Privacy policy
1. What we store
- Wallet addresses and on-chain activity, which are public by nature.
- An email address or social identity when you sign in through Privy; Privy holds it under its own policy.
- Product analytics events (Vercel Analytics and our own Umami instance), without personal identifiers beyond what a browser sends.
- Error reports (Sentry), with secrets removed before they leave our servers.
- IP addresses, used to rate limit requests and, hashed, to count coin reports.
- Images and metadata uploaded for coins, stored permanently on Arweave and screened by an image moderation service.
2. What we never store
Private keys, seed phrases, payment details or government identity documents. runup never asks for them.
3. Services we run on
Vercel (hosting), Supabase (database), Upstash (rate limits), Helius and other RPC providers (Solana access), Jupiter (swaps), Privy (sign in and embedded wallets), Sentry (errors), Sightengine (image moderation), Arweave through Irys (permanent storage). Each processes what it needs for its part and nothing more.
4. Retention and requests
On-chain data cannot be deleted by anyone. Off-chain data we hold about you (sign-in identity, analytics, error reports) is kept while the service runs and deleted on request where the law does not require otherwise. Write to hello@runup.trade.