DRAFT — pending legal review; not legal advice.

Privacy Policy

Last drafted 10 October 2026. This is a draft for the beta, not a finished policy.

What we store

When you use Dumbify we can store:

Some trade and session records live in the server's memory, or in a file on that server, for the life of that process. A restart can drop them. The bridge journal and the acknowledgement stay in the database when the operator has configured one.

The trade stream

A trade you fill through Dumbify can appear on the public Stream. The card shows the plain-language trade, a coarse size range, a coarse premium range, and later whether it paid or missed. It does not show your name, your email, your user id, or the exact size or premium. It can show the Paradex trading address that filled the trade. That is on unless you turn on “Keep my wallet address private” in Settings. That choice applies to past and future trades. It is the trading account, not the wallet you add money from. Showing your X handle is a separate choice, off by default, and only if you have linked an X account and then turned it on. Linking X does not turn it on. Turning the handle off does not hide the trading address. “Show my trades in the stream” is on by default. Turning it off hides your past and future trades from that feed.

What we do not store

We do not store your private keys. We do not store a copy of your Privy password. Server logs may include your Privy user id and the path you called. Tokens and signatures are redacted from those logs. Error reporting and product analytics run only when an operator turns them on, and they must not receive private keys, tokens, or signatures.

Who else sees data

Privy sees your login and wallet. Paradex sees the account, the orders, and the settlement. LayerSwap sees a bridge you start. Their own privacy policies apply. Paradex publishes one at paradex.trade/privacy-policy. We do not sell your data.

How long we keep it

We keep the records above for the life of the beta, and longer when we need them for security, for an unfinished transfer, or because the law requires it. Memory-only records end when the process restarts.

Asking us to delete it

You can ask us to delete the records we hold. Use the contact link on the beta page when one is set. We will not invent an email address here. We cannot delete data that Privy, Paradex, or LayerSwap hold. You have to ask them too. We may keep a record we still need for an unfinished transfer or for a legal duty.