DeFi Security App#
1. Introduction#
This Privacy Policy explains how DeFi Security App ("the App", "we", "us") handles
information when you use our two-factor authentication (2FA) and wallet activity
monitoring features.The App is non-custodial and read-only. It never accesses, stores, or transmits
your private keys, seed phrases, or funds, and it cannot sign or send transactions.2. Summary#
Your 2FA secrets never leave your device — they are stored encrypted locally.
For wallet monitoring, only public blockchain addresses are transmitted.
We never collect private keys, seed phrases, or wallet passwords.
We do not sell or rent your personal data.
3.1 Account & authentication data#
The credentials you use to sign in (such as your email address). We use this only to
authenticate you and secure access to your configuration. The App does not offer
in-app registration — you sign in with an existing account.3.2 Two-Factor Authentication (2FA) data#
2FA secret keys and the one-time codes generated from them are stored encrypted on
your device only. They are generated locally and are not transmitted to our
servers or to any third party.3.3 Wallet monitoring data#
The public blockchain addresses you add to your watchlist, along with your
subscription and notification preferences. This data is stored on our servers so your
watchlist syncs across your devices, and the public addresses are sent to third-party
data providers to retrieve their public on-chain activity.3.4 Push notification data#
A device push token issued by Apple Push Notification service (APNs) and/or Firebase
Cloud Messaging (FCM), used to deliver activity alerts for your subscribed addresses.
To authenticate you and secure your account and configuration.
To sync your watchlist and settings across your devices.
To fetch and display public on-chain activity for the addresses you monitor.
To send push notifications you have enabled.
To maintain, troubleshoot, and improve the App's stability and security.
We do not use your data for advertising, profiling, or resale.
Private keys, seed phrases, or wallet passwords.
Custody of any funds or assets.
Any ability to sign, send, or trade transactions.
6. Data Storage & Security#
2FA secrets are encrypted and stored only on your device.
Data transmitted between the App, our servers, and providers is protected in
transit using TLS encryption.
Server-side data is protected with access controls and encryption at rest.
No method of transmission or storage is completely secure, but we take reasonable
measures to protect your information.
7. Data Retention#
2FA secrets remain on your device until you delete them or uninstall the App.
Your watchlist and settings are retained until you remove them or delete your
account.
8. Your Rights & Choices#
Depending on your location (e.g. under GDPR or CCPA), you may have the right to
access, correct, export, or delete your personal data, and to object to or restrict
certain processing.Account & data deletion: You can request deletion of your account and associated
server-side data by contacting us at the addresses below. To remove 2FA data, delete
the relevant entries in the App or uninstall it.To exercise any of these rights, contact us using the details in Section 10.
9. Changes to This Policy#
We may update this Privacy Policy from time to time. Material changes will be
reflected by updating the "Last updated" date above and, where appropriate, through
in-app notice.
Modified at 2026-08-04 11:21:44