account (can be a pseudonym)
  • Order data — service, quantity, target URL, order status, timestamps
  • Deposit data — transaction amount, crypto gateway invoice ID, confirmation time
  • IP address — logged for security, rate limiting, and fraud prevention
  • Support ticket content — what you send us via the ticket system

We do not collect your real name, address, phone number, or government ID. We do not perform KYC.

2. What We Don't Collect

We do not store credit card numbers, bank details, or crypto wallet private keys. Payments are handled by third-party gateways (Cryptomus, NOWPayments) under their own privacy policies. We only see the payment confirmation and amount — not your wallet address or transaction history.

3. How We Use Your Data

We use your data to:

  • Process and track your orders
  • Credit wallet balances after confirmed deposits
  • Send order status emails and support responses
  • Detect and prevent fraud or platform abuse
  • Maintain internal audit logs for billing accuracy

We do not send marketing emails. We do not sell your data. We do not share your data with advertisers.

4. Third-Party Providers

To fulfill orders, we pass the following data to our upstream SMM provider: the service ID, order quantity, and the target URL (e.g., Reddit post or profile link) you submit. No other personal information is shared.

Payment processing is handled by Cryptomus and NOWPayments. Their privacy policies govern how they handle payment data.

5. Data Retention

We retain account and order data for as long as your account is active. If you request account deletion (via support ticket), we will delete your personal data within 30 days, subject to legal and audit log retention requirements. Transaction logs may be retained longer for financial compliance.

6. Security

All data is transmitted over HTTPS. Passwords are hashed using bcrypt. We do not store plaintext passwords. Access to production systems is limited to authorized operators. Database backups are encrypted.

7. Cookies

We use a session cookie to keep you logged in and a CSRF token cookie for security. We do not use tracking cookies, advertising cookies, or third-party analytics cookies.

8. Your Rights

You may request access to, correction of, or deletion of your personal data at any time by opening a support ticket. We will respond within 30 days.

9. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated via the dashboard or email. Continued use of the Service after changes are posted constitutes acceptance.

10. Contact

For privacy-related requests, open a support ticket from your dashboard.