Privacy Policy
Introduction
This Privacy Policy explains how Satoshi Studio ("we," "our," or "us") collects, uses, stores, and protects your personal information when you use our Persona Blockchain Wallet application and related services (collectively, the "Services").
We are committed to protecting your privacy while providing you with secure, decentralized financial tools. By using our Services, you agree to the collection and use of information in accordance with this Privacy Policy.
Information We Collect
Information You Provide Directly
- Account Information: Email address, username, and password when you create an account
- Profile Information: Display name, avatar, or other optional profile details
- Support Communications: Messages, feedback, or inquiries you send to our support team
- Identity Verification: Government-issued ID, proof of address, or biometric data (only when required by law)
Automatically Collected Information
- Device Information: Device type, operating system, browser type, IP address, and device identifiers
- Usage Data: Interaction patterns, feature usage, crash reports, and performance data
- Log Data: Access times, pages viewed, and referring URLs
- Blockchain Data: Public wallet addresses, transaction hashes, and on-chain activity (public by nature of blockchain)
Information from Third Parties
- Blockchain Network Data: Transaction confirmations, gas fees, and network status from Persona Blockchain nodes
- Third-Party Services: Information from integrated services you choose to connect (e.g., exchanges, dApps)
- Analytics Providers: Aggregated usage statistics from our analytics partners
How We Use Your Information
| Purpose | Description |
|---|---|
| Service Provision | To create and maintain your wallet, process transactions, and provide core functionality |
| Security | To detect fraud, prevent unauthorized access, and protect against malicious activity |
| Improvement | To analyze usage patterns, fix bugs, and develop new features |
| Communication | To send service updates, security alerts, and respond to support requests |
| Compliance | To meet legal obligations, regulatory requirements, and law enforcement requests |
| Personalization | To customize your experience and recommend relevant features |
Blockchain-Specific Privacy Considerations
The Persona Blockchain is a public distributed ledger. The following information is publicly visible to anyone:
- Your wallet address
- Transaction amounts and timestamps
- Smart contract interactions
- Token balances and transfers
We cannot delete, modify, or restrict access to on-chain data. This is an inherent characteristic of blockchain technology.
- We do not store plaintext private keys or seed phrases on our servers.
- When you create a wallet client-side and provide an encrypted backup (ciphertext), we store only the encrypted blob — we do not have the means to decrypt it without your password.
- Private keys and seed phrases are intended to be generated and stored locally on your device. Always keep offline backups in a safe place.
- You are solely responsible for backing up and securing your private key and password. If you lose both the encrypted backup and your password, we cannot recover your wallet or funds.
Data Sharing and Disclosure
We Do Not Sell Your Data
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
When We Share Information
- Service Providers: With trusted third parties who assist in operating our Services (e.g., cloud hosting, analytics, customer support), bound by confidentiality agreements
- Legal Requirements: When required by law, court order, or government regulation
- Protection of Rights: To enforce our Terms of Service, protect our rights, or ensure user safety
- Business Transfers: In connection with mergers, acquisitions, or asset sales, with notice to users
- With Your Consent: When you explicitly authorize sharing (e.g., connecting to third-party dApps)
Aggregated and Anonymized Data
We may share aggregated, anonymized statistics that do not identify individual users for research, marketing, or industry analysis.
Data Security
We implement the following security measures to protect user data and limit exposure of sensitive information:
- Encryption: Encrypted backups are protected using strong symmetric encryption (AES-256) at rest. All network traffic should be served over TLS 1.3 when deployed to prevent eavesdropping.
- Password Handling: Account passwords are hashed before storage. We recommend choosing a strong, unique password. (Note: consider migrating to a dedicated password-hashing algorithm such as bcrypt, scrypt, or Argon2 for enhanced protection.)
- Access Controls: Role-based access and multi-factor authentication for internal systems where possible; least-privilege principles for service accounts.
- Regular Audits: Security assessments, code reviews, and penetration testing to identify and remediate vulnerabilities.
- Incident Response: Formal procedures for detecting, containing, and responding to security incidents; we will notify affected users as required by law.
No method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
Data Retention
We retain your information for as long as necessary to:
- Provide our Services to you
- Comply with legal obligations
- Resolve disputes and enforce agreements
- Maintain security and prevent fraud
Blockchain transaction data is retained indefinitely due to the immutable nature of distributed ledger technology. You may request deletion of your account information, but public blockchain records will remain visible on the network.
Your Privacy Rights
Depending on your jurisdiction, you may have the following rights:
| Right | Description |
|---|---|
| Access | Request a copy of your personal data |
| Correction | Update or correct inaccurate information |
| Deletion | Request deletion of your account data (not blockchain data) |
| Portability | Receive your data in a structured, machine-readable format |
| Restriction | Limit how we process your data |
| Objection | Object to certain types of processing |
| Withdraw Consent | Revoke consent for optional data processing |
To exercise these rights, contact us at privacy@personablockchain.com.
International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws.
We ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses approved by relevant authorities
- Adequacy decisions for specific jurisdictions
- Data processing agreements with strict confidentiality terms
Children's Privacy
Our Services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal data, we will take steps to delete such information.
Third-Party Services and Links
Our Services may contain links to third-party websites, dApps, or services. We are not responsible for the privacy practices of these external sites. We encourage you to review the privacy policies of any third-party services you interact with.
When you connect your wallet to decentralized applications (dApps), you are subject to their privacy policies and data practices.
Changes to This Privacy Policy
We may update this Privacy Policy periodically. We will notify you of significant changes by:
- Sending an email to your registered address
- Displaying a prominent notice in the application
- Updating the "Last Updated" date at the top of this policy
Continued use of our Services after changes constitutes acceptance of the updated policy.
California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to Know: What personal information we collect and how we use it
- Right to Delete: Request deletion of personal information (subject to exceptions)
- Right to Opt-Out: Of the sale of personal information (we do not sell personal information)
- Right to Non-Discrimination: For exercising your privacy rights
To submit a request, email privacy@personablockchain.com with "California Privacy Rights" in the subject line.
Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact:
For users in the European Economic Area, you have the right to lodge a complaint with your local data protection authority.
Acceptance
By using the Persona Blockchain Wallet, you acknowledge that you have read, understood, and agree to this Privacy Policy.