Privacy Policy

Last updated September 21, 2026

1. Overview

This policy explains what ChainStock collects, why, and how it’s handled. ChainStock is a non-custodial app - we never hold your funds or private keys.

2. Information we collect

  • Wallet addresses - the public addresses of wallets you connect (wallet-adapter for sending, Privy for claiming), plus whatever a Solana block explorer would already show about them.
  • Email address - only if you sign in with email via Privy, or if a gift sender enters your email as the recipient (stored to match you to that gift at claim time, and hashed before being recorded on-chain - your plaintext email never touches the blockchain).
  • Gift details - amount, stock, recipient (wallet/email/open-link), status, and the on-chain transaction signatures for anything you send or claim.
  • Anti-bot signals - a hashed IP address and Cloudflare Turnstile result, recorded only for open-link (FCFS) claim attempts.

3. How we use it

To operate the core product: index and display your gift history, verify claim eligibility, run anti-bot checks, and show accurate gift/claim links. We don’t sell your data or use it for third-party advertising.

4. How we share it

We share data with the service providers ChainStock is built on (see Terms §8: Privy, Solana RPC providers, Cloudflare) only as needed to run the product, and if required by law or to protect against fraud or abuse.

5. Blockchain data

Solana is a public, permanent ledger. Wallet addresses, transaction amounts, and gift status are publicly visible and permanently recorded on-chain once confirmed, whether or not you keep using ChainStock. We can’t delete or alter on-chain data - only what lives in our own database.

6. Cookies and local storage

We use your browser’s local storage for functional purposes - e.g. remembering your in-progress gift draft, and whether you’ve accepted these Terms - not for third-party ad tracking.

7. Data retention

Gift and claim records are kept indefinitely, matching the permanence of the on-chain record they mirror. You can ask us to delete off-chain data tied to your email address; wallet addresses and on-chain activity can’t be un-recorded.

8. Security

We take reasonable technical measures to protect the data we hold, but no system is perfectly secure. You’re responsible for your own wallet security - see Terms §3.

9. Your choices

You can disconnect your wallet or sign out at any time. Declining these Terms means you can browse the app but can’t send or claim a gift.

10. International users

ChainStock may process data in different countries than where you live. By using the service you consent to that transfer, to the extent permitted by local law.

11. Children’s privacy

ChainStock isn’t directed at children and shouldn’t be used by anyone under the age required to hold cryptocurrency or securities-linked assets in their jurisdiction.

12. Changes to this policy

We may update this policy as the product evolves. Material changes require re-acceptance before you can send or claim another gift.

13. Contact

Questions about this policy? Reach out through the app.