Effective: May 21, 2026
We collect the minimum necessary to operate the Service:
We use one first-party cookie:
Encrypted JWT. Contains only your wallet address. No tracking.
No analytics cookies. No advertising cookies. No third-party tracking scripts.
The Service fetches market data from third-party APIs (Polymarket Gamma API, Polymarket CLOB API). These requests are made server-side — your IP address is not sent to these third parties by our application.
If you interact directly with blockchain networks (e.g., signing messages via MetaMask), those interactions are subject to your wallet provider's privacy policy and the relevant blockchain's public ledger.
We do not maintain a persistent database of user data. Session tokens expire after 7 days. IP addresses used for rate limiting are held in server memory only and cleared on restart.
Since we hold minimal data tied to a pseudonymous wallet address, most traditional data subject requests (access, deletion) can be satisfied by simply not authenticating and clearing your browser cookies. Contact us at the address below if you have specific requests.
We implement industry-standard security measures: HTTPS, HTTP-only cookies, strict Content Security Policy, rate limiting, and CSRF protection. However, no system is 100% secure. Use the Service at your own risk.
We may update this Privacy Policy. Material changes will be reflected in the effective date above. Continued use constitutes acceptance of the updated policy.
Privacy questions: contact@dusches.com