Privacy Policy
Last updated: April 3, 2026
DRAFT DOCUMENT
These documents are provided for informational purposes only and have not been reviewed by qualified legal counsel. They do not constitute legal advice. Final versions will be published before mainnet launch.
1. Introduction
This Privacy Policy ("Policy") describes how AlphaBot ("Company," "we," "us," or "our") collects, uses, stores, and protects information in connection with the AlphaBot Protocol, the Platform, and all associated services (collectively, the "Protocol").
By using the Protocol, you consent to the data practices described in this Policy. If you do not agree with these practices, please do not use the Protocol.
2. Non-Custodial Protocol — Minimal Data Collection
The AlphaBot Protocol is a non-custodial, decentralized protocol deployed on the Solana blockchain. By design, the Protocol requires minimal personal data collection. We do not require account registration, we do not collect personal identification information, and we never access or control your private keys or seed phrases.
Interaction with the Protocol is wallet-based. The only persistent identifier associated with your use is your public wallet address, which is inherently public on the Solana blockchain.
3. Information We Collect
3.1 Blockchain Data (Public)
When you interact with the Protocol, your transactions are recorded on the public Solana blockchain. This includes deposit amounts, redemption amounts, wallet addresses, and timestamps. This data is inherently public, immutable, and beyond our control.
3.2 Wallet Connection Data
When you connect your wallet to the website, we process your public wallet address and wallet provider type (e.g., Phantom, Solflare) to facilitate interaction with the Protocol. We never access your private keys, seed phrases, or any other sensitive wallet credentials.
3.3 Server Logs
Our web servers may automatically record certain technical information in access logs, including IP addresses, browser type and version, operating system, referring URLs, pages visited, and timestamps. Server logs are retained for a maximum of 90 days and are used solely for security monitoring, abuse prevention, and debugging.
3.4 Communication Data
If you contact us via Discord, Telegram, email, or any other communication channel, we may collect the content of those communications, your username or handle on the relevant platform, and any attachments you provide. This data is used solely to respond to your inquiry.
3.5 Information We Do NOT Collect
- Full legal names or physical addresses
- Government-issued identification numbers
- Bank account or credit card information
- Biometric data
- Private keys, seed phrases, or wallet passwords
- Browsing history outside of the Platform website
- Location data (beyond IP-derived country for geo-restriction)
4. Legal Basis for Processing
For users in the European Economic Area (EEA), United Kingdom, or Switzerland, we process personal data under the following legal bases:
| Data Type | Legal Basis | Purpose |
|---|---|---|
| Wallet address | Contract performance | Required to facilitate Protocol interaction |
| Server logs (IP) | Legitimate interest | Security monitoring and abuse prevention |
| IP-derived country | Legal obligation | Geo-restriction compliance |
| Communication data | Legitimate interest | Responding to user inquiries |
5. How We Use Information
5.1 Protocol Operation
Wallet addresses are used to process deposits, redemptions, and display portfolio information on the website dashboard.
5.2 Security
Server logs and IP addresses are used to detect and prevent unauthorized access, abuse, and attacks against the Protocol's infrastructure.
5.3 Compliance
IP-derived country information is used to enforce geographic restrictions as described in the Terms of Service. We do not store precise location data.
5.4 Communication
Communication data is used solely to respond to your inquiries and provide support. We do not use this data for marketing purposes unless you have explicitly opted in to receive communications from us.
6. Cookies and Tracking Technologies
6.1 Current Practice
The AlphaBot website does not use cookies, tracking pixels, web beacons, or third-party analytics scripts. No cookie consent banner is required because no cookies are set.
6.2 Future Changes
If we introduce cookies or tracking technologies in the future, this Policy will be updated accordingly, and appropriate consent mechanisms will be implemented before any such technologies are deployed.
7. Data Sharing and Disclosure
7.1 No Sale of Data
We do not sell, rent, trade, or otherwise commercially transfer any personal information to third parties.
7.2 Service Providers
We may share limited information with trusted service providers who assist in operating the Protocol's infrastructure (e.g., hosting providers, DNS services). These providers are contractually obligated to protect your information and use it only for the purposes for which it was disclosed.
7.3 Legal Requirements
We may disclose information if required to do so by law, court order, or governmental request, or if we believe disclosure is necessary to (a) comply with applicable law; (b) protect the rights, property, or safety of the Company, its users, or the public; or (c) detect, prevent, or address fraud, security, or technical issues.
8. Data Retention
8.1 Server Logs
Server access logs containing IP addresses are automatically deleted after 90 days.
8.2 Communication Data
Communication data (emails, Discord messages, Telegram messages) is retained for as long as necessary to resolve your inquiry, plus an additional 12 months for quality assurance and dispute resolution purposes.
8.3 Blockchain Data
Blockchain data is permanent and immutable. We have no ability to delete, modify, or restrict access to data recorded on the Solana blockchain.
8.4 Wallet Addresses
Wallet addresses associated with Protocol interaction are retained in our off-chain systems only for the duration of active use. If no interaction is detected for 24 months, off-chain records may be purged.
9. Data Security
We implement reasonable administrative, technical, and physical safeguards to protect information from unauthorized access, alteration, disclosure, or destruction. These measures include encrypted communications (TLS/SSL), access controls, firewall protection, and regular security reviews.
However, no method of electronic transmission or storage is 100% secure. We cannot guarantee the absolute security of your information and disclaim liability for any unauthorized access that occurs despite our reasonable security measures.
10. Your Rights
10.1 GDPR Rights (EEA/UK/Switzerland)
If you are located in the EEA, UK, or Switzerland, you have the right to:
- Access — request a copy of the personal data we hold about you
- Rectification — request correction of inaccurate or incomplete data
- Erasure — request deletion of your personal data ("right to be forgotten")
- Restriction — request restriction of processing in certain circumstances
- Portability — request transfer of your data in a structured, machine-readable format
- Objection — object to processing based on legitimate interest
- Complaint — lodge a complaint with your local data protection authority
10.2 Blockchain Limitation
Please note that blockchain data is public and immutable by design. The rights described above apply only to off-chain data that we control. We cannot modify, delete, or restrict access to any data recorded on the Solana blockchain.
10.3 How to Exercise Your Rights
To exercise any of the rights described above, contact us via @AlphaBotFun on X or Discord. We will respond to your request within 30 days. We may request verification of your identity before processing your request.
11. International Data Transfers
The Protocol's infrastructure may be hosted in multiple jurisdictions. By using the Protocol, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection laws. We take reasonable steps to ensure that your information receives an adequate level of protection in the jurisdictions in which we process it.
12. Children's Privacy
The Protocol is not intended for use by individuals under the age of 18 (or the age of legal majority in their jurisdiction). We do not knowingly collect personal information from children. If we become aware that we have collected personal information from a child, we will take steps to delete that information promptly.
13. Third-Party Links
The website may contain links to third-party websites or services, including but not limited to wallet providers, block explorers, and decentralized exchanges. We are not responsible for the privacy practices or content of these third-party services. We encourage you to review the privacy policies of any third-party services before providing them with your information.
14. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. Changes will be effective upon posting to the website with an updated "Last updated" date. We encourage you to review this Policy periodically. Your continued use of the Protocol after any changes constitutes acceptance of the revised Policy.
15. Contact Information
For privacy-related questions, data access requests, or concerns, reach out via @AlphaBotFun on X or Discord.