LEGAL REVIEW REQUIRED — placeholder Privacy Policy.
What we hold. Your account identifier (a wallet address, or an email address if
your account has one); the destinations you ask us to deliver to (an email
address, a Telegram chat id, a Slack incoming-webhook URL); the rules you
create and the record of when they fired; and activity, audit and request logs,
which include IP addresses and exist so that we can tell you what happened on
your account and so we can rate-limit abuse.
What we never hold. Exchange API credentials. The service has no such field:
it places no orders, so there is nothing to place them with.
How the secrets are protected. Your DMTrading API keys are stored only as
SHA-256 hashes — we cannot show you a key again because we do not have it. If
you use two-factor authentication its secret is encrypted at rest. A Slack
webhook URL is treated as a secret, because anyone holding one can post into
your workspace.
On-chain reading. To size your account we read the NSF balance of the wallet
you proved you own. That is a public blockchain query. We never ask for, and
cannot use, a private key or a seed phrase — signing in proves ownership by
signing a message, which moves nothing.
Who else sees it. Only the services needed to run this one: our hosting and
infrastructure providers, and the delivery channel you chose, which sees the
alert we send you. We do not sell your data and we do not use it for
advertising.
Your choices. You can delete a delivery channel, revoke an API key or delete a
rule at any time, in the app. For access to, or deletion of, the rest of your
account, write to
[email protected].